J

Application Product Security Engineer

Jobgether • United State
Remote
Apply
AI Summary

This role focuses on securing modern software products and sensitive data through hands-on security engineering. The engineer will collaborate with product and engineering teams to identify risks early and embed security throughout the development lifecycle. Key requirements include 2-4 years of application security experience, strong technical fundamentals, and effective communication skills.

Key Highlights
Hands-on security engineering role
2-4 years of application security experience required
Fully remote work environment
Salary range $130,000-$170,000
Key Responsibilities
Partner with product and engineering teams throughout the product lifecycle to identify security risks and implement secure solutions from the beginning
Lead threat modeling activities and secure design reviews for new features, products, and architectural changes
Conduct security-focused code reviews and support engineers in remediating vulnerabilities while improving secure development practices
Build, maintain, and improve application security tooling, including static analysis, dependency scanning, and secrets detection integrated into development workflows
Participate in security incident response activities, including investigation, containment, remediation, and post-incident improvements
Review and prioritize findings from vulnerability assessments, penetration tests, security scans, and responsible disclosure programs
Develop security guidelines, reusable patterns, and training materials that help engineering teams adopt secure practices
Support broader security initiatives, including cloud security improvements, customer security assessments, and internal security enhancements
Evaluate emerging security risks and technologies to continuously improve application protection strategies
Collaborate with cross-functional teams to balance security requirements with product goals and engineering velocity
Technical Skills Required
Application security Threat modeling Vulnerability management Incident response
Benefits & Perks
Competitive base salary range of $130,000-$170,000
Equity participation opportunities
Fully remote work environment
Health, dental, and vision insurance coverage
Flexible paid time off policy
Nice to Have
Experience working in a startup environment or within a small, highly collaborative security team
Knowledge of cloud security practices across platforms such as AWS, GCP, or Azure
Experience securing AI-powered applications, machine learning systems, or products handling sensitive financial information
Familiarity with security and compliance frameworks such as SOC 2 or GDPR
Contributions to security communities, bug bounty programs, capture-the-flag competitions, or open-source security projects

Job Description


This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Product Security Engineer based in the United States.

This is a hands-on security engineering role focused on protecting modern software products and the sensitive data they manage.

The position offers the opportunity to shape security practices from the ground up within a fast-moving engineering environment.

You will collaborate closely with product and engineering teams to identify risks early and embed security throughout the development lifecycle.

The role combines application security, secure architecture, vulnerability management, and incident response responsibilities.

You will have significant ownership in building security processes, tooling, and standards that directly influence product reliability and customer trust.

This opportunity is ideal for a security-minded engineer who enjoys solving complex problems and working across teams.

You will play a key role in creating scalable security practices while contributing to a culture of secure innovation.

Accountabilities

The Application Product Security Engineer will help establish and advance application security practices by partnering with engineering teams, improving security processes, and ensuring products are designed and delivered securely. This role requires strong technical judgment, collaboration skills, and the ability to operate effectively in a dynamic environment.

  • Partner with product and engineering teams throughout the product lifecycle to identify security risks and implement secure solutions from the beginning.
  • Lead threat modeling activities and secure design reviews for new features, products, and architectural changes.
  • Conduct security-focused code reviews and support engineers in remediating vulnerabilities while improving secure development practices.
  • Build, maintain, and improve application security tooling, including static analysis, dependency scanning, and secrets detection integrated into development workflows.
  • Participate in security incident response activities, including investigation, containment, remediation, and post-incident improvements.
  • Review and prioritize findings from vulnerability assessments, penetration tests, security scans, and responsible disclosure programs.
  • Develop security guidelines, reusable patterns, and training materials that help engineering teams adopt secure practices.
  • Support broader security initiatives, including cloud security improvements, customer security assessments, and internal security enhancements.
  • Evaluate emerging security risks and technologies to continuously improve application protection strategies.
  • Collaborate with cross-functional teams to balance security requirements with product goals and engineering velocity.

Requirements

The ideal candidate is a security-focused engineer with experience securing software applications and collaborating closely with development teams. Success in this role requires strong technical fundamentals, practical security knowledge, and the ability to communicate effectively across technical and business audiences.

  • 2-4 years of experience in application security, product security, software engineering with security responsibilities, or a related security-focused role.
  • Strong understanding of common application vulnerabilities, including OWASP Top 10 risks, authentication and authorization issues, injection vulnerabilities, and security design principles.
  • Experience with threat modeling, secure architecture reviews, and communicating security risks in a practical and actionable way.
  • Hands-on experience supporting security incidents, including detection, investigation, response, and remediation activities.
  • Ability to read and write code in languages such as Python, TypeScript/JavaScript, Go, or similar technologies.
  • Experience reviewing application code and identifying security weaknesses within real-world software systems.
  • Familiarity with application security tooling such as SAST, dependency scanners, vulnerability scanners, and CI/CD security integrations.
  • Strong communication and collaboration skills with the ability to build trusted relationships with engineering teams.
  • Ability to work independently, manage changing priorities, and take ownership in an evolving environment.
  • Strong problem-solving skills and a proactive approach to improving security practices.

Preferred Qualifications

  • Experience working in a startup environment or within a small, highly collaborative security team.
  • Knowledge of cloud security practices across platforms such as AWS, GCP, or Azure.
  • Experience securing AI-powered applications, machine learning systems, or products handling sensitive financial information.
  • Familiarity with security and compliance frameworks such as SOC 2 or GDPR.
  • Contributions to security communities, bug bounty programs, capture-the-flag competitions, or open-source security projects.

Benefits

  • Competitive base salary range of $130,000-$170,000, depending on experience and location.
  • Equity participation opportunities.
  • Fully remote, remote-first work environment.
  • Health, dental, and vision insurance coverage.
  • Flexible paid time off policy.
  • Opportunity to shape security strategy and engineering practices in a growing organization.
  • High ownership role with direct impact on product security and customer trust.
  • Collaborative culture focused on innovation, inclusion, and continuous improvement.

How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


Similar Jobs

Explore other opportunities that match your interests

Application Security Engineer

Cyber Security
•
1h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State

AI Applications Security Engineer

Cyber Security
•
18h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State

Junior Cybersecurity Analyst - Fully Remote

Cyber Security
•
20h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Entry level

hrcap, inc.

United State

Subscribe our newsletter

New Things Will Always Update Regularly