Staff Application Security Engineer

Jobgether SRL

United States

Remote

USD 183.000 - 215.000

Vollzeit

vor 11 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Bekomme eine Antwort von diesem Arbeitgeber — ein Lebenslauf und ein Anschreiben, die genau auf die Eigenschaften eingehen, die gesucht werden.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Equity
Annual bonus potential
Remote work within United States

Zusammenfassung

Jobgether SRL offers a Staff Application Security Engineer role based in the United States, focusing on securing applications, infrastructure, and software systems at scale. You will own security programs, partner with engineering and infrastructure teams, and drive threat detection, vulnerability management, and security testing in a fast-moving, high-ownership environment.

You will mentor engineers, promote secure coding practices, and shape security tooling and standards across the

Qualifikationen

  • Significant professional experience in application security, security engineering, software engineering, or a closely related discipline, with ownership of security outcomes.
  • Advanced proficiency in at least one programming language such as Ruby, Java, Python, C#, or Node.js.
  • Strong hands-on experience managing SIEM platforms, developing detection/alerting strategies, and reducing alert noise.
  • Deep understanding of cloud environments and container technologies, including Docker and Kubernetes, with automated container vulnerability management.
  • Extensive experience with SAST/DAST/IAST and manual validation of findings.
  • Knowledge of OWASP Top 10, MITRE Top 25, and secure software development practices.
  • Experience conducting security reviews and remediation recommendations.
  • Experience with SOC 2 and PCI cloud security concepts.
  • Strong analytical/problem-solving skills in ambiguous/high-impact issues.
  • Excellent communication and mentoring abilities; influence without authority.
  • Comfort working autonomously in a fast-paced, remote-first environment.

Aufgaben

  • Own and continuously improve the organization's SIEM with tuning, monitoring, and alert development.
  • Conduct security architecture/code/infrastructure reviews to identify risks and remediation strategies.
  • Perform targeted penetration testing of web and mobile apps and validate findings.
  • Build and optimize vulnerability management processes and CI/CD pipelines across containers and apps.
  • Promote secure coding practices and coordinate remediation with development and infra teams.
  • Develop security frameworks, tooling, and engineering standards for scalable security.
  • Contribute to incident response and forensics with technical evidence and business context.
  • Monitor emerging threats and translate into actionable engineering guidance.
  • Develop security awareness/training to empower engineers to build secure systems.
  • Operate independently with strong stakeholder alignment.

Kenntnisse

Ruby
Java
Python
C#
Node.js

Tools

SIEM
Docker
Kubernetes
SAST/DAST/IAST

Jobbeschreibung

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Staff Application Security Engineer based in the United States.

This is a senior security engineering opportunity focused on protecting applications, infrastructure, and software systems at scale.

You will take ownership of application security programs while partnering closely with engineering and infrastructure teams.

The role combines threat detection, vulnerability management, security testing, incident response, and security tooling.

You will help build scalable security processes and integrate security practices directly into modern development and delivery workflows.

The position offers significant autonomy, requiring strong technical judgment and the ability to navigate complex and ambiguous security challenges.

You will also serve as a trusted security advisor and mentor, helping engineering teams strengthen their security practices.

This is a remote opportunity within the United States, offering the chance to make a broad impact in a fast-moving, high-ownership environment.

Accountabilities
  • Own and continuously improve the organization's SIEM, including configuration, tuning, monitoring, and development of effective alerts that identify and support response to threats across multiple layers.
  • Conduct security architecture reviews, code reviews, and infrastructure configuration assessments to identify risks and recommend practical remediation strategies.
  • Perform targeted penetration testing of web and mobile applications, manually validating vulnerabilities and investigating their underlying causes.
  • Build, maintain, and optimize vulnerability management processes and CI/CD pipelines across container and application delivery environments.
  • Partner closely with software development and infrastructure teams to promote secure coding practices, prioritize remediation, and resolve complex security issues.
  • Develop and maintain security frameworks, tooling, and engineering standards that make security requirements clear, scalable, and actionable across the organization.
  • Contribute to incident response and forensic investigations, using technical evidence and business context to make sound decisions during high-pressure situations.
  • Monitor emerging threats and security trends and translate them into practical recommendations for engineering teams.
  • Develop and support security awareness and training initiatives that strengthen security knowledge and empower engineers to build more secure systems.
  • Operate independently while maintaining strong communication and alignment with stakeholders across engineering, infrastructure, and security functions.
Requirements
  • Significant professional experience in application security, security engineering, software engineering, or a closely related discipline, with demonstrated ownership of security outcomes.
  • Advanced proficiency in at least one programming language such as Ruby, Java, Python, C#, or Node.js.
  • Strong hands-on experience managing SIEM platforms, developing effective detection and alerting strategies, and reducing unnecessary alert noise.
  • Deep understanding of cloud environments and container technologies, including Docker and Kubernetes, with experience implementing automated container vulnerability management.
  • Extensive experience with application security testing methodologies and tools, including SAST, DAST, and IAST, combined with the ability to manually validate security findings.
  • Strong knowledge of established security principles and frameworks, including the OWASP Top 10, MITRE Top 25, and secure software development practices.
  • Experience conducting security architecture, code, infrastructure, and application reviews, with the ability to identify root causes and recommend effective remediation.
  • Experience with cloud security concepts and compliance frameworks such as SOC 2 and PCI.
  • Strong analytical and problem-solving skills, particularly when working through ambiguous, complex, or high-impact security issues.
  • Excellent communication skills and the ability to build credibility with engineering peers through clear, direct, and pragmatic guidance.
  • A demonstrated ability to mentor others, advocate for security best practices, and influence teams without relying solely on formal authority.
  • Comfort working autonomously in a fast-paced, collaborative, and remote-first environment.
Benefits
  • Base salary range of $182,800–$215,000 USD, depending on factors such as experience, expertise, and location.
  • Equity provided to all employees.
  • Potential eligibility for an annual bonus depending on the role.
  • Competitive compensation designed to reflect the scope and experience required for the position.
  • Remote work opportunities within the United States, with a flexible hybrid-hub approach depending on role and location.
  • Benefits and perks designed to provide employees with the resources and environment needed to succeed.
  • A high-ownership environment where experienced professionals can make meaningful, organization-wide contributions.
  • Opportunities to work on complex security challenges while collaborating with high-caliber engineering and technology teams.
  • Perks and benefits may vary based on employment type, location, and other applicable factors.
How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?
Data Privacy Notice:

By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Talent Acquisition Partner, Product
Senior Talent Acquisition Partner, Product

Jobgether SRL • USA

Remote
USD 183.000 - 215.000
Senior Security Success Engineer - REMOTE
Senior Security Success Engineer - REMOTE

Jobgether • USA

Vor Ort
USD 120.000 - 160.000
Unlimited paid time off
Paid parental leave for all parents
Comprehensive medical, dental, and vision coverage
+2
Application Security Engineer (Remote - US)
Application Security Engineer (Remote - US)

Jobgether • USA

Vor Ort
USD 103.900 - 128.000
Competitive salary
Flexible remote work options
Health, dental, and vision insurance
+2
Social Media Lead
Social Media Lead

Jobgether SRL • USA

Hybrid
USD 100.000 - 130.000
401(k) plan
Health benefits (vision & dental)
Parental leave
+10
Junior Software Developer
Junior Software Developer

Jobgether SRL • USA

Remote
USD 48.000 - 80.000
Fully remote work within the United St
Competitive salary up to $80,000
Application Security Engineer
Application Security Engineer

Jobot Consulting • New York (NY)

Hybrid
USD 125.000 - 146.000
Senior Application Security engineer
Senior Application Security engineer

G-P • USA

Remote
USD 96.000 - 120.000
Paid parental leave
Medical insurance
Dental insurance
+2
Application Security Engineer
Application Security Engineer

Jobot Consulting • Charlotte (NC)

Hybrid
USD 83.000 - 96.000
Sr. Information Security & Compliance Manager (Remote)
Sr. Information Security & Compliance Manager (Remote)

Jobgether • Town of Florida (NY)

Vor Ort
USD 120.000 - 180.000
Flexible remote working arrangements
Opportunities for professional development
Health, dental, and vision insurance options
+4
Senior Application Security Engineer ID87004
Senior Application Security Engineer ID87004

AgileEngine, LLC. • New York (NY)

Vor Ort
USD 140.000 - 190.000
Professional growth
Competitive compensation
A selection of exciting projects
+1