1

Application Security Manager Jobs in California (NOW HIRING)

As an Application Security Engineer at Esri, you will fill a critical role in helping secure Esri ... risk management framework * Proven ability to develop automations/applications using Python ...

Lead Application Security Engineer

San Francisco, CA · On-site

$69.25 - $92.50/hr

They are seeking a Lead Application Security Engineer to own the security of the Ivo platform ... Scope work, manage vendors, triage findings, and drive remediation to closure with engineering. • ...

Integrate and manage security tooling within CI/CD pipelines, including SAST, DAST, SCA, IaC ... Ensure application security practices align with regulatory and compliance frameworks (e.g., NIST ...

Project and talent management. * Experience with project management. * Experience and desire to work in a management consulting environment that requires regular travel. Qualifications Basic ...

Project and talent management * Experience with project management * Experience and desire to work in a management consulting environment that requires regular travel Qualifications Basic ...

Own application security across Ivo's web app, API surface, and the systems behind them. * Find and ... Manage our pen test program and ad-hoc engagements end to end. Scope work, manage vendors, triage ...

Heartflow is a medical technology company advancing the diagnosis and management of coronary artery ... We are looking for an Application Security Engineer to work with our engineering team to ensure ...

Showing results 21-40

Application Security Manager information

See California salary details

$39K

$119.9K

$199.4K

How much do application security manager jobs pay per year?

As of Aug 12, 2026, the average yearly pay for application security manager in California is $119,875.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,200.00 and $140,100.00 per year, depending on experience, location, and employer.

What does an Application Security Manager do?

An Application Security Manager is responsible for overseeing the security of software applications within an organization. They identify and address potential security vulnerabilities, implement best practices for secure development, and ensure compliance with security standards. Their role often includes working with development teams, conducting security assessments, and responding to security incidents to protect sensitive data. Application Security Managers help maintain the confidentiality, integrity, and availability of applications throughout their lifecycle.

What are the key skills and qualifications needed to thrive as an Application Security Manager, and why are they important?

To thrive as an Application Security Manager, you need expertise in application security principles, risk assessment, secure coding practices, and a relevant degree or certifications like CISSP or CSSLP. Familiarity with security testing tools (such as SAST, DAST, and vulnerability scanners), secure development frameworks, and compliance standards is essential. Strong leadership, communication, and problem-solving skills help you collaborate with development teams and guide security initiatives. These skills are crucial to effectively safeguard applications, ensure regulatory compliance, and reduce security risks within organizations.

What are some common challenges faced by Application Security Managers when integrating security into the software development lifecycle?

Application Security Managers often encounter challenges in embedding security practices early and consistently within fast-paced development environments. Balancing the need for robust security with the demands for rapid delivery can result in pushback from development teams or tight deadlines. They must also navigate evolving threat landscapes and ensure that both technical and non-technical stakeholders are aligned on security priorities. Building strong cross-team relationships and fostering a culture of security awareness are key to overcoming these obstacles.
What cities in California are hiring for Application Security Manager jobs? Cities in California with the most Application Security Manager job openings:
Infographic showing various Application Security Manager job openings in California as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 13% Part Time, 2% Temporary, and 1% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $119,875 per year, or $57.6 per hour.

Sr. Application Security Engineer

Esri

Redlands, CA • On-site

$93K - $157K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 29 days ago


Esri rating

9.6

Company rating: 9.6 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

7th of 243 rated software companies


Job description

Overview
As someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative and technology-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping secure Esri's intellectual property and sensitive data against a variety of complex threats with support from all levels of leadership. Our Application Security team collaborates closely with the application development, DevSecOps, and information security departments to design security into our applications up front, perform application layer security testing, and assist developers with vulnerability remediation. We value collaboration, pragmatic security, and continuous improvement. We welcome you to join Esri, where you can make a real difference every day!
Responsibilities
  • Design, operate, and continuously improve application security testing capabilities and pipelines
  • Assess application risks and recommend mitigations
  • Perform application layer security reviews of the code developed by our application teams, across multiple languages and frameworks used internally
  • Assist with application layer penetration testing to identify potential issues
  • Provide application security guidance and mentorship to development teams as needed

