Application Security Engineer
Core
Create threat models using STRIDE, analyze security risks and attack surfaces, and assess security across web, mobile, backend, API, and service environments.
Role type
Application Security Engineer
Builds
Security recommendations, vulnerability remediation plans, and secure SDLC practices for distributed service-based environments.
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
STRIDE threat modeling, Security by Design, Secure SDLC, OWASP Top 10 (Web & Mobile), API security, microservices architecture, risk analysis, vulnerability assessment
Preferred skills
AI for threat modeling and risk analysis, experience with Windows, Linux, and database security
Technologies
STRIDE, OWASP, SDLC frameworks, microservices, Windows, Linux, databases
Responsibilities
Create threat models, analyze security risks and attack surfaces, assess security of application environments, develop security recommendations, track vulnerability remediation, collaborate with development and infrastructure teams, translate technical risks for business audiences
Seniority
Mid-level, hands-on IC
