M

Application Security Engineer II (Hybrid)

MARS Solutions Group United State
Relocation
Apply
AI Summary

Bridge the gap between application development and cybersecurity by embedding security into the SDLC. Lead application security assessments, validate remediation efforts, and guide teams in adopting secure coding practices. Drive DevSecOps adoption and automate security processes for scalable, secure software development.

Key Highlights
Hybrid role (4 days onsite, 1 day remote) with team preference for Tuesdays onsite
Direct collaboration between development and security teams to integrate security early in the SDLC
Experience with container security (Kubernetes, Docker) and DevSecOps practices is essential
Key Responsibilities
Partner with application development teams to integrate security throughout the Software Development Life Cycle (SDLC)
Perform application security assessments and validate vulnerability remediation efforts across multiple projects
Review solution and system designs to identify security risks early, and participate in project/architecture meetings to ensure security requirements are addressed
Technical Skills Required
Application Security Assessments Secure Software Development Practices Container Security (Kubernetes, Docker)
Benefits & Perks
Relocation assistance provided
Hybrid work arrangement (4 days onsite, 1 day remote)
Nice to Have
Experience implementing DevSecOps practices
Experience developing custom security automation
Experience administering application security tools and platforms

Job Description


Direct Hire

Des Moines, IA (Relocation assistance will be provided)

We re looking for an Application Security Engineer II to serve as a key liaison between our Application Development and Information Security teams.

This role is ideal for someone who understands both software development and cybersecurity and can help development teams build security into applications from the earliest stages of design through deployment.

You ll work across a variety of projects and security initiatives from assessing vulnerabilities and validating remediation to reviewing system designs, participating in project discussions, and helping teams adopt secure development practices.

Hybrid: 4 days onsite / 1 day remote

Team preference: Tuesdays onsite

What You ll Do

  • Partner with application development teams to integrate security throughout the Software Development Life Cycle (SDLC)
  • Perform application security assessments and validate vulnerability remediation efforts
  • Review solution and system designs to identify security risks early in the development process
  • Participate in project and architecture meetings to ensure security requirements are addressed
  • Work directly with developers to identify vulnerabilities and provide practical recommendations for secure coding
  • Evaluate security throughout the System Design Life Cycle
  • Help development teams understand and remediate application security risks
  • Work with containerized environments and container security platforms, including Kubernetes and Docker
  • Support the implementation and adoption of DevSecOps practices
  • Develop custom security automation where appropriate
  • Administer and support application security tools and technologies
  • Manage multiple security initiatives and projects simultaneously
  • Communicate security findings and recommendations to both technical and non-technical stakeholders

Required Qualifications

  • Bachelor s or Master s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering, or a related technical discipline
  • Hands-on experience performing application security assessments
  • Experience validating and tracking vulnerability remediation
  • Experience working directly with software development teams throughout the SDLC
  • Experience with container security, including technologies such as Kubernetes and Docker
  • Strong understanding of application security principles and secure software development practices

Preferred Experience

  • Experience implementing DevSecOps practices
  • Experience developing custom security automation
  • Experience administering application security tools and platforms
  • Experience working across development, security, architecture, and infrastructure teams

What We re Looking For

  • Strong written and verbal communication skills
  • Ability to translate complex technical security risks into clear, actionable recommendations
  • Strong analytical and problem-solving abilities
  • Excellent organizational and project management skills
  • Ability to manage multiple projects and priorities
  • Self-directed, proactive approach with strong attention to detail
  • Comfortable working collaboratively with developers and security professionals

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Northrop Grumman

United State

Systems Security Engineer

Cyber Security
1d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Associate

sundayy

United State

Senior Security Engineer

Cyber Security
1d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

invictus direct

United State

Subscribe our newsletter

New Things Will Always Update Regularly