Requirements
  • 5+ years of experience in application security, including manual and automated code reviews, manual penetration testing, dynamic application security testing, and false positive analysis of code, pen test, and open-source security findings
  • Demonstrated experience determining risk based on analysis/findings using a consistent risk management framework
  • Proven ability to develop automations/applications using Python, Typescript, Java, or PowerShell
  • Experience creating and maintaining reusable GitHub Actions workflows, with expertise in all aspects of GitHub workflow management
  • Hands-on experience working in a DevSecOps environment built on Kubernetes with a strong knowledge of Kubernetes security best practices
  • Ability to read and analyze code for security and design vulnerabilities
  • Solid understanding of common web application security standards (HTTP, OAuth, OIDC, REST, and more)
  • Experience working with cloud platforms, specifically AWS and Azure
  • Willingness to learn new skills and enhance workflows using various AI tools
  • US citizenship and willingness and ability to maintain a US Security Clearance
  • Bachelor's degree in computer science or related field

Recommended Qualifications
  • Proficiency in any of the following languages: C#, Python, Bash/Shell, PowerShell, JavaScript, SQL, Java
  • Familiarity with AI-assisted coding practices, including tools such as GitHub Copilot, and an understanding of the security implications and risks introduced by AI-generated code
  • Practical experience interpreting findings from application pen testing, code scanning and open-source scanners to determine the risk and collaborate with developers to resolve them
  • Understanding of layer 2-7 communication protocols, common encoding and encryption schemes, and algorithms

#LI-TM1
#LI-onsite
Total Rewards
Esri's competitive total rewards strategy includes industry-leading health and welfare benefits: medical, dental, vision, basic and supplemental life insurance for employees (and their families), 401(k) and profit-sharing programs, minimum accrual of 80 hours of vacation leave, twelve paid holidays throughout the calendar year, and opportunities for personal and professional growth. Base salary is one component of our total rewards strategy. Compensation decisions and the base range for this role take into account many factors including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs.
A reasonable estimate of the base salary range is
$93,600-$157,560 USD
The Company
At Esri, diversity is more than just a word on a map. When employees of different experiences, perspectives, backgrounds, and cultures come together, we are more innovative and ultimately a better place to work. We believe in having a diverse workforce that is unified under our mission of creating positive global change. We understand that diversity, equity, and inclusion is not a destination but an ongoing process. We are committed to the continuation of learning, growing, and changing our workplace so every employee can contribute to their life's best work. Our commitment to these principles extends to the global communities we serve by creating positive change with GIS technology. For more information on Esri's Racial Equity and Social Justice initiatives, please visit our website here.
If you don't meet all of the preferred qualifications for this position, we encourage you to still apply!
Esri is an equal opportunity employer (EOE) and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. If you need reasonable accommodation for any part of the employment process, please email askcareers@esri.com and let us know the nature of your request and your contact information. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this e-mail address.
Esri Privacy Esri takes our responsibility to protect your privacy seriously. We are committed to respecting your privacy by providing transparency in how we acquire and use your information, giving you control of your information and preferences, and holding ourselves to the highest national and international standards, including CCPA and GDPR compliance.

What Esri employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


ESRI logo

About ESRI

Sourced by ZipRecruiter

Our passion for improving quality of life through geography is at the heart of everything we do. Esri's geographic information system (GIS) technology inspires and enables governments, universities, and businesses worldwide to save money, lives, and our environment through a deeper understanding of the changing world around them.

Industry

Scientific research and development services

Company size

1,001 - 5,000 Employees

Headquarters location

Redlands, CA, US

Year founded

1969