Senior Application Security Engineer (Remote)

sundayy • United State
Remote
Apply
AI Summary

We are seeking a highly skilled Application Security Engineer to embed security throughout the software development lifecycle in a full-time, remote capacity. You will conduct threat modeling, security reviews, and vulnerability management while fostering a security-first mindset within development teams. The ideal candidate possesses deep technical security expertise, strong software engineering fundamentals, and at least 5 years of experience.

Key Highlights
Embed security throughout the software development lifecycle
Conduct threat modeling, security reviews, and vulnerability management
Foster a security-first mindset within development teams
Key Responsibilities
Conduct threat modeling and security architecture reviews for new and existing applications and services
Perform manual code reviews, provide secure design consultations, and collaborate with engineering teams to harden critical components
Operate and optimize security tools such as SAST, DAST, IAST, SCA, and secret-scanning within CI/CD pipelines
Manage vulnerability workflows including triage, prioritization, assigning ownership, and SLA tracking
Develop and maintain secure libraries and frameworks to promote secure coding practices across teams
Lead red-team and purple-team exercises to identify weaknesses and drive remediation efforts
Implement runtime protections such as WAF, RASP, bot protection, and abuse-detection mechanisms
Design and enforce secure authentication, authorization, session management, and cryptography standards
Collaborate with infrastructure and platform teams to secure containerized, Kubernetes, and cloud environments
Develop and deliver application security training, workshops, and onboarding content for engineering staff
Respond to security incidents involving application vulnerabilities or active exploitation
Monitor emerging threats, CVEs, and security research relevant to our application portfolio
Maintain comprehensive technical documentation, including architecture diagrams, design decisions, and operational procedures
Stay current with application security research and emerging defensive tools to continuously improve security posture
Technical Skills Required
OWASP Top 10 SAST DAST SCA CI/CD Authentication Authorization Cryptography Cloud Security Containers Kubernetes Agile
Benefits & Perks
Competitive salary commensurate with experience
Fully remote work environment within the continental United States
Comprehensive health, dental, and vision insurance plans
Paid time off and holiday leave
Professional development opportunities and continuous learning support
Flexible work hours to promote work-life balance
Inclusive and collaborative company culture that values diversity
Long-term career growth potential within a respected organization

Job Description


About The Company

Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. We leverage cutting-edge technologies to create scalable, secure, and user-friendly applications. Our commitment to excellence and innovation has positioned us as a trusted partner for organizations seeking to transform their digital landscape. As we continue to expand our capabilities and market reach, we are focused on attracting top talent who are passionate about technology and security. Our collaborative environment fosters continuous learning and professional growth, ensuring our team remains at the forefront of industry advancements.

About The Role

We are seeking a highly skilled Application Security Engineer to join our dynamic team in a full-time, remote capacity. In this role, you will be responsible for embedding security throughout the software development lifecycle, working closely with engineering teams to design and implement secure systems, identify vulnerabilities, and reduce risks across our application portfolio. The ideal candidate will possess deep technical security expertise combined with strong software engineering fundamentals. You will play a pivotal role in conducting threat modeling, security reviews, and vulnerability management, all while fostering a security-first mindset within our development teams. This position offers an excellent opportunity to influence security practices at a strategic level, contribute to innovative projects, and grow professionally within a well-respected organization.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field
  • Minimum of 5 years of experience in application security or security engineering
  • Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns
  • Hands-on experience performing code reviews across at least two major programming languages
  • Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling
  • Solid knowledge of authentication, authorization, cryptographic primitives, and secure design principles
  • Experience with cloud security and modern infrastructure controls such as containers and Kubernetes
  • Excellent communication skills, capable of engaging with both technical and non-technical audiences
  • Proficiency in at least one programming language for tooling and automation purposes
  • Experience working within an Agile development environment

Responsibilities

  • Conduct threat modeling and security architecture reviews for new and existing applications and services
  • Perform manual code reviews, provide secure design consultations, and collaborate with engineering teams to harden critical components
  • Operate and optimize security tools such as SAST, DAST, IAST, SCA, and secret-scanning within CI/CD pipelines
  • Manage vulnerability workflows including triage, prioritization, assigning ownership, and SLA tracking
  • Develop and maintain secure libraries and frameworks to promote secure coding practices across teams
  • Lead red-team and purple-team exercises to identify weaknesses and drive remediation efforts
  • Implement runtime protections such as WAF, RASP, bot protection, and abuse-detection mechanisms
  • Design and enforce secure authentication, authorization, session management, and cryptography standards
  • Collaborate with infrastructure and platform teams to secure containerized, Kubernetes, and cloud environments
  • Develop and deliver application security training, workshops, and onboarding content for engineering staff
  • Respond to security incidents involving application vulnerabilities or active exploitation
  • Monitor emerging threats, CVEs, and security research relevant to our application portfolio
  • Maintain comprehensive technical documentation, including architecture diagrams, design decisions, and operational procedures
  • Stay current with application security research and emerging defensive tools to continuously improve security posture

Benefits

  • Competitive salary commensurate with experience
  • Fully remote work environment within the continental United States
  • Comprehensive health, dental, and vision insurance plans
  • Paid time off and holiday leave
  • Professional development opportunities and continuous learning support
  • Flexible work hours to promote work-life balance
  • Inclusive and collaborative company culture that values diversity
  • Long-term career growth potential within a respected organization

Equal Opportunity

Bright Vision Technologies is an equal opportunity employer committed to fostering an inclusive environment for all employees and applicants. We do not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected characteristic under applicable law. We believe diversity enhances innovation and are dedicated to providing equal employment opportunities, reasonable accommodations, and promoting a workplace free from harassment and discrimination. All employment decisions are made based on qualifications, merit, and business needs.

Similar Jobs

Explore other opportunities that match your interests

Senior Staff Engineer - AI Security

Cyber Security
•
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GEICO

United State
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

talentdrift

United State

Data Security & DLP Analyst (AI Training)

Cyber Security
•
1d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Entry level

Alignerr

United State

Subscribe our newsletter

New Things Will Always Update Regularly