Staff Application Security Engineer

Epsilon

Irving (TX)

On-site

USD 100,000 - 197,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible time off
15 paid holidays
Paid sick time
Parental/new child leave
Health coverage
401(k)
Tuition assistance
Commuter benefits
Professional development
Employee recognition
Charitable donation matching

Job summary

Epsilon is hiring a Security Engineer to embed secure coding across the development lifecycle and scale AI-enabled security engineering practices. You will guide teams on secure tooling, prioritize remediation, and align outputs with enterprise standards.

Lead strategy for application security platforms, drive risk-based decisions, and mentor Security Champions to improve code quality and security posture at scale.

Qualifications

  • Bachelor’s or Master’s degree in computer science or related field with 5+ years in application security or cybersecurity
  • Experience with application testing (SAST, DAST, MAST, RAST, IAST) and vulnerability management
  • Strong understanding of threat modeling and secure coding practices
  • Proficiency with Microsoft Office tools (Outlook, Excel, Word, PowerPoint) for documentation and reporting
  • Experience guiding AI-assisted development to scale secure engineering practices
  • Ability to translate complex security risks into practical business decisions

Responsibilities

  • Provide oversight and strategic direction for application security platforms (Veracode, SonarQube, Wiz)
  • Review security findings with engineering teams to prioritize remediation
  • Partner with product, engineering, and security champions to align with policies and standards
  • Integrate AI into secure-by-design engineering across the software development lifecycle
  • Translate security risks into actionable, business-focused guidance for teams
  • Deliver monthly KPI-based reports on risk posture and adoption metrics
  • Educate and enable teams on secure coding expectations and platform usage
  • Onboard new teams/applications to security platforms to ensure long-term adoption
  • Build trust-based relationships across product, engineering, and security to mature practices

Skills

Influence & collaboration
Analytical thinking
Organizational discipline
Automation scripting
Developer mindset
AI usage in engineering

Education

Bachelor’s or Master’s in CS or related field

Tools

Veracode
SonarQube
Wiz
Terraform
Ansible

Job description

Overview

How you’ll Make an Impact The Security Engineer plays a critical role in strengthening the security of Epsilon’s software applications by embedding security into the development lifecycle and advancing AI-enabled engineering practices. You will provide strategic oversight on secure coding, drive effective use of application security platforms, and leverage AI to scale security outcomes, accelerate delivery, and improve code quality across Product and Engineering teams. Rather than executing testing directly, you will guide teams in interpreting results, prioritizing remediation, and using AI responsibly, validating outputs and aligning them to Epsilon’s security standards.

Responsibilities

In this role, you will measurably improve the security posture of Epsilon’s software applications by driving consistent, risk-based application security practices across teams and leveraging AI to scale and enhance security outcomes. Through oversight, guidance, and clear recommendations, you will help reduce vulnerabilities, align practices with security policies, and evolve how application security is understood and applied across the organization. By incorporating AI‑assisted approaches into engineering workflows, you will help teams accelerate remediation, strengthen code quality, and embed security earlier in the development lifecycle.

  • Provide oversight and strategic direction for Epsilon’s application security platforms, ensuring they are effectively configured, adopted, and used by Product and Engineering teams (Veracode, SonarQube, Wiz experience is a plus).
  • Guide and review the analysis of application security findings, working with embedded Security Champions and engineering teams to interpret results, prioritize risk, and recommend remediation strategies.
  • Partner closely with Product, Engineering, and embedded Security Champions to ensure application security expectations are understood, consistently applied, and aligned with Epsilon’s security policies and standards.
  • Integrate AI into Application Security to Enable Secure‑by‑Design Engineering. Drive the adoption of AI‑enabled development practices that embed application security directly into the software development lifecycle. Guide teams in using AI tools to generate, review, and remediate code securely, ensuring outputs are governed, validated, and aligned with enterprise security standards. Expand application security beyond traditional tooling by positioning AI as a scalable mechanism to improve security coverage, consistency, and engineering productivity.
  • Serve as a trusted advisor to engineering teams by providing clear guidance, risk context, and actionable recommendations—translating complex security risks and requirements into practical, business‑relevant decisions rather than executing security testing directly.
  • Communicate with confidence and clarity across technical and non‑technical audiences, effectively influencing outcomes by articulating security risks, tradeoffs, and recommendations in a way that drives understanding and action.
  • Produce and deliver monthly KPI‑based reporting that highlights trends, risk posture, adoption metrics, and actionable insights for both technical stakeholders and executive leadership.
  • Educate, coach, and enable development teams and embedded Security Champions on secure coding expectations, application security platforms, and Epsilon security policies.
  • Drive the onboarding of new teams and applications into application security platforms, ensuring consistent implementation, accountability, and long‑term adoption.
  • Build and maintain strong, trust‑based relationships across Product, Engineering, and Security to influence outcomes, reinforce shared ownership, and continuously mature application security practices.
Qualifications

