About the Role

We are seeking a highly experienced Senior Application Security Engineer to join our security team in a fully remote capacity. As a Senior Application Security Engineer, you will play a crucial role in securing enterprise applications, conducting advanced security assessments, and implementing robust security controls throughout the software development lifecycle.

What You'll Do

  • Design, implement, and maintain application security frameworks, standards, and best practices across enterprise systems.
  • Perform secure code reviews and identify vulnerabilities in web, mobile, and API-based applications.
  • Conduct application security testing, including Static (SAST), Dynamic (DAST), Interactive (IAST), and penetration testing.
  • Integrate security controls into CI/CD pipelines and support DevSecOps initiatives.
  • Identify, assess, and remediate application security risks based on severity and business impact.
  • Develop threat models and perform risk assessments for new and existing applications.
  • Ensure compliance with industry standards and regulatory frameworks such as OWASP Top 10, NIST, ISO 27001, PCI-DSS, HIPAA, and SOC 2.
  • Monitor and respond to application-level security incidents and support incident response efforts.
  • Provide technical guidance and mentorship to development teams and junior security engineers.
  • Collaborate with infrastructure, cloud, and network security teams to ensure end-to-end security coverage.
  • Create and maintain security documentation, policies, and audit-ready reports for leadership and compliance reviews.

Requirements

  • 12+ years of experience in application security, cybersecurity, or information security.
  • Strong hands-on experience with application security tools such as Fortify, Checkmarx, Veracode, Burp Suite, OWASP ZAP, or similar tools.
  • In-depth understanding of secure coding practices and common vulnerabilities across Java, .NET, Python, JavaScript, and modern web technologies.
  • Extensive experience with OWASP Top 10 and Secure SDLC methodologies.
  • Strong knowledge of authentication, authorization, encryption, and key management concepts.
  • Proven experience securing RESTful APIs, microservices, and cloud-native applications.
  • Hands-on experience with cloud platforms such as AWS, Azure, or Google Cloud and their security controls.
  • Ability to analyze complex security issues and clearly communicate risks and remediation strategies to technical and non-technical stakeholders.
  • Experience working in large enterprise or government environments.
  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent professional experience.

Nice to Have

  • Security certifications such as CISSP, CISM, CEH, GWAPT, OSCP, or CSSLP.
  • Experience with DevSecOps tools and CI/CD platforms including Jenkins, GitHub Actions, GitLab CI, or Azure DevOps.
  • Knowledge of container and Kubernetes security practices.
  • Experience with SIEM tools and security monitoring platforms.
  • Familiarity with Zero Trust security architecture.
  • Prior experience supporting regulatory audits and compliance initiatives.
  • Strong leadership, documentation, and stakeholder communication skills.

What We Offer

  • Competitive salary ranging from $140,000 to $180,000 based on experience.
  • Comprehensive benefits package including health insurance, retirement plans, and remote work flexibility.
  • Visa sponsorship available for eligible candidates.
  • Opportunities for professional development and certifications.
  • Collaborative and inclusive work environment.
  • Work with cutting-edge technologies in the field of cybersecurity.
  • Flexible working hours to promote work-life balance.
Why This Job8.5 of 10

This Senior Application Security Engineer role offers a competitive salary and the opportunity to work remotely while securing enterprise applications. Ideal for experienced professionals looking to make a significant impact in cybersecurity.

Salary Range
Required
0/1
Optional
0/1
Bonus
0/1

About JPS Tech Solutions

Explore exciting career opportunities at JPS Tech Solutions in 2026. Discover a range of remote, hybrid, and office roles tailored to fit your skills. Utilize our advanced filters, application tracking, and company insights to streamline your job search. Stay updated with industry news and find the perfect position at JPS Tech Solutions that aligns with your career goals. Your future begins here!

Industry
Tech
Location
Remote

Who Will Succeed Here

Proficient in OWASP Top Ten and secure coding practices, with hands-on experience in conducting vulnerability assessments and penetration testing using tools like Burp Suite and OWASP ZAP.

Self-motivated and disciplined, thriving in a remote work environment, with strong time management skills to effectively handle multiple security projects and assessments simultaneously.

Deep understanding of cloud security principles across AWS, Azure, and Google Cloud, with practical experience in implementing DevSecOps practices to integrate security into CI/CD pipelines.

Learning Resources

OWASP Application Security Verification Standardguide

Career Path

Senior Application Security Engineer(Now)Application Security Architect(1-2 years)Director of Security Engineering(3-5 years)

Market Overview

Market Size 2024
$12.5B
Annual Growth
15.7%
AI Adoption in Security
42%
Investment in Application Security
+38%
Labour Demand for Security Roles
+30%
Avg Salary for Senior Application Security Engineer
$135K

Skills & Requirements

Required
Application SecurityCybersecurityDevSecOps
Growing in Demand
Cloud Security ArchitectureThreat ModelingContainer Security (Kubernetes, Docker)
Declining
Static Application Security Testing (SAST) tools without CI/CD integrationTraditional Network Firewalls

Domain Trends

Increased Focus on DevSecOps
Organizations are integrating security practices into DevOps processes, with 70% of companies adopting DevSecOps frameworks by 2025.
Rise of AI-Driven Security Solutions
42% of security professionals report using AI tools for threat detection and response, indicating a shift towards automated security measures.
Growing Importance of Secure Coding Practices
With 90% of applications having at least one vulnerability, there's a significant push for training developers in secure coding, leading to a 50% increase in secure coding workshops.

Industry News

Loading latest industry news...

Finding relevant articles from the last 6 months

All job postings are automatically gathered by algorithms. We do not review or verify listings, be careful when applying and do not sign-in with iCloud or Google services.