1

Application Security Jobs in Iowa (NOW HIRING)

SAP Platform Security professionals develop and deliver solutions - including design and implementation of SAP Application role-based security, SAP GRC solutions, and SAP vulnerability management ...

Security Architect

Muscatine, IA · On-site

$61 - $78.75/hr

The role also contributes to cloud security, Zero Trust initiatives, AI governance, application security, and modernization efforts supporting legacy technologies. IDEAL CANDIDATE PROFILE The ideal ...

Understanding of secure coding practices and application security principles * Familiarity with AI-assisted development tools (e.g., Copilot, code generation tools) * Experience using Git and modern ...

Understanding of secure coding practices and application security principles * Familiarity with AI-assisted development tools (e.g., Copilot, code generation tools) * Experience using Git and modern ...

Understanding of secure coding practices and application security principles * Familiarity with AI-assisted development tools (e.g., Copilot, code generation tools) * Experience using Git and modern ...

next page

Showing results 1-20

Application Security information

See Iowa salary details

$35

$50

$89

How much do application security jobs pay per hour?

As of Aug 12, 2026, the average hourly pay for application security in Iowa is $50.43, according to ZipRecruiter salary data. Most workers in this role earn between $40.19 and $52.40 per hour, depending on experience, location, and employer.

What is the difference between Application Security vs Security Analyst?

AspectApplication SecuritySecurity Analyst
Primary FocusSecuring software applications and codeMonitoring and analyzing overall security threats
CertificationsCSSLP, CEH, CISSPCISSP, Security+, CEH
Work EnvironmentDevelopment teams, software projectsSecurity operations centers, incident response
Industry UsageTech, finance, healthcareAll industries, including government and corporate

Application Security specialists focus on protecting software applications through secure coding practices, vulnerability assessments, and security testing. Security Analysts monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity field, Application Security is more development-oriented, whereas Security Analysts focus on threat detection and response.

What are some common challenges faced by professionals working in application security roles?

Application Security professionals often encounter challenges such as keeping up with evolving threats and vulnerabilities, integrating security practices into fast-paced development cycles, and balancing security requirements with user experience and business needs. They also need to foster collaboration between development, operations, and security teams to ensure secure software delivery. Staying current with industry standards and communicating technical risks effectively to non-technical stakeholders are key aspects of the role.

How to become an application security?

To become an application security professional, you should gain a strong understanding of software development, cybersecurity principles, and common vulnerabilities. Earning certifications such as Certified Secure Software Lifecycle Professional (CSSLP) or Offensive Security Certified Professional (OSCP) can enhance your credentials. Practical experience with security tools, secure coding practices, and familiarity with application testing are also important for this role.

What is application security?

Application security refers to the measures and practices taken to protect software applications from security threats and vulnerabilities throughout their lifecycle. This includes identifying, fixing, and preventing security flaws in code, configuration, and design, as well as protecting sensitive data handled by applications. Application security professionals use tools such as code analysis, penetration testing, and security best practices to help ensure applications are safe from attacks like SQL injection, cross-site scripting, and data breaches. The goal is to reduce risks and maintain the integrity, confidentiality, and availability of applications.

What are the key skills and qualifications needed to thrive as an application security professional?

To thrive as an Application Security professional, you need a deep understanding of secure software development, threat modeling, vulnerability assessment, and a background in computer science or cybersecurity. Familiarity with tools such as static and dynamic analysis scanners, penetration testing frameworks, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are essential soft skills to collaborate with development teams and articulate risks. These competencies are crucial for proactively identifying and mitigating security vulnerabilities, ensuring robust protection of applications and sensitive data.

What are examples of application security?

Application security involves implementing measures to protect software applications from vulnerabilities and attacks, such as input validation, authentication, authorization, encryption, and secure coding practices. Security professionals often use tools like static and dynamic analysis, penetration testing, and code reviews to identify and fix security issues throughout the development lifecycle.
What cities in Iowa are hiring for Application Security jobs? Cities in Iowa with the most Application Security job openings:
Infographic showing various Application Security job openings in Iowa as of August 2026, with employment types broken down into 77% Full Time, 19% Part Time, and 4% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $104,891 per year, or $50.4 per hour.

Application Security Engineer (REMOTE)

EnerSys

Ackworth, IA • Remote

$117K - $146K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 11 days ago


EnerSys rating

7.7

Company rating: 7.7 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

200th of 538 rated manufacturers


Job description

EnerSys is a global leader in stored energy solutions for industrial applications. We have over thirty manufacturing and assembly plants worldwide servicing over 10,000 customers in more than 100 countries. Worldwide headquarters are located in Reading, PA, USA with regional headquarters in Europe and Asia. We complement our extensive line of Motive Power and Energy Systems with a full range of integrated services and systems. With sales and service locations throughout the world, and over 100 years of battery experience, EnerSys is the power/full solution for stored DC power products. 

What We're Offering

  • Paid time off plus paid holidays
  • Medical/dental/vision insurance plan
  • Life insurance, short/long term disability, tuition reimbursement, flex spending, and employee stock purchase plan
  • 401K plan
  • Culture: We value and strive for excellence in all that we do through innovative technology by creating long lasting relationships with our stakeholders, co-workers, and customers. We continually strive to foster teamwork, engagement and enhance our employee's skills and competence by providing appropriate training.

Compensation Range: $117,200 - $146,600 

Compensation may vary based on applicant's work experience, education level, skill set, and/or location.  

Job Purpose

The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers, DevOps teams, and security professionals to embed security into the full software development lifecycle. Collaborate within an expanding Cybersecurity team, and work closely with internal EnerSys teams to ensure new and continued compliance with cybersecurity frameworks and required programs and initiatives.

Essential Duties and Responsibilities

   Serve as a primary liaison between the Cybersecurity and development teams, ensuring security is integrated into design, development, deployment, and operations.
   Conduct application security assessments, code reviews, API testing, threat modeling, and penetration testing to identify vulnerabilities.
   Define, maintain, and enforce secure coding standards, patterns, and best practices.
   Integrate and manage security tooling within CI/CD pipelines, including SAST, DAST, SCA, IaC scanning, and container security solutions.
   Support secure architecture reviews for cloudnative applications, microservices, and containerized workloads.
   Support threat modeling, risk assessments, and security architecture reviews for applications.
   Ensure that all security practices meet regulatory and compliance requirements.
   Develop and deliver cybersecurity training programs for development teams to promote awareness and adherence to best practices.
   Ensure application security practices align with regulatory and compliance frameworks (e.g., NIST CSF, ISO 27001, IEC 62443).
   Keep up to date on emerging threats, incorporating threat intelligence into security practices and providing proactive defenses.
   Monitor and respond to application security threats, incidents and vulnerabilities.
   Stay up to date on regulatory developments and industry trends.
   Manage and maintain third-party vendor and consultant relationships .
   Perform other duties as assigned.

SUPERVISORY RESPONSIBILITIES: N/A

Qualifications

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. 

Must have an active passport and be willing to travel internationally.

Required Qualifications

  • Bachelor's degree in a technical field (e.g., Computer Science, Information Systems, Cybersecurity).
  • 5+ years of experience in Information Security, with at least 3 years focused on application security, secure development, or DevSecOps.
  • Demonstrated experience building and scaling an application security program, either as the lead or a key contributor.
  • Strong knowledge of OWASP Top 10, OWASP ASVS, SANS Top 25, and secure SDLC methodologies.
  • Hands-on experience with application security testing tools such as Burp Suite, Fortify, Checkmarx, Veracode, and ZAP.
  • Experience conducting threat modeling, penetration testing, secure software development, and secure architecture reviews.
  • Practical experience securing cloud environments (AWS or Azure) and implementing cloud-native security controls.
  • Familiarity with Kubernetes security, container hardening, and runtime protection.
  • Strong communication skills with the ability to collaborate and influence across technical and non-technical teams.

Preferred Qualifications

  • Relevant certifications such as CISSP, CSSLP, OSCP, GWAPT, CEH, or GIAC Cloud Security.
  • Experience securing embedded systems and mobile applications.

Reasoning Ability
   Problem management / resolution skills; project management skills; generally accepted security principles.
   Ability to analyze data, resources, and schedules to make decisions that affect a project on a regular basis.
TRAVEL REQUIRED: Up to 15%

General Job Requirements
  • This position will work in an office setting, expect minimal physical demands.

EnerSys provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.  

Know Your Rights

Know Your Rights (Spanish)

We use artificial intelligence to screen, assess and select applicants for open positions, including for the purposes of reviewing and ranking application materials and scoring answers to application questions. Accordingly, decisions about your application and eligibility for employment with EnerSys may be made based exclusively on the automated processing of the personal information that you submit in your application materials.


What EnerSys employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom