Назад
Company hidden
3 дня назад

Sr Application Security Engineer

135 000 - 150 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr Application Security Engineer (Application Security/AI): Leading hands-on application security testing, secure code review, and secure SDLC enablement across modern application environments with an accent on automation, threat modeling, and risk-based remediation. Focus on scaling CI/CD security coverage, evaluating AI-assisted tooling, and protecting web, API, mobile, cloud, and AI-enabled applications.

Location: Hybrid in Lincoln, Nebraska; candidates must live within 30 miles of an office location and work onsite three days per week. Candidates must already be authorized to work in the United States; visa sponsorship is not available.

Annual compensation: $135,000–$150,000, depending on experience.

Company

hirify.global Business Services provides payment technology and education services to higher education institutions, K–12 schools, students, families, and supporters.

What you will do

  • Lead manual source code reviews focused on business logic, access control, authentication, authorization, and data protection.
  • Perform application security testing across web and API applications using SAST, DAST, SCA, container scanning, secrets detection, and related methodologies.
  • Develop automated source code review processes and CI/CD security checks to expand application security coverage.
  • Partner with engineering, cloud, and product teams to embed secure SDLC practices from design through production.
  • Support the Security Champions program through coaching, secure coding guidance, and developer resources.
  • Assess AI-assisted security tooling and advise on threat modeling for web, API, mobile, cloud, and AI-enabled applications.

Requirements

  • Bachelor’s degree in computer science, cybersecurity, information technology, software engineering, or a related field, or equivalent experience.
  • 5–7+ years of hands-on application security, software security, or secure software engineering experience.
  • Experience integrating security tooling and automated checks into CI/CD pipelines.
  • Experience with secure code review and web/API application testing using OWASP Top 10 and web testing methodologies.
  • Ability to assess, prioritize, document, and communicate vulnerabilities and risk-based remediation guidance.
  • Current and future authorization to work in the United States without visa sponsorship is required.

Nice to have

  • Advanced degree or specialized training in application security, cybersecurity, software engineering, or cloud security.
  • Experience with AI/LLM-integrated applications, AI security tooling, mobile security, reverse engineering, or advanced application security certifications.

Culture & Benefits

  • Hybrid work environment with regular in-office collaboration.
  • Medical, dental, vision, HSA, and FSA benefits.
  • Generous earned time off, life insurance, disability coverage, and employee assistance services.
  • 401(k), student loan repayment, employee stock purchase program, tuition reimbursement, and performance-based incentive pay.
  • Wellness program and a welcoming, respectful workplace.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →