1

Application Security Engineer Jobs (NOW HIRING)

Application Security Engineer

Albany, NY ยท On-site

$58.25 - $78/hr

Application Security Engineer Job Type: Contract Location: Albany, NY area preferred Work Arrangement: Hybrid / Onsite as Required Employment Type: W2 Work Authorization: , , or Valid Visa Important:

Application Security Engineer

Nashville, TN

$56.75 - $75.75/hr

The Application Security Engineer will serve as a trusted technical advisor, performing application security assessments, supporting secure software development practices, and helping engineering ...

Application Security Engineer

$60.25 - $80.25/hr

RIT Solutions, Inc. is seeking an Application Security Engineer to enhance the security of their ongoing AI development efforts. The role involves designing and implementing cloud and application ...

Application Security Engineer

Houston, TX ยท On-site

$56 - $75/hr

Application Security Engineer Hybrid in Houston, TX (TX state candidate only) Must have LinkedIn Need 15+ years profiles Looking for an application security engineer doing software development using ...

Application Security Engineer

Media, PA ยท On-site

$58.50 - $78/hr

Application Security Engineer Location: Corporate Department: Information Technology Job Summary: The Application Security Engineer is responsible for operating, supporting, maintaining, and ...

NY ยท On-site

$120 - $150/hr

Security | Application Security Engineer SOFTSWISS is growing, and we are seeking a skilled Application Security Engineer to join our team. If you are driven by excellence and share our values, we ...

Application Security Engineer

Washington, DC ยท On-site

$66.50 - $89/hr

Work with application developers ensure adoption of security principals and best practices. 6. Provides direction and support in security management and security architecture standards and ...

Application Security Engineer

$60.25 - $80.25/hr

The Application Security Engineer supports secure coding standards, threat modeling, static and dynamic testing, and secure secrets management. This position plays a critical role in strengthening ...

Application Security Engineer

Wawa, PA ยท On-site

$57.25 - $76.25/hr

Application Security Engineer Location: Corporate Department: Information Technology Job Summary: The Application Security Engineer is responsible for operating, supporting, maintaining, and ...

Application Security Engineer

Washington, DC ยท On-site

$66.50 - $89/hr

Work with application developers ensure adoption of security principals and best practices. 6. Provides direction and support in security management and security architecture standards and ...

Application Security Engineer

Saint Louis, MO ยท On-site

$57 - $76.25/hr

Application Security Engineer (Senior AppSec) Location: Remote Duration: 6-12+ Months Contract Role Overview We are seeking experienced Senior Application Security Engineers to join our team and play ...

Application Security Engineer

Atlanta, GA ยท On-site

$56.50 - $75.50/hr

The Application Security Engineer will play a key role in reducing security vulnerabilities across hundreds of web properties, supporting compliance initiatives, and implementing secure development ...

APPLICATION SECURITY ENGINEER

Fairfax, VA ยท On-site

$60 - $80.25/hr

Application Security Engineer Location: Onsite in Fairfax, VA 3 days and in Washington, DC 2 days per week. Duration: Long Term Contract Positions Require a Secret Clearance The Application Security ...

$63.50 - $85/hr

Application Security Engineer Apply now Save jobSaved job Application Security Engineer Be the spark that brightens days and ignite your career with TTECs award-winning employment experience. As an ...

next page

Showing results 1-20

Application Security Engineer information

See salary details

$29

$66

$96

How much do application security engineer jobs pay per hour?

As of Aug 25, 2026, the average hourly pay for application security engineer in the United States is $66.40, according to ZipRecruiter salary data. Most workers in this role earn between $56.49 and $75.48 per hour, depending on experience, location, and employer.

What does an application security engineer do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What does an application security engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an application security engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What are some common challenges faced by application security engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What cities are hiring for Application Security Engineer jobs?

Cities with the most Application Security Engineer job openings:

What are the most commonly searched types of Application Security Engineer jobs?

The most popular types of Application Security Engineer jobs are:

Who are the top companies hiring for Application Security Engineer jobs?

The top employers for Application Security Engineer jobs are:

What states have the most Application Security Engineer jobs?

States with the most job openings for Application Security Engineer jobs include:

What job categories do people searching Application Security Engineer jobs look for?

The top searched job categories for Application Security Engineer jobs are:

Infographic showing various Application Security Engineer job openings in the United States as of August 2026, with employment types broken down into 50% Full Time, and 50% Contract. Highlights an 50% In-person, and 50% Hybrid job distribution, with an average salary of $138,117 per year, or $66.4 per hour.

Application Security Engineer

Albany, NY โ€ข On-site

DKMRBH Inc.
Recruiting and Staffing Servicesย โ€ขย 11 - 50 employees

$58.25 - $78/hr

Other

Posted 10 days ago


Job description

Application Security Engineer

Job Type: Contract
Location: Albany, NY area preferred
Work Arrangement: Hybrid / Onsite as Required
Employment Type: W2
Work Authorization: , , or Valid Visa

Important: Candidates must be available for onsite training and onsite work when required. Albany, NY-area candidates will be given preference. Only candidates who meet all required qualifications will be considered.

Job Overview

We are seeking an experienced Application Security Engineer with a strong background in application security, software development, secure coding, vulnerability assessment, penetration testing, and DevSecOps.

The ideal candidate will have hands-on experience working with development teams to identify and remediate application security vulnerabilities, review source code and architecture changes, perform application security testing, and integrate security tools into CI/CD pipelines.

This position supports a large-scale healthcare technology environment built on Java, web applications, Service-Oriented Architecture (SOA), RHEL, JBoss, and COTS products.

Responsibilities
  • Work closely with software development teams to identify, document, prioritize, and remediate application security vulnerabilities.
  • Establish appropriate application security checkpoints throughout the SDLC.
  • Perform risk-based application security assessments and penetration testing.
  • Conduct SAST and DAST using application security tools such as Fortify and SonarQube.
  • Review code commits, pull requests, and architecture changes for vulnerabilities, misconfigurations, and compliance risks.
  • Evaluate application designs and provide recommendations related to security architecture, vulnerabilities, and remediation.
  • Consult with development leadership regarding secure coding and application security practices.
  • Integrate AI-driven code analysis platforms into CI/CD pipelines to identify vulnerabilities and insecure coding patterns before deployment.
  • Develop repeatable processes for prioritizing security findings, issue dispositions, and remediation activities.
  • Provide concise security status updates, risk assessments, and remediation reports to leadership and stakeholders.
  • Research emerging attack vectors, application vulnerabilities, cybersecurity threats, and industry trends.
  • Develop security training materials and provide application security guidance to development teams.
  • Support compliance with applicable industry security standards and best practices.
Required Skills & Experience
  • 8+ years of Information Technology experience.
  • 5+ years of software development experience as a Developer or Architect.
  • 3+ years of Application Security Engineering experience.
  • Strong Java / Web Development background.
  • Strong secure coding experience.
  • Experience with RHEL / Red Hat Enterprise Linux and JBoss.
  • Experience with Application Security Assessment and Penetration Testing.
  • Hands-on experience with SAST / Static Application Security Testing.
  • Hands-on experience with DAST / Dynamic Application Security Testing.
  • Experience with Fortify and/or SonarQube.
  • Experience reviewing source code, code commits, pull requests, and architecture changes.
  • Experience identifying and remediating application vulnerabilities and security risks.
  • Experience integrating security/code analysis tools into CI/CD pipelines.
  • Hands-on experience with AI-driven code analysis platforms.
  • Experience with DevSecOps and SDLC security.
  • Experience prioritizing security findings and managing vulnerability remediation.
  • Experience preparing risk reports and security updates for technical leadership.
Education

Bachelorโ€™s degree in Computer Science or a related technical field, or an equivalent combination of education and professional experience.

Preferred Certifications
  • CISSP
  • CEH
  • CISA
  • OSCP
  • OSCE
  • OSWE
Required Professional Skills
  • Excellent verbal and written communication skills.
  • Ability to explain complex application security and technical concepts to developers, technical teams, and management.
  • Strong collaboration and teaching abilities.
  • Strong analytical and critical-thinking skills.
  • Strong problem-solving and troubleshooting abilities.
  • Ability to gather and analyze information and develop alternative solutions.
  • Ability to work effectively with developers, architects, security teams, and leadership.
Work Requirements
  • Albany, NY area candidates preferred.
  • Must be available for onsite training.
  • Must be available to work onsite when required.
  • W2 employment required.
  • , , or Valid Visa required.
Ideal Candidate

The strongest candidates will be Application Security Engineers, Application Security Developers, DevSecOps Engineers, Product Security Engineers, or Security-focused Software Engineers with a genuine software development background.

This is not a general cybersecurity, SOC, network security, or GRC role. Candidates should have hands-on experience with Java/web applications, secure coding, application security testing, SAST/DAST, Fortify, SonarQube, code review, vulnerability remediation, penetration testing, and CI/CD security.


DKMRBH logo

About DKMRBH

Sourced by ZipRecruiter

Industry

Recruiting and staffing services

Company size

11 - 50 Employees

Headquarters location

Wilmington, DE, US

Year founded

2012