1

Application Security Engineer Jobs in Ohio (NOW HIRING)

... and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate security controls that protect student, employee, and ...

... and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate security controls that protect student, employee, and ...

You have 5-8+ years of experience in an Application Security or Security Engineering role. You don't just know how to run security scanners; you know how to read code, identify architectural flaws ...

$102.76 - $137.02/hr

Du verfügst über mehrjährige Berufserfahrung im Bereich Product Security, Application Security oder Security Engineering, davon nachweislich Erfahrung in einer übergreifenden, teamunabhängigen ...

Showing results 21-40

Application Security Engineer information

See Ohio salary details

$28

$63

$91

How much do application security engineer jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for application security engineer in Ohio is $63.13, according to ZipRecruiter salary data. Most workers in this role earn between $53.70 and $71.78 per hour, depending on experience, location, and employer.

What does an application security engineer do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by application security engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an application security engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an application security engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Ohio?

The most popular types of Application Security Engineer jobs in Ohio are:

What job categories do people searching Application Security Engineer jobs in Ohio look for?

The top searched job categories for Application Security Engineer jobs in Ohio are:

What cities in Ohio are hiring for Application Security Engineer jobs?

Cities in Ohio with the most Application Security Engineer job openings:

What are popular job titles related to Application Security Engineer jobs in OH?

For Application Security Engineer jobs in OH, the most frequently searched job titles are:

Infographic showing various Application Security Engineer job openings in Ohio as of August 2026, with employment types broken down into 78% Full Time, 2% Part Time, 2% Temporary, and 18% Contract. Highlights an 86% In-person, 6% Hybrid, and 8% Remote job distribution, with an average salary of $131,307 per year, or $63.1 per hour.

Data Protection Engineer

First Student

Cincinnati, OH • On-site

Full-time

Re-posted 11 hours ago


First Student rating

6.4

Company rating: 6.4 out of 10

Based on 317 frontline employees who took The Breakroom Quiz

40th of 77 rated education support services


Job description

The Data Protection & Security Engineer will serve as the primary owner of First Student's data protection capability while also providing hands-on security engineering support across cloud, infrastructure, and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate security controls that protect student, employee, and operational data across cloud and on-premises environments. The role defines what must be protected and how, coordinates with I&O and Data teams to ensure controls are implemented correctly, and builds validation and reporting of outcomes.
This role is a direct replacement for a departing senior team member who owned both data protection and security engineering. Candidates must be comfortable holding both domains simultaneously and ramping quickly into an active program.

The Data Protection & Security Engineer will serve as the primary owner of First Student's data protection capability while also providing hands-on security engineering support across cloud, infrastructure, and application security domains. This is a practitioner role. The position partners with IT, I&O, and Legal teams to design and operate security controls that protect student, employee, and operational data across cloud and on-premises environments. The role defines what must be protected and how, coordinates with I&O and Data teams to ensure controls are implemented correctly, and builds validation and reporting of outcomes.
This role is a direct replacement for a departing senior team member who owned both data protection and security engineering. Candidates must be comfortable holding both domains simultaneously and ramping quickly into an active program.
Responsibilities:
Identify and assess:
Own enterprise data protection risk assessments, classification standards, and control effectiveness evaluations. Identify data exposure risk across cloud, SaaS, and on-premises environments. Contribute to vulnerability assessments and architecture reviews within the Cybersecurity function.
Securely build & protect:
Design and define data protection control requirements and standards for DLP, encryption, key management, and data governance across cloud and on-premises environments. Work with I&O and Data teams to ensure controls are implemented to Cybersecurity specifications; validate implementation outcomes. Provide security engineering expertise across cloud infrastructure and endpoint security domains.
Monitor, hunt, detect:
Monitor for data misuse, exfiltration, and policy violations. Integrate DLP detection capabilities with SOC workflows. Support SIEM log source expansion and alert quality improvements in coordination with the Security Operations function.
Respond, recover, sustain:
Lead Cybersecurity response activities for data exposure incidents, including investigation direction, containment guidance to I&O, remediation oversight, and lessons learned.
Govern, manage, comply, & manage risk:
Develop and maintain data protection policies aligned with FERPA, CCPA, Canadian provincial privacy laws, and enterprise risk objectives. Own the data classification framework and drive operationalization across key data stores and workflows. Contribute to management reporting, risk acceptance documentation, and work tracking.

Lead and coordinate:

Provide technical oversight of cybersecurity analysts. Review work product and deliverables for quality, accuracy, and alignment with standards. Serve as a technical escalation point within the team for data protection and cybersecurity questions.

Desired qualifications:
Education and certifications:
Bachelor's degree in Computer Science, Information Systems, or equivalent experience.
7+ years of cybersecurity experience with at least 4 years in data protection, cloud security, or cybersecurity engineering.
Industry certifications such as SANS/GIAC (for example, GDSA, GDAT, or equivalent), CISSP, CISM preferred.

Knowledge & experience:
Hands-on experience configuring and operating DLP platforms (M365 Purview strongly preferred; CrowdStrike Falcon Data Protection preferred; equivalent experience acceptable).
Experience implementing data classification frameworks in enterprise environments with regulated data (FERPA, COPPA, CCPA, or Canadian privacy law familiarity preferred).
Strong understanding of AWS security services and cloud-native data protection controls (S3 bucket policies, KMS, Macie, CloudTrail).
Security engineering experience: familiarity with SIEM log sources, endpoint security platforms (CrowdStrike Falcon preferred), and vulnerability management tooling (Rapid7 preferred).
Proficiency with Python or PowerShell for automation, reporting, and control validation.
Familiarity with NIST CSF, CIS Controls, and how to translate regulatory requirements into technical controls.
Experience working across organizational boundaries, such as defining requirements for teams that own implementation and validating outcomes without direct execution authority.
Prior experience providing technical oversight or mentorship to others.

Personal attributes:
Operates independently and takes clear ownership of outcomes. Comfortable defining requirements and holding other teams accountable for implementation without direct control over execution.
Comfortable holding multiple technical domains simultaneously (data protection and security engineering) and prioritizing across them without daily direction.

Effective at working across organizational boundaries by communicating requirements clearly, escalating when standards are not met, and building productive working relationships.
Strong communication skills; able to translate technical data risk into terms meaningful to Legal, and management and executive stakeholders.
High integrity and ownership mindset. Proactive approach to risk reduction.

Additional Information

Occasional off-hour or weekend work may be required, including participation in on-call rotation for cybersecurity incidents.

Minimal business travel expected.

Remote or Hybrid (Cincinnati, OH HQ) opportunities available.

Compensation ranges from $130,000 - $155,000 depending on experience.


First for a reason:

At First Student, we are a family of 60,000+ employees who take pride in safely transporting more than 5 million students and passengers to and from their destinations each day! Our family of brands include Transco, Total Transportation, Maggies Paratransit, and GVC II. Our employees are at the forefront of safety and innovation; they create and implement the most advanced training and technology the transportation industry has to offer.


In the state of Washington, all technician and driving positions, including but not limited to van drivers and any other position requiring employees to drive a company-owned vehicle, are considered safety-sensitive and are therefore subject to drug and alcohol testing, including cannabis.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. First is also committed to providing a drug-free workplace. First will consider for employment qualified applicants with criminal histories consistent with the requirements of the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Ordinance, and any other fair chance law. Philadelphia's Fair Criminal Record Screening Standards Ordinance Poster is at this link or upon request https://www.phila.gov/media/20210423160847/Fair-Chance-Hiring-law-poster.pdf.

Company Description

About us
An industry leader famous for our yellow school buses and service and safety excellence, we’ve provided student transportation services to schools for over 100 years. Continually investing in the services of the future, we’re proud to be part of FirstGroup America – the largest provider of safe, reliable and sustainable surface passenger transportation services in North America.

Industry leader
We safely operate more than one third of all contracted school buses in North America.
Together our 50,000 school buses travel nearly 600 million miles per year — the equivalent of 1,200 round trips to the moon.
We operate in around 550 locations throughout 38 U.S. states and 8 Canadian provinces.

Innovation
We were the first school bus company to utilize global positioning systems (GPS), so at any one time we know where all of our buses are and how fast they’re travelling.
Passionate about safety, we’ve installed Safety Crossing Gates on the front of all of our school buses and use the Child Check-MateTM electronic reminder system to make sure no sleeping children remain inside a bus at the end of each route.

Awards & recognition
We won the Occupational Excellence Achievement Award from the National Safety Council two years in a row.
Dedicated to safety, FirstGroup received the National Safety Council’s (NSC) Green Cross for Safety Medal - the highest award for safety in North America.

Teamwork and trust
It takes a diverse team of skilled professionals to provide a safe, effective and efficient student transportation system. From our school bus drivers and location managers to routers, dispatchers and fleet technician mechanics, the work we do every day makes a big impact on the daily lives of students, parents, local communities and school district partners.

We’re very proud of our elite team of over 55,000 dedicated, caring and diverse professionals. And they are the #1 reason we’re trusted by over 1,400 school districts - more than any other provider. Everybody here plays their part in creating a positive school bus experience.

Our culture
We live and breathe our vision and values. They are embedded in our culture and drive our commitment to our customers and communities. Our culture fosters growth and promotes respect, reliability, responsibility and safety. And we recruit people who share these values and will work together to build strong and trusting partnerships in the communities we serve.

Safety – Although our safety record is twice as safe as the industry average, we continually seek out opportunities to enhance our operational and safety initiatives.
Learning – Through our learning culture that spans over 550 locations, we receive and share insight from our people to enhance our service now and in the future.
Making a difference - By doing our job well, we make a positive impact on many lives – including the millions of students who travel with us every school day.
Careers for all – We’re an Equal Opportunity Employer and an Employer of Choice.
By consistently encouraging and supporting an open dialogue with our people and partners, we’re able to share new ideas and develop new ways to meet the needs of our customers and passengers. At First Student, you’ll feel empowered to serve your community. So join the team and start to make a difference.


What First Student employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom