Cyber Security Engineer – Application Security

🔥 0 minutes ago

🔔 Pennsylvania – Remote

infoinfo

💵 $110k - $150k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

💻 Application Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of TherapyNotes, LLC

TherapyNotes, LLC

51 - 200 employees

Founded 2010

💼 Consulting

⚖️ Legal

🏥 Healthcare

Consulting • Legal • Healthcare

TherapyNotes, LLC is a comprehensive practice management system designed specifically for behavioral health professionals, including psychologists, therapists, psychiatrists, and social workers. The platform offers an array of features such as scheduling, telehealth, electronic health records (EHR), billing, and a client portal, all integrated into a secure and user-friendly software solution. TherapyNotes aims to streamline clinical workflows, enhance patient care, and reduce administrative burdens for mental health practices, supporting them with dedicated customer service and continuous innovation based on user feedback.

📋 Description

• Own application security across the SDLC and CI/CD pipeline • Collaborate with development teams to continuously integrate security into the SDLC and CI/CD pipeline • Enforce secure coding standards and best practices to protect customer data confidentiality, integrity, and availability • Perform security assessments, code reviews, and threat modeling • Own and operate GitHub Advanced Security, triaging code, secret, and dependency-scanning findings • Identify recurring vulnerability patterns and recommend broader fixes • Improve scanning coverage, configuration, and workflows • Secure CI/CD pipelines and GitHub Actions, including identities, runners, permissions, and secrets • Reduce software supply-chain risk through third-party action review, dependency controls, action pinning, and artifact provenance • Review Terraform and other infrastructure-as-code for security issues • Partner with IT platform teams on IaC scanning and secure deployment practices • Align application security measures with HIPAA, HITRUST, and HITECH and support regular audits • Collaborate with developers to remediate vulnerabilities and ensure effective patching or mitigation • Develop, deploy, and manage SAST, DAST, and vulnerability management tools • Support application security incident response, root-cause identification, and resolution strategies • Contribute to secure-coding awareness programs for development teams • Contribute to broader security engineering efforts including vulnerability management, incident response, and identity and access security

🎯 Requirements

• Bachelor's degree in information security, computer science, or related field preferred; equivalent experience considered • 5+ years in application security or security engineering • Demonstrated experience securing CI/CD pipelines and GitHub Actions, including SAST/DAST, code/secret/dependency-scanning triage, runner and workflow-permission security, and third-party action/supply-chain risk • Experience reviewing Terraform or other infrastructure-as-code for security misconfigurations • Working knowledge of SIEM, EDR/XDR, and DLP platforms, including deployment, tuning, and alert triage • Understanding of Zero Trust architecture principles and their application to application and identity access • Strong understanding of HIPAA, HITECH, and HITRUST and their impact on application security • Experience with API security, particularly integrations with other healthcare systems • Prior experience securing cloud environments; Azure preferred and AWS a plus • Willingness to participate in an incident response on-call rotation • Industry certifications such as GWAPT, OSWE, GPEN, or an Azure/AWS cloud security certification are ideal; CISSP or HCISPP a plus but not a substitute for hands-on tooling experience • Familiarity with HL7 or other healthcare data standards preferred

🏖️ Benefits

• Employer sponsored health, dental, vision, life, and disability insurance • Retirement plan with company contribution • Annual company profit sharing • Personal development/training budget • Open, collaborative work environment • Extensive 2-week onboarding plan • Comprehensive mentorship program

Apply Now

Similar Jobs

🔥 1 hour ago

Field AI

11 - 50

🤖 Artificial Intelligence

🏗️ Construction

Field Application Engineer supporting Field AI’s deployed drones, quadrupeds, and humanoid robots. Conducting field testing, troubleshooting, client demos, and nationwide travel.

🔥 12 hours ago

GE Aerospace

10,000+ employees

🚀 Aerospace

🏭 Manufacturing

🎖️ Defense

Materials Application Engineer developing nickel superalloy life-controlled rotating-part forgings for GE Aerospace aviation components. Solving manufacturing and supply-chain process challenges across aerospace materials systems.

🇺🇸 United States – Remote

💵 $130k - $173k / year

💰 $2G Post-IPO Debt - GE Aerospace on 2025-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

💻 Application Engineer

🕒 Yesterday

Aeroflow Health

501 - 1000

🏥 Healthcare

💼 Consulting

🏭 Manufacturing

Engineering Manager leading Aeroflow Health’s internal application engineers. Modernizing legacy healthcare systems into scalable React, TypeScript, Node.js, and AWS platforms.

🕒 Yesterday

GE Vernova

10,000+ employees

💼 Consulting

📦 Logistics

🏭 Manufacturing

Technical Application Engineer supporting GE Vernova Grid Automation customers with monitoring and diagnostics solutions. Leading technical proposals, integrations, troubleshooting, training, and pilot projects.

🕒 Yesterday

GE Vernova

10,000+ employees

💼 Consulting

📦 Logistics

🏭 Manufacturing

Technical Application Engineer supporting GE Vernova’s grid monitoring and diagnostics customers. Leading technical solutions, integrations, training, troubleshooting, and customer projects.