Staff Application Security Engineer
Location: Remote
Compensation: Salary
Reviewed: Fri, Sep 04, 2026
This job expires in: 30 days
Job Summary
Driving the technical direction for application security and vulnerability management programs, the full-time Staff Application Security Engineer will work remotely within the US (excluding specific metro areas) to lead strategy, improve processes, and mentor engineers while ensuring the security of cloud services and IoT systems.
Key responsibilities
- Lead the strategy and continuous improvement of the vulnerability management program and other core application security initiatives
- Build and champion automation tools to enhance vulnerability detection and response across various systems
- Mentor engineers on secure design practices and communicate risk and remediation tradeoffs to engineering leadership
Required qualifications
- 10+ years of relevant experience as a cloud engineer or security engineer, with hands-on vulnerability management in a multi-product enterprise environment
- Proficiency in Go, Python, and JavaScript
- Experience with modern vulnerability management tools and familiarity with vulnerability scoring frameworks like CVSS and EPSS
- Strong background in AWS cloud services
- Deep understanding of Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA)
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 44,401 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee