Application Security Security Engineer
Core
Design, build, and protect enterprise systems, applications, data, and assets against cyber threats by performing vulnerability assessments, penetration testing, and compliance monitoring.
Role type
Application Security Engineer
Builds
Secure enterprise systems, applications, and data flows
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Vulnerability assessment and scanning, Penetration testing (Infrastructure, Network, Applications), DAST tooling (WebInspect, Burp Suite, Data Theorem), Source code review, Secure configuration review, Web services testing, Architecture and data flow diagram review, False positive triage
Preferred skills
Mentoring and leading teams, Cross-skill flexibility, Upskilling
Technologies
WebInspect, Burp Suite, Data Theorem, Open Source Tools
Responsibilities
Perform vulnerability assessment including scanning, prioritization, tracking, and remediation coordination; Conduct penetration testing of infrastructure, network, and applications; Monitor compliance; Review architecture, functional, and technical documentation of applications and data flow diagrams; Analyze and detect false positives from vulnerability scanners.
Seniority
Mid-level (4-6 years experience), hands-on IC with potential for mentorship