Staff Application Security Engineer

1 month, 1 week ago
Ivanti

Ivanti

Ivanti provides automated solutions that discover, repair, and secure devices across various locations, enabling employees to work efficiently and securely from anywhere.

Internet Software & Services
1K-5K
Founded 1985
$26M raised

Description

  • Manage the integration of security best practices throughout the software development lifecycle to protect products, services, and IT assets.
  • Build scalable security tools, processes, and solutions to detect, remediate, and mitigate vulnerabilities in large codebases.
  • Design secure architectures and perform threat modeling, penetration testing, and code reviews for web and mobile applications.
  • Partner with development, operations, and architecture teams to embed security into DevOps practices.
  • Lead security education efforts by delivering training and documentation to cross-functional teams.
  • Drive vulnerability remediation efforts with stakeholders across technical and non-technical functions.
  • Collaborate with product, engineering, business, and third-party security vendors on vulnerability reports and disclosure programs.
  • Advise stakeholders on vulnerability prioritization, secure coding standards, cryptographic techniques, and security/compliance practices.

Requirements

  • 8+ years of experience in web application security.
  • Deep technical knowledge of common and advanced security vulnerabilities, exploitation techniques, and remediation strategies.
  • Experience with applied cryptography, threat modeling, vulnerability assessment, CVSS scoring, and penetration testing.
  • Experience with secure software development practices across SSDLC and CI/CD pipelines.
  • Experience implementing security tools such as SAST, SCA, DAST, and container scanning for large-scale codebases.
  • Experience providing secure coding education to developers.
  • Strong programming skills, preferably in Python.
  • Ability to explain complex security topics clearly to technical and non-technical stakeholders.
  • Demonstrated ability to work cross-functionally in collaborative environments.
  • Experience contributing to responsible disclosure, bug bounty, and vulnerability management programs.
  • Experience securing cloud and SaaS environments at scale.

Benefits

  • Remote-friendly, flexible schedules.
  • Competitive compensation and total rewards.
  • Health, wellness, and financial plans for you and your family.
  • Access to best-in-class learning tools and development programs.
  • Work with global, diverse teams across 23+ countries.
  • A culture that values equity, belonging, and inclusion.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Application Security Engineer

e.l.f. Beauty 251-1K Consumer Goods

Senior Application Security Engineer role at a remote marketing and digital commerce company focused on securing applications across the software development lifecycle.

Agile AWS Azure CI/CD Cybersecurity DevSecOps GCP HTML JavaScript Penetration Testing Python REST API
18 hours, 58 minutes ago

Binance Accelerator Program - Blockchain / Smart Contract Security

Binance 5K-10K Capital Markets

Binance is seeking a Binance Accelerator Program participant to support smart contract and blockchain security work, including audits, vulnerability analysis, and risk detection across Web3 systems.

Blockchain Git Python VS Code
1 day, 22 hours ago

Senior Application Security Tester & AI Red Team Subject Matter Expert

Evolve Security Academy 11-50 Internet Software & Services

Evolve Security is seeking a senior offensive security specialist to lead complex web, API, and AI red team engagements while defining the firm’s testing methodology for LLM-enabled and agentic systems.

Bash GraphQL JavaScript JWT Metasploit Nmap OpenID Connect Penetration Testing Postman PowerShell Python REST API SAML SPA TypeScript
3 days, 8 hours ago

Application Security Engineer - DAST & Burp Suite Enterprise Security Testing

TOMORROW HIRE Internet Software & Services

Application Security Engineer at a fully remote federal contractor supporting secure application development, testing, and compliance for enterprise web applications.

Bash Burp Suite C# CI/CD Eclipse Java Linux .NET Python Selenium Unix Visual Studio
3 days, 22 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers