Company
Technology
ApplicationSecurityEngineer
Neural analysis suggests this role is
optimal for Mid candidates.
“Application Security Engineer. Skills: Application security, Secure coding, Threat modeling. Identify application security vulnerabilities. Analyze application security vulnerabilities”
Industry & Context.
Problem-solving skills
What They're Looking For.
Must Have
4 years of experience in application security, Understanding of application security risks, Hands-on experience with secure coding practices, Proficiency in at least one programming language, Practical experience with security testing tools, Experience conducting threat modeling exercises, Solid understanding of authentication and authorization protocols, Analytical thinking and problem-solving skills, Excellent communication skills in English, Ability to work independently, Ability to collaborate effectively, A proactive mindset, Willingness to continuously learn
Nice to Have
Security certifications such as OSCP, Security certifications such as OSWE, Experience with security automation, Experience with compliance translation, Experience with exploitation of complex systems
What You'll Do.
Identify application security vulnerabilities
Analyze application security vulnerabilities
Remediate application security vulnerabilities
Integrate security best practices
Conduct manual penetration testing
Conduct automated penetration testing
Lead threat modeling sessions
Lead risk assessments
Develop secure coding standards
Maintain secure coding standards
Promote secure coding standards
Provide guidance to internal teams
Provide support to internal teams
Stay up to date with security threats
Contribute to continuous improvement
How You'll Work.
Team & Collaboration
Close collaboration with development; Collaboration with platform engineering; Collaborating effectively in distributed environments
Communication Scope
Explain technical concepts
Full Job Description
## Accountabilities Identify, analyze, and remediate application security vulnerabilities using modern application security posture management (ASPM) tools and related security technologies. Build, maintain, and enhance ASPM tools, rules, and automation to strengthen application security across engineering teams. Integrate security best practices into the software development lifecycle (SDLC) in close collaboration with development and platform engineering teams. Conduct manual and automated penetration testing to identify weaknesses in applications and supporting infrastructure. Lead threat modeling sessions and risk assessments for both new and existing applications to proactively address security risks. Develop, maintain, and promote secure coding standards and guidelines for engineering teams. Serve as a subject matter expert in application security, providing guidance and support to internal teams across the organization. Stay up to date with emerging security threats, vulnerabilities, attack techniques, and mitigation strategies. Contribute to the continuous improvement of security engineering processes, automation, and tooling. Requirements Minimum of 4 years of experience in application security, secure software development, or related cybersecurity engineering roles. Strong understanding of application security risks, including OWASP Top 10 and common web and system vulnerabilities. Hands-on experience with secure coding practices in languages such as Python, Go, Java, or JavaScript. Proficiency in at least one programming language (e.g., Go or Python) with willingness to learn additional technologies. Practical experience with security testing tools such as Burp Suite, OWASP ZAP, Semgrep, or equivalent solutions. Experience conducting threat modeling exercises and security risk assessments. Solid understanding of authentication and authorization protocols such as SAML, OAuth, or OIDC. Strong analytical thinking and problem-solving skills with attention to
Applying for this Application Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about this company?
Real rants from real employees. Read before you apply.