Application Security Engineer II

Job not on LinkedIn

🔥 0 minutes ago

🇺🇸 United States – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

💻 Application Engineer

👻 Ghost score 15%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Riva Scientific

Riva Scientific

11 - 50 employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

Riva Scientific is a company that offers innovative solutions in the Life Sciences and Biotechnology sectors, as well as Information Technology services. They provide a comprehensive range of products and services including managed services, strategic consulting, and staffing solutions tailored to the unique challenges faced by Pharmaceuticals and Technology companies. Riva Scientific specializes in laboratory automation, software validation, custom application development, and staffing, helping clients navigate complex regulatory environments and improve operational efficiencies.

📋 Description

• Secure AWS or comparable cloud-native environments using modern development practices • Secure AI/ML-powered systems against prompt injection, model supply chain, and agentic-workflow risks • Write and read production code • Apply web application security practices across authentication/authorization, cryptography, secure API design, microservices, and containers • Conduct threat modeling and security architecture reviews • Collaborate with engineering, DevOps, and product teams to influence secure development decisions • Help define scope within a growing security program • Build security telemetry pipelines or vulnerability management frameworks • Support compliance auditability and vulnerability disclosure processes

🎯 Requirements

• 5+ years of experience in application security engineering roles • Experience securing AWS or comparable cloud-native environments with modern development practices • Experience securing AI/ML-powered systems, or a clear ability to ramp fast on prompt injection, model supply chain, and agentic-workflow risks • Strong programming skills in Python, Go, Java, or JavaScript/TypeScript; ability to write and read production code • Expertise in web application security including OWASP Top 10, authentication/authorization, cryptography, and secure API design • Experience securing modern architectures including microservices, containers, and cloud-native systems • Hands-on experience with threat modeling and security architecture reviews • Ability to influence and collaborate cross-functionally with engineering, DevOps, and product teams • Strong written communication • Experience working in fast-paced or startup environments • Comfortable defining scope in a growing security program • Hands-on experience with commercial security tools including Veracode, Checkmarx, SonarQube, Wiz, Semgrep, and Burp Suite • Prior experience building security telemetry pipelines or vulnerability management frameworks • Exposure to SOC 2 and ISO 27001 compliance frameworks and how development decisions affect auditability • Familiarity with bug bounty programs and vulnerability disclosure processes

Apply Now

Similar Jobs

🔥 1 hour ago

Lenze

1001 - 5000

💼 Consulting

📦 Logistics

🚘 Automotive

Application Engineer developing motion-control, drive, and automation solutions for Lenze customers. Supporting PLC/HMI programming, commissioning, troubleshooting, sales, and technical training.

🕒 3 days ago

Guild Mortgage

1001 - 5000

🏗️ Construction

💸 Finance

🏠 Real Estate

Senior Application Security Engineer securing Guild Mortgage’s mortgage applications and AI systems. Leading application vulnerability management, secure development, AI guardrails, and red-team testing.

🕒 3 days ago

Grow Therapy

201 - 500

🏥 Healthcare

⚕️ Healthcare Insurance

🏪 Marketplace

Application security engineer securing Grow Therapy’s technology-powered mental healthcare marketplace. Building secure defaults, threat modeling, penetration testing, and CI guardrails for applications and AI features.

🕒 4 days ago

LVT (LiveView Technologies)

501 - 1000

🔐 Security

☁️ SaaS

🔧 Hardware

Application Engineer modernizing Warrant Technologies’ legacy web applications with Angular. Integrating responsive interfaces with Java/Spring services in a secure Agile development environment.

🕒 4 days ago

DecisionPoint Corporation

51 - 200

🎖️ Defense

💼 Consulting

📦 Logistics

Application Security Engineer securing enterprise applications, APIs, CMS components, and CI/CD pipelines for DecisionPoint’s federal and DoD-aligned missions. Performing code reviews, threat modeling, and application security testing.