What You’ll Bring With You

  • Ability to Influence and Collaborate — You have the interpersonal strength to engage teams, challenge assumptions constructively, and build credibility as a trusted security partner rather than a blocker.
  • Analytical and Problem‑Solving Skills — You possess strong analytical skills and a structured approach to problem‑solving, enabling you to effectively assess vulnerabilities and recommend practical, risk‑based solutions.
  • Organizational Discipline — You bring a personal framework for consistency, accuracy, and repeatable deliverables, ensuring dependable execution and clear outcomes.
  • Educational Background — A bachelor’s or master’s degree in computer science or related field & at least 5 years of hands‑on experience in application security or cybersecurity provides a solid foundation for understanding modern security challenges.
  • App Sec Experience — Experience with application testing (e.g., SAST, DAST, MAST, RAST, IAST). Direct experience in application vulnerability management processes. Strong understanding of threat modeling.
  • Technology Proficiency — Proficiency with Microsoft Office tools (Outlook, Excel, Word, PowerPoint) supports clear documentation, reporting, and executive‑ready communication.
  • Effective Use of AI to Enhance Engineering Productivity — You leverage AI‑assisted tools and workflows to accelerate development, improve code quality, and embed security into the engineering lifecycle. You understand how to guide AI outputs, validate results, and apply them responsibly, enabling teams to scale secure development practices, reduce manual effort, and deliver solutions more efficiently.
  • Scripting and Infrastructure Experience — Strong knowledge of Bash scripting and tools such as Ansible and Terraform demonstrates your ability to automate and manage security at scale in cloud‑based environments.
  • Developer Mindset — Prior experience as a software developer and familiarity with cybersecurity concepts allow you to communicate effectively with engineering teams and deliver practical, developer‑friendly security guidance.
Benefits

As an Epsilon employee, you deserve perks and benefits that put you, your family and your finances first. Our benefits encompass a wide range of offerings.

  • Time to Recharge: Flexible time off (FTO), 15 paid holidays
  • Time to Recover: Paid sick time
  • Family Well‑Being: Parental/new child leave, childcare & elder care assistance, adoption assistance
  • Extra Perks: Comprehensive health coverage, 401(k), tuition assistance, commuter benefits, professional development, employee recognition, charitable donation matching, health coaching and counseling

Compensation Range: USD $100,000.00 - USD $197,000.00/Annually. This is the pay range the Company believes it will pay for this position at the time of this posting. Consistent with applicable law, compensation will be determined based on the skills, qualifications, and experience of the applicant along with the requirements of the position, and the Company reserves the right to modify this pay range at any time. Compensation will be offered under the regular employment terms.

Equal Opportunity Employment

Epsilon is an Equal Opportunity Employer. Epsilon’s policy is not to discriminate against any applicant or employee based on actual or perceived race, age, sex or gender (including pregnancy), marital status, national origin, ancestry, citizenship status, mental or physical disability, religion, creed, color, sexual orientation, gender identity or expression (including transgender status), veteran status, genetic information, or any other characteristic protected by applicable federal, state or local law. Epsilon also prohibits harassment of applicants and employees based on any of these protected categories. Epsilon will provide accommodations to applicants needing accommodations to complete the application process. Please reach out to LeaveofAbsence@epsilon.com to request an accommodation.

For San Francisco Bay and Los Angeles Areas: Epsilon will consider for employment qualified applicants with criminal histories in a manner consistent with the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance and San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance. Applicants with criminal histories are welcome to apply.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Application Security Engineer
Staff Application Security Engineer

Publicis Groupe Holdings B.V • Chicago (IL)

On-site
USD 100,000 - 186,000
Flexible time off
Comprehensive health coverage
401(k)
+2
Staff Application Security Engineer
Staff Application Security Engineer

UNAVAILABLE • Chicago (IL)

On-site
USD 100,000 - 185,600
Medical coverage
Dental and vision insurance
401(k) plan
+1
Advisor, Application Security Engineer
Advisor, Application Security Engineer

Publicis Groupe • Chicago (IL)

On-site
USD 100,000 - 185,600
Flexible time off
Paid sick time
401(k)
Advisor, Application Security Engineer
Advisor, Application Security Engineer

Publicis Groupe ANZ • Chicago (IL)

On-site
USD 100,000 - 185,600
Flexible time off
Paid sick time
401(k)
+2
Staff Software Engineer
Staff Software Engineer

UNAVAILABLE • Chicago (IL)

On-site
USD 105,000 - 195,000
Flexible time off
Paid sick time
Comprehensive health coverage
+2
Senior Manager, Application Security
Senior Manager, Application Security

Epsilon • Chicago (IL)

On-site
USD 112,000 - 210,000
Comprehensive health coverage
401(k)
Tuition assistance
+2
Staff Software Engineer
Staff Software Engineer

Publicis Groupe ANZ • Chicago (IL)

On-site
USD 105,000 - 195,000
Flexible time off
Paid sick time
Parental/new child leave
+6
Staff Software Engineer
Staff Software Engineer

Publicis Groupe Holdings B.V • Chicago (IL)

On-site
USD 105,000 - 195,000
Flexible time off
Comprehensive health coverage
401(k)
+1
Senior Manager, Application Security
Senior Manager, Application Security

Epsilon • Boston (MA)

On-site
USD 112,000 - 210,000
Senior Manager, Software Engineering
Senior Manager, Software Engineering

Publicis Groupe Holdings B.V • New York (NY)

On-site
USD 140,900 - 261,700
Flexible time off
Paid sick time
Parental/new child leave
+3