This role focuses on securing modern software products and sensitive data through hands-on security engineering. The engineer will collaborate with product and engineering teams to identify risks early and embed security throughout the development lifecycle. Key requirements include 2-4 years of application security experience, strong technical fundamentals, and effective communication skills.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Product Security Engineer based in the United States.
This is a hands-on security engineering role focused on protecting modern software products and the sensitive data they manage.
The position offers the opportunity to shape security practices from the ground up within a fast-moving engineering environment.
You will collaborate closely with product and engineering teams to identify risks early and embed security throughout the development lifecycle.
The role combines application security, secure architecture, vulnerability management, and incident response responsibilities.
You will have significant ownership in building security processes, tooling, and standards that directly influence product reliability and customer trust.
This opportunity is ideal for a security-minded engineer who enjoys solving complex problems and working across teams.
You will play a key role in creating scalable security practices while contributing to a culture of secure innovation.
Accountabilities
The Application Product Security Engineer will help establish and advance application security practices by partnering with engineering teams, improving security processes, and ensuring products are designed and delivered securely. This role requires strong technical judgment, collaboration skills, and the ability to operate effectively in a dynamic environment.
- Partner with product and engineering teams throughout the product lifecycle to identify security risks and implement secure solutions from the beginning.
- Lead threat modeling activities and secure design reviews for new features, products, and architectural changes.
- Conduct security-focused code reviews and support engineers in remediating vulnerabilities while improving secure development practices.
- Build, maintain, and improve application security tooling, including static analysis, dependency scanning, and secrets detection integrated into development workflows.
- Participate in security incident response activities, including investigation, containment, remediation, and post-incident improvements.
- Review and prioritize findings from vulnerability assessments, penetration tests, security scans, and responsible disclosure programs.
- Develop security guidelines, reusable patterns, and training materials that help engineering teams adopt secure practices.
- Support broader security initiatives, including cloud security improvements, customer security assessments, and internal security enhancements.
- Evaluate emerging security risks and technologies to continuously improve application protection strategies.
- Collaborate with cross-functional teams to balance security requirements with product goals and engineering velocity.
Interested in remote work opportunities in Cyber Security? Discover Cyber Security Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
The ideal candidate is a security-focused engineer with experience securing software applications and collaborating closely with development teams. Success in this role requires strong technical fundamentals, practical security knowledge, and the ability to communicate effectively across technical and business audiences.
- 2-4 years of experience in application security, product security, software engineering with security responsibilities, or a related security-focused role.
- Strong understanding of common application vulnerabilities, including OWASP Top 10 risks, authentication and authorization issues, injection vulnerabilities, and security design principles.
- Experience with threat modeling, secure architecture reviews, and communicating security risks in a practical and actionable way.
- Hands-on experience supporting security incidents, including detection, investigation, response, and remediation activities.
- Ability to read and write code in languages such as Python, TypeScript/JavaScript, Go, or similar technologies.
- Experience reviewing application code and identifying security weaknesses within real-world software systems.
- Familiarity with application security tooling such as SAST, dependency scanners, vulnerability scanners, and CI/CD security integrations.
- Strong communication and collaboration skills with the ability to build trusted relationships with engineering teams.
- Ability to work independently, manage changing priorities, and take ownership in an evolving environment.
- Strong problem-solving skills and a proactive approach to improving security practices.
- Experience working in a startup environment or within a small, highly collaborative security team.
- Knowledge of cloud security practices across platforms such as AWS, GCP, or Azure.
- Experience securing AI-powered applications, machine learning systems, or products handling sensitive financial information.
- Familiarity with security and compliance frameworks such as SOC 2 or GDPR.
- Contributions to security communities, bug bounty programs, capture-the-flag competitions, or open-source security projects.
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
- Competitive base salary range of $130,000-$170,000, depending on experience and location.
- Equity participation opportunities.
- Fully remote, remote-first work environment.
- Health, dental, and vision insurance coverage.
- Flexible paid time off policy.
- Opportunity to shape security strategy and engineering practices in a growing organization.
- High ownership role with direct impact on product security and customer trust.
- Collaborative culture focused on innovation, inclusion, and continuous improvement.
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Why Apply Through Jobgether?
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Similar Jobs
Explore other opportunities that match your interests