1

Application Security Engineer Jobs in Austin, TX

WHAT YOU\'LL WORK ON We\'re hiring a Senior Application Security Engineer to join a small, high-leverage AppSec team. This is a deep-technical IC role with a staff-leaning scope: you\'ll set the ...

Security Engineer Location: Austin, TX (Onsite) Open Positions: 1 EITACIES is hiring a Security ... Web Application Security and Cryptography - 5-10 years * Network Security - 5-10 years

EITACIES Inc. is hiring a Security Engineer for an onsite opportunity in Austin, TX. This role requires strong hands-on experience across application, network, and enterprise security areas.

The Application Security team ensures all eBay products are secured via optimized security processes and solutions. We need a hands-on senior Mobile Application Security Engineer with engineering ...

The Application Security team ensures all eBay products are secured via optimized security processes and solutions. We need a hands-on senior Mobile Application Security Engineer with engineering ...

Sr. Application Security Testing Engineer Collaborate with Innovative 3Mers Around the World Choosing where to start and grow your career has a major impact on your professional and personal life, so ...

Engineering Manager, Application Security

Austin, TX · On-site

$58.25 - $77.75/hr

Required : • 5+ years as a security or full-stack engineer working on production systems, with 2+ years managing a security or platform engineering team • Hands-on depth in application security ...

They are seeking a highly motivated Senior Mobile Application Security Engineer to join their Application Security team, focusing on securing Mobile Native applications and implementing security ...

Sr. Application Security Testing Engineer Collaborate with Innovative 3Mers Around the World Choosing where to start and grow your career has a major impact on your professional and personal life, so ...

Engineering Manager, Application Security

Austin, TX · On-site

$58.25 - $77.75/hr

... Application Security team. This is a builder's role. You won't just run a team - you'll redesign ... Your mandate is to scale that surface area vertically - growing output and coverage per engineer ...

Engineering Manager, Application Security

Austin, TX · On-site

$58.25 - $77.75/hr

... Application Security team. This is a builder's role. You won't just run a team - you'll redesign ... Your mandate is to scale that surface area vertically - growing output and coverage per engineer ...

next page

Showing results 1-20

Application Security Engineer information

See Austin, TX salary details

$29

$65

$95

How much do application security engineer jobs pay per hour?

As of Aug 1, 2026, the average hourly pay for application security engineer in Austin, TX is $65.80, according to ZipRecruiter salary data. Most workers in this role earn between $55.96 and $74.81 per hour, depending on experience, location, and employer.

What Does an Application Security Engineer Do?

An application security engineer is responsible for ensuring the secure function of software application programs. For this career, you must have advanced training in cybersecurity and familiarity with multiple computer programming languages. Your main job duty is to evaluate lines of programming code to make sure a given application is safe from cyber-attack. You perform penetration testing to see if outside sources can "hack" into the application. You also do threat modeling and security code reviews of programming done by other application programmers.

What are some common challenges faced by Application Security Engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an Application Security Engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What are the key skills and qualifications needed to thrive as an Application Security Engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What are the most commonly searched types of Application Security Engineer jobs in Austin, TX? The most popular types of Application Security Engineer jobs in Austin, TX are:
What are popular job titles related to Application Security Engineer jobs in Austin, TX? For Application Security Engineer jobs in Austin, TX, the most frequently searched job titles are:
What job categories do people searching Application Security Engineer jobs in Austin, TX look for? The top searched job categories for Application Security Engineer jobs in Austin, TX are:
What cities near Austin, TX are hiring for Application Security Engineer jobs? Cities near Austin, TX with the most Application Security Engineer job openings:
Infographic showing various Application Security Engineer job openings in Austin, TX as of July 2026, with employment types broken down into 93% Full Time, and 7% Contract. Highlights an 67% In-person, and 33% Remote job distribution, with an average salary of $136,870 per year, or $65.8 per hour.

Senior Application Security Engineer

The University of Texas at Austin

Austin, TX • On-site

$58.25 - $77.75/hr

Full-time

Posted 9 days ago


University Of Texas at Austin rating

8.2

Company rating: 8.2 out of 10

Based on 63 frontline employees who took The Breakroom Quiz

139th of 614 rated colleges and universities


Job description

Job Posting Title:
Senior Application Security Engineer
----
Hiring Department:
Dell Medical School
----
Position Open To:
All Applicants
----
Weekly Scheduled Hours:
40
----
FLSA Status:
Exempt from FLSA
----
Earliest Start Date:
Immediately
----
Position Duration:
Expected to Continue
----
Location:
AUSTIN, TX
----
Job Details:
General Notes
The Senior Application Security Engineer is responsible for embedding security throughout the software development lifecycle across Dell Medical School's cloud, platform, and enterprise application environments, including Microsoft Azure, Adobe Experience Cloud, and other cloud platforms. This role partners with development, infrastructure, cybersecurity, clinical, research, and operational teams to strengthen application security, support secure software delivery, and reduce organizational risk while enabling innovation across academic, research, and healthcare environments.
Important Employment Information
This position is not eligible for employer-sponsored work authorization. Applicants requiring current or future visa sponsorship are not eligible for employment in this position.
Purpose
The Senior Application Security Engineer is responsible for integrating security throughout the software development lifecycle across cloud, platform, and enterprise application environments. This role leads secure code review, application security testing, vulnerability management, cloud security assessments, and secure development initiatives while partnering with development teams to ensure compliance with HIPAA, HITRUST, NIST CSF 2.0, TAC 202, and UTS 165 requirements. The position supports applications developed for academic, research, and clinical environments, including biomedical systems operating within healthcare settings.
Responsibilities
Secure Development and Code Review
  • Develop, implement, and maintain Secure Software Development Lifecycle (SSDLC) standards supporting Azure-hosted applications, Adobe Experience Cloud, and other internally managed platforms
  • Support secure software development for academic, research, and clinical applications, with an emphasis on higher-risk clinical systems
  • Perform manual and automated secure code reviews for internally developed applications, identifying vulnerabilities aligned with the OWASP Top 10 and CWE Top 25
  • Integrate Static Application Security Testing (SAST) and Software Composition Analysis (SCA) into CI/CD pipelines
  • Partner with software developers to remediate vulnerabilities and promote secure coding practices through guidance and education

Security Testing and Vulnerability Management
  • Configure and operate Burp Suite Professional/Enterprise for Dynamic Application Security Testing (DAST) and authorized penetration testing
  • Utilize OWASP ZAP for automated and on-demand application security scanning
  • Perform controlled validation testing using Metasploit during authorized penetration testing engagements
  • Triage, prioritize, and track remediation efforts through a risk-based vulnerability management process
  • Coordinate security testing schedules with application owners to minimize operational disruption
  • Support QA and automated testing initiatives validating application security controls throughout deployment pipelines

Cloud and Platform Security
  • Assess Microsoft Azure and other cloud environments for security posture, including identity and access management, network segmentation, and resource-level security controls
  • Review Adobe Experience Cloud and SaaS/PaaS integrations to ensure secure configuration and appropriate data protection
  • Support secure API design, authentication, authorization, and data validation practices
  • Recommend improvements that strengthen cloud and enterprise application security architecture

AI, Robotics, and Biomedical Systems Security
  • Assess the security of AI/ML models, data pipelines, and AI-enabled applications
  • Review secure integration of generative AI tools, chatbots, and AI-driven APIs supporting institutional applications
  • Evaluate security controls for robotics programming, automation platforms, and robotic process automation (RPA) solutions
  • Support security assessments of biomedical systems and connected medical devices operating within clinical environments
  • Collaborate with research, innovation, and clinical teams to embed secure development practices throughout AI and robotics initiatives

Governance, Risk, and Compliance
  • Align application security practices with HIPAA, HITRUST CSF, NIST CSF 2.0, TAC 202, and UTS 165 requirements
  • Support third-party risk assessments (TPRM) and application security reviews
  • Participate in audit activities, including HITRUST readiness assessments
  • Develop and maintain application security policies, standards, and procedures

Cross-Functional Collaboration
  • Partner with Cybersecurity Analysts on threat modeling, incident response, and architecture reviews for new applications and integrations
  • Collaborate with the campus Information Security Office (ISO) to support application security standards, risk assessments, vulnerability management, and coordinated incident response
  • Work closely with Infrastructure, Development, and Platform Engineering teams to integrate security throughout project lifecycles
  • Communicate technical findings, security risks, and recommendations to technical and executive stakeholders

Marginal or Periodic Functions
  • Adhere to internal controls and reporting structure
  • Perform related duties as assigned

Knowledge, Skills, and Abilities
Tech Savvy
  • Maintain current knowledge of secure software development, cloud security, application security testing, and emerging cybersecurity technologies
  • Evaluate new tools and technologies that strengthen enterprise application security
  • Apply modern security practices across cloud, application, and software development environments

Decision Quality
  • Make sound security decisions balancing organizational risk, operational needs, and regulatory requirements
  • Evaluate vulnerabilities and recommend practical remediation strategies
  • Prioritize security initiatives using risk-based methodologies

Manages Complexity
  • Navigate complex cloud, application, and healthcare technology environments
  • Balance multiple priorities across development, security, and operational initiatives
  • Integrate security controls into rapidly evolving technology ecosystems

Collaborates
  • Build productive working relationships with development, infrastructure, cybersecurity, clinical, research, and operational teams
  • Promote security awareness and secure development practices throughout the organization
  • Facilitate collaboration across multidisciplinary technical teams

Action Oriented
  • Take ownership of application security initiatives and vulnerability remediation efforts
  • Drive continuous improvement of secure development practices
  • Respond proactively to emerging application security risks

Ensures Accountability
  • Maintain accountability for application security standards and vulnerability management activities
  • Promote compliance with organizational security policies and regulatory requirements
  • Support secure software delivery through consistent governance and oversight

Communicates Effectively
  • Communicate technical concepts clearly to both technical and non-technical audiences
  • Present security findings, recommendations, and risk assessments effectively
  • Develop documentation supporting secure development and application security best practices

Required Qualifications
  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, Software Engineering, or a related field; or an equivalent combination of education and professional experience
  • Minimum of eight (8) years of experience in application security, secure code review, penetration testing, or secure software development
  • Hands-on experience using Burp Suite, OWASP ZAP, and Metasploit for application security testing and vulnerability validation
  • Experience with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) tools such as Checkmarx, Veracode, SonarQube, or similar platforms
  • Experience securing Microsoft Azure and other cloud environments
  • Experience implementing secure coding practices across common programming languages and web application frameworks
  • Knowledge of Secure Software Development Lifecycle (SSDLC) methodologies
  • Strong analytical, troubleshooting, and problem-solving skills
  • Excellent verbal and written communication skills
  • Ability to collaborate effectively with software developers, infrastructure teams, cybersecurity professionals, and business stakeholders

Relevant education and experience may be substituted as appropriate.
Preferred Qualifications
  • Experience supporting healthcare or higher education environments
  • Knowledge of HIPAA, HITRUST, NIST CSF 2.0, TAC 202, and UTS 165 security frameworks
  • Experience securing Microsoft Azure, Adobe Experience Cloud, SaaS/PaaS platforms, and cloud-native applications
  • Familiarity with AI/ML security concepts, including model security, data governance, prompt injection risks, and adversarial attacks
  • Experience supporting robotics, robotic process automation (RPA), biomedical systems, or connected medical devices
  • Experience integrating application security testing into QA processes, automated testing frameworks, and CI/CD pipelines
  • Experience performing application threat modeling, secure architecture reviews, and third-party risk assessments (TPRM)

Licenses/Registrations/Certifications
Required
  • None

Preferred
  • Offensive Security Certified Professional (OSCP)
  • GIAC Web Application Penetration Tester (GWAPT)
  • Certified Secure Software Lifecycle Professional (CSSLP)
  • Certified Ethical Hacker (CEH)
  • Microsoft Azure Security Engineer Associate (AZ-500)

Salary Range
$120,000+ depending on qualifications
Working Conditions
  • Standard office environment and equipment
  • Repetitive use of a keyboard and computer
  • Hybrid work environment with on-site collaboration as business needs require
  • May participate in after-hours security testing, incident response, vulnerability remediation, or critical production support activities
  • May be exposed to communicable diseases, blood borne pathogens, ionizing and non-ionizing radiation, hazardous medications, and disoriented or combative patients while supporting healthcare environments

Required Materials
  • Resume/CV
  • 3 work references with their contact information; at least one reference should be from a supervisor
  • Letter of interest

Important for applicants who are NOT current university employees or contingent workers: You will be prompted to submit your resume the first time you apply, then you will be provided an option to upload a new resume for subsequent applications. Any additional Required Materials (letter of interest, references, etc.) will be uploaded in the Application Questions section, where you may upload multiple files. Before submitting your online job application, ensure that all Required Materials have been uploaded. Once your job application has been submitted, you cannot make changes.
Important for Current University employees and contingent workers: As a current university employee or contingent worker, you must apply within Workday by searching Find UT Jobs. Log in to Workday, navigate to your Worker Profile, click the Career link in the left-hand navigation menu, and update your Professional Profile before applying. This information will be pulled into your application. The application is one page, and you will be prompted to upload your resume. In addition, you must respond to the application questions to upload any additional Required Materials noted above.
Employment Eligibility:
Regular staff who have been employed in their current position for the last six continuous months are eligible for openings being recruited for through University-Wide or Open Recruiting, to include both promotional opportunities and lateral transfers. Staff who are promotion/transfer eligible may apply for positions without supervisor approval.
Retirement Plan Eligibility:
The retirement plan for this position is Teacher Retirement System of Texas (TRS), subject to the position being at least 20 hours per week and at least 135 days in length.
Background Checks:
A criminal history background check will be required for finalist(s) under consideration for this position.
Equal Opportunity Employer:
The University of Texas at Austin, as an equal opportunity/affirmative action employer, complies with all applicable federal and state laws regarding nondiscrimination and affirmative action. The University is committed to a policy of equal opportunity for all persons and does not discriminate on the basis of race, color, national origin, age, marita

What University Of Texas at Austin employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom