1

Application Security Engineer Jobs in Alabama (NOW HIRING)

ESSENTIAL FUNCTIONS Security Engineering * Design, build, test and deploy new security technologies, which include the development of the operational manual and run books * Provides technical ...

... application lifecycles, with a particular focus on quality and completeness of all deliverables ... security engineering activities to leadership and stakeholders. * Maintain up-to-date knowledge of ...

Showing results 21-40

Application Security Engineer information

See Alabama salary details

$27

$60

$87

How much do application security engineer jobs pay per hour?

As of Jul 24, 2026, the average hourly pay for application security engineer in Alabama is $60.19, according to ZipRecruiter salary data. Most workers in this role earn between $51.20 and $68.41 per hour, depending on experience, location, and employer.

What Does an Application Security Engineer Do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by Application Security Engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an Application Security Engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an Application Security Engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Alabama? The most popular types of Application Security Engineer jobs in Alabama are:
What are popular job titles related to Application Security Engineer jobs in Alabama? For Application Security Engineer jobs in Alabama, the most frequently searched job titles are:
What job categories do people searching Application Security Engineer jobs in Alabama look for? The top searched job categories for Application Security Engineer jobs in Alabama are:
What are popular job titles related to Application Security Engineer jobs in AL? For Application Security Engineer jobs in AL, the most frequently searched job titles are:
Infographic showing various Application Security Engineer job openings in Alabama as of July 2026, with employment types broken down into 77% Full Time, 17% Part Time, 1% Temporary, and 5% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $125,187 per year, or $60.2 per hour.
Red Team Security Engineer III with Security Clearance

Red Team Security Engineer III with Security Clearance

Millennium Corporation

Huntsville, AL • On-site

Other

Posted 10 days ago


Job description

Overview Millennium is proud to be part of the Markon enterprise, a network of specialized organizations united in support of critical national security missions. This partnership strengthens our ability to deliver results by expanding our technical depth, operational reach, and access to a broader bench of proven experts, ensuring our customers continue to receive best-in-class cybersecurity support. For more than two decades, Millennium has operated at the forefront of cybersecurity. Our elite team of over 300 professionals brings an unmatched record of performance across Red Team Operations, Defensive Cyber Operations, Software Engineering, and Technical Engineering. As home to the largest contingent of contracted Red Team operators supporting the Department of Defense, Millennium delivers unparalleled threat intelligence and battle-tested expertise to both DoD and federal civilian customers. What We Believe Millennium is an equal opportunity employer and does not discriminate or allow discrimination on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state, or local law. Responsibilities Millennium is hiring Red Team Security Engineer III in Huntsville, AL. Candidate must have an active Secret Clearance with eligibility to obtain a Top Secret/SCI Clearance.   The Red Team Security Engineer will conduct multiple penetration tests of global customer networks, rapid development of domain or problem-specific tools that leverage identified vulnerabilities, research on the latest exploitation techniques and threat vectors, and design and configuration of representative test environments.    Candidate must support various training events, conferences, exercises, and demonstrations to ensure continued compliance with team member certification requirements to enhance technical capabilities, and to support authorized missions and test events. Qualifications * Must have an active Secret Clearance with eligibility to obtain a Top Secret/SCI Clearance  * Bachelor’s degree from an accredited college or university in computer science, information systems, engineering, scientific or a mathematics-intensive discipline or a Relevant Technical Discipline. At least 5-8 years of practical experience required. Two years of relevant experience with an Associate’s degree will be considered the equivalent of a Bachelor’s degree. Four years of relevant experience will be considered equivalent to a Bachelor’s degree. Relevant Experience and Certificates to include; Offensive Security Certified Professional (OSCP) Certification and at least 3 years of practical experience required or NSA Remote Interactive Operators Training (RIOT) Certificate or Red Team Apprentice (Level I) Certificate from certified and accreditated DOD Red Team.
* Must have a CEH & CISSP Certification upon hire * SPECIALIZED experience in Red Teaming, Computer Network Attack (CNA), Computer Network Exploitation (CNE), Computer Network Defense (CND), and/or penetration testing * Ability to independently and rapidly develop tools and scripts from concept to production in a high-stress, short deadline, under-resourced environment using multiple programming languages Additional Requirements:  * Experience with at least one of the following scripting languages (PowerShell, Bash, Python, Ruby, Node.js) * Experience performing web application security assessments * Experience with TCP/IP protocols as it relates to network security * Experience with offensive tool sets including: Kali Linux, Metasploit, CobaltStrike, Intercepting Proxies, etc. * Experience in using network protocol analyzers and sniffers, as well as ability to decipher packet captures * Excellent independent (self-motivational, organizational, personal project management) skills * Proven ability to work effectively with management, staff, vendors, and external consultants * Ability to think outside the box and emulate adversarial approaches * Capable of conducting penetration tests on applications, systems and network utilizing proven/formal processes and industry standards. * Capable of managing multiple penetration test engagements, from cradle to grave, at the same time * In depth understanding of emerging threats, vulnerabilities, and exploits Business Development Assist with Business Development activities as required to support Millennium's strategic business objectives, which may include but not limited to participation in technical interviews, creation of technical documentation, general proposal writing support and proposal color reviews. Physical Requirements * Must be comfortable with prolonged periods of sitting at a desk and working on a computer. * Must be able to lift up to 10-15 pounds at a time. Travel Requirements 15-30% (or less) travel as required by the program.