Senior Software Engineer for Application Security

Remote
Apply
AI Summary

Seeking a Senior Software Engineer with strong Application Security experience to help mature our software security practice.

Key Highlights
analysis of vulnerabilities
secure coding
open-source risk remediation
cloud security (AWS)
Technical Skills Required
Java JavaScript Sonatype SonarQube Qualys AWS Inspector OWASP CWE CVE SAST/DAST Docker Terraform GitHub CI/CD DevSecOps
Benefits & Perks
remote work
contract-to-hire

Job Description


Job Title: Sr. Software Engineer / Application Security Specialist


Location: Lake Mary, FL (Fully Remote—Local Preferred)

Type: 6-Month Contract-to-Hire


Job Summary

We are seeking a Sr. Software Engineer with strong Application Security experience to help mature our software security practice. The ideal candidate has a development background (Java/JavaScript), hands-on experience analyzing vulnerabilities, and deep knowledge of secure coding, open-source risk remediation, and cloud security (AWS).

Responsibilities

  • Perform application security testing and software composition analysis (SCA).
  • Analyze open-source vulnerabilities and assess risks across libraries, frameworks, and dependencies.
  • Implement remediation strategies, refactoring, patching, and dependency updates.
  • Guide engineering teams in secure coding practices and risk mitigation.
  • Conduct security reviews and help define security architecture improvements.
  • Configure and support security tools (Sonatype, SonarQube, Qualys, AWS Inspector).
  • Collaborate with development, security, and architecture teams to improve security posture.
  • Create documentation, flowcharts, and security roadmaps.

Required Skills

  • Strong Application Security background with prior software engineering experience.
  • Hands-on remediation for Java and JavaScript applications.
  • Deep knowledge of OWASP, CWE, CVE, SAST/DAST, and secure coding principles.
  • Experience with AWS security, Docker, Terraform, GitHub, CI/CD, and DevSecOps practices.
  • Proficiency with Sonatype, SonarQube, Qualys, AWS Inspector.
  • Strong communication skills and ability to influence technical teams.

Preferred Qualifications

  • Experience creating security roadmaps, diagrams, and remediation workflows.
  • Familiarity with AWS ECS/EKS, Lambda, container security, and cloud security architecture.
  • Leadership experience guiding small engineering/security teams.
  • Bonus: AI security knowledge.

Ideal Candidate Background

Software developer turned AppSec specialist with a strong blend of secure coding + cloud security + vulnerability remediation.


Subscribe our newsletter

New Things Will Always Update Regularly