Likeremote

Subscribe to the latest remote jobs:

  • Likeremote jobs on https://LinkedIn.com/
  • Likeremote jobs on https://telegram.org/
  • Likeremote jobs on Reddit.com
IG

Application Security Engineer

ITR Group
🇺🇸 United States
Hybrid
3 days ago
  • DAST
  • CI/CD
  • OWASP
  • AI
  • SAST
  • Threat Modeling
  • Machine Learning
  • DevSecOps
  • Vulnerability Management
  • AWS
  • Azure
  • GCP
  • Kubernetes
  • CSSLP
  • CISSP
  • OSCP
  • GSEC
  • Pension
Not scoredNo CV on file. Upload one and this job gets a score out of 100.Upload CV
• Hybrid Schedule: 2 days onsite or remote in Brooklyn Park, MN (flexible on days)
Client requirements: 
Work authorization status: US Citizen or GC holder
W2 hourly only , no c2c
Location: Minneapolis/St Paul, MN area


KEY SKILLS 
  • 4+ years of experience in application security, cybersecurity engineering, software engineering, or related technical security roles.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, or equivalent practical experience.
  • Experience analyzing and validating vulnerability findings from automated security tools.
  • Experience with dynamic application security testing (DAST) tools and vulnerability assessment methodologies
  • Familiarity with CI/CD pipelines and automated security testing integrations
  • Understanding of OWASP Top 10, API security risks, and secure software development lifecycle practices.
Seeking a highly motivated Application Security Engineer to support and advance enterprise AI security initiatives across engineering and cybersecurity. This role will partner closely with engineering teams to evaluate emerging AI security practices, assess secure development standards, and operationalize tooling that strengthens the security posture of AI-enabled applications and platforms.
The ideal candidate will bring strong hands-on application security experience, including secure code review, vulnerability validation, application security testing, and CI/CD security integration. Experience with AI/LLM security is highly valued but is not required; candidates with strong application security fundamentals and an interest in applying those skills to emerging AI technologies are encouraged to apply.

Key Responsibilities
  • Partner with AI engineering, software engineering, and cybersecurity teams to evaluate and implement AI security practices, tooling, and operational processes.
  • Conduct security-focused code reviews across applications, APIs, automation workflows, and AI-enabled services.
  • Analyze and validate findings from Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Static Application Security Testing (SAST), and other vulnerability-discovery platforms.
  • Assess vulnerability impact, identify false positives, prioritize findings, and provide practical remediation guidance to engineering teams.
  • Integrate and support automated application security testing and controls within CI/CD pipelines.
  • Research and evaluate emerging AI/LLM vulnerability-discovery tools and AI-specific security testing methodologies.
  • Support threat modeling and security design reviews for applications, AI-enabled services, and machine-learning systems.
  • Partner with engineering teams to strengthen secure software development lifecycle (SDLC) and DevSecOps practices.
  • Develop security documentation, standards, and repeatable processes for application security, AI security, and vulnerability management.
  • Participate in proof-of-concept evaluations of new application and AI security technologies.
Must Have Qualifications
  • 4+ years of relevant technical experience, including hands-on application security experience within application security, product security, cybersecurity engineering, or software engineering environments.
  • Hands-on experience analyzing and validating findings from automated application security tools, including assessing vulnerability impact and identifying false positives.
  • Hands-on experience with Dynamic Application Security Testing (DAST) tools and application vulnerability-assessment methodologies.
  • Experience performing security-focused code reviews and identifying common application vulnerabilities in at least one modern programming language.
  • Experience working with CI/CD pipelines and integrating or supporting automated security testing within the software development lifecycle.
  • Strong working knowledge of OWASP Top 10, API security risks, common application vulnerabilities, secure coding principles, and secure SDLC practices.
  • Ability to communicate technical security findings and remediation recommendations effectively to engineering teams
Nice to Have Qualifications
  • Experience working in enterprise-scale DevSecOps environments.
  • Experience or familiarity with AI/LLM application security, AI security frameworks, adversarial testing concepts, or AI vulnerability-discovery and testing tools.
  • Experience securing AI-enabled applications or evaluating emerging AI application-security risks.
  • Application security experience within AWS, Azure, or GCP environments.
  • Experience with SAST, Software Composition Analysis (SCA), and/or runtime application-security tooling.
  • Experience securing cloud-native, containerized, or Kubernetes-based applications.
  • Relevant security certifications such as CSSLP, CISSP, OSCP, GSEC, or GIAC application-security certifications.
 
ITR Group offers a competitive compensation and benefits package, including medical, dental, and 401(k) for eligible employees. The W2 pay range for this type of role is approximately $67.00 -111.00 per billable hour. This range is an estimate and not a guarantee of compensation. The final rate will be determined by factors such as experience, market trends, and specific job assignments. Discover more about how ITR Group connects top talent with leading client opportunities.
 
ITR Group is an Equal Opportunity Employer. We do not discriminate against applicants on the basis of their race, color, national origin, religion, creed, disability, age, sex, sexual orientation, gender identity, marital status, familial status, or status with regard to public assistance, or membership or activity in a local human rights commission.

Application Security Engineer · ITR Group

Auto apply with Likeremote