1

Java Spring Security Jobs (NOW HIRING)

Application Security Engineer

Scottsdale, AZ · Hybrid

$59.25 - $79/hr

Hands-on remediate security vulnerabilities directly in Java, Spring Boot, AngularJS, and Angular codebases, while also guiding developers on secure coding practices and mitigation techniques ...

Application Security Engineer

Scottsdale, AZ · Hybrid

$59.25 - $79/hr

Hands-on remediate security vulnerabilities directly in Java, Spring Boot, AngularJS, and Angular codebases, while also guiding developers on secure coding practices and mitigation techniques ...

Java Developer

Charlotte, NC · On-site

$49.75 - $64.50/hr

Java / J2EE, Web technologies, Oracle DB exposure, Unix working knowledge Java EE and familiarity with Websphere AS Experience in Java Web Service, Spring Core Spring Security Apache Camel Java ...

Full Stack Java Developer

Anchorage, AK · On-site

$78K - $997K/yr

TECHNICAL EXPERTISE Backend Technologies: • Java 8/11/17, Spring Boot, Spring MVC • Spring Security, Spring Data JPA, Hibernate • RESTful APIs, GraphQL, Microservices Architecture • Maven ...

Demonstrated expert-level proficiency in Core Java and the Spring Framework, including Spring Boot, Spring MVC, and Spring Security. * Established experience with GraphQL and Amazon Web Services (AWS)

Java Developer

Lake Saint Louis, MO · On-site

$48.25 - $62.50/hr

Spring Boot, Spring Cloud, Spring Security • Experience in publish-subscribe messaging framework, e.g. Kafka, RabbitMQ - Good to Have. • Java 8+ • Container technologies like Docker, Rancher ...

Java Developer

Dallas, TX

$50.75 - $65.50/hr

Core Java Development: * MsoNormal">OOPS concepts (Encapsulation, Inheritance, Polymorphism ... MsoNormal">API security basics (Spring Security awareness) Microservices Development: * MsoNormal ...

Java Developer

Jersey City, NJ · On-site

$53.25 - $69/hr

Role: Java Developer Location: Dallas, TX / Tampa, FL / Jersey City, NJ- Hybrid Duration: 6-12 ... Proficiency with Spring Framework (Spring Boot, Spring MVC, Spring Data, Spring Security). * Solid ...

Java Developer

Alpharetta, GA · On-site

$49.75 - $64.50/hr

OrderGraph Summary: • 8-10 Years of Software Development experience. • 8 years Java, XML, JSON, Multithreading, Strong programming fundamentals • 5 years Sprint Boot, Spring Security ...

Java Architect

Philadelphia, PA · On-site

$63.50 - $85.75/hr

... security + reliability. - Lead by coding (daily): Deliver features and fixes in Java/Spring, Python services, and .NET with strong unit/integration test coverage. - Build & evolve Python ...

Java Developer

Dallas, TX · On-site

$50.50 - $65.25/hr

Job Title Java Developer Location Dallas, Texas Start date ASAP till Sep 2025 Description : * Act ... Spring Boot (Required), Spring Security, Spring Integration, Spring JMS, Spring Cloud, AOP, WS ...

next page

Showing results 1-20

Java Spring Security information

See salary details

$15

$56

$77

How much do java spring security jobs pay per hour?

As of Jun 6, 2026, the average hourly pay for java spring security in the United States is $56.70, according to ZipRecruiter salary data. Most workers in this role earn between $49.04 and $63.46 per hour, depending on experience, location, and employer.

What is Java Spring Security?

Java Spring Security is a powerful and customizable authentication and access control framework for Java applications, particularly those using the Spring framework. It provides comprehensive security features such as user authentication, authorization, protection against common exploits like CSRF and session fixation, and integration with various authentication providers (e.g., LDAP, OAuth2, JWT). Spring Security is widely used to secure REST APIs, web applications, and microservices by defining security policies and managing user access. Its modular design allows developers to tailor security mechanisms to their application's specific needs.

What is the difference between Java Spring Security vs Java Developer?

AspectJava Spring SecurityJava Developer
Primary FocusApplication security, authentication, authorizationApplication development, coding, system design
Required SkillsSecurity protocols, Spring framework, JavaJava programming, frameworks, problem-solving
Work EnvironmentBackend development, security implementationFull-stack or backend development
CertificationsSpring Security certifications, Java certificationsJava certifications, developer courses

Java Spring Security specializes in securing Java applications using the Spring framework, focusing on authentication and authorization. In contrast, Java Developers build and maintain Java applications across various domains. While Java Spring Security requires knowledge of security protocols and Spring, Java Developers need broader programming skills. Both roles are essential in Java-based industries, but they serve different purposes within the development lifecycle.

What are the key skills and qualifications needed to thrive as a Java Spring Security Developer, and why are they important?

To thrive as a Java Spring Security Developer, you need strong proficiency in Java programming, a solid understanding of Spring Framework (especially Spring Security), and typically a degree in computer science or related field. Familiarity with authentication protocols (like OAuth2, JWT), secure REST API development, and tools such as Maven, Git, and IDEs like IntelliJ IDEA is important, along with relevant certifications (e.g., Oracle Certified Professional). Analytical thinking, attention to detail, and effective communication are valuable soft skills for collaborating with teams and ensuring robust security implementations. These skills are crucial for developing secure, scalable applications that protect sensitive data and meet organizational security standards.

What are some common challenges faced by Java Spring Security developers when integrating authentication and authorization into enterprise applications?

Java Spring Security developers often encounter challenges such as aligning security requirements with business workflows, configuring complex authentication mechanisms (like OAuth2 or JWT), and ensuring seamless integration with legacy systems. Maintaining clear documentation and staying updated with security patches is crucial to prevent vulnerabilities. Collaboration with DevOps and QA teams is also essential to ensure that security measures are thoroughly tested and do not disrupt user experience or application performance.
Infographic showing various Java Spring Security job openings in the United States as of May 2026, with employment types broken down into 2% As Needed, 76% Full Time, 3% Part Time, and 19% Contract. Highlights an 94% Physical, 2% Hybrid, and 4% Remote job distribution, with an average salary of $117,931 per year, or $56.7 per hour.

Application Security Engineer

XceedSearch.com

Scottsdale, AZ • Hybrid

$59.25 - $79/hr

Full-time

Posted 23 days ago


Job description

Company Description

Insurance Company

Job Description

Company is seeking a Lead Application Security Engineer to play a critical dual role at the intersection of secure software development and hands‑on engineering leadership. This position is ideal for a technologist who is passionate about building modern applications and ensuring they are secure by design.

In this role, you will embed application security expertise directly into the engineering organization. Approximately half of your focus will be on application security, identifying vulnerabilities, guiding remediation efforts, and providing meaningful security metrics and reporting. The other half will be spent leading and contributing to the design, development, and delivery of applications built with Java and Angular.

The ideal candidate naturally bridges security and engineering, influencing architecture decisions, mentoring development teams, and championing best practices that balance strong security with scalability, performance, and delivery speed.

This position is based in our Scottsdale, AZ office. After completing an initial training period, the role offers a hybrid schedule with four days in the office and one remote day per week.

Responsibilities

Application Security

  • Conduct application security assessments and vulnerability scans using Veracode (SAST, DAST, and SCA) across Java, Spring Boot REST services, AngularJS, and Angular applications.
  • Analyze, prioritize, and track security findings through their full remediation lifecycle, ensuring timely resolution and appropriate escalation.
  • Hands-on remediate security vulnerabilities directly in Java, Spring Boot, AngularJS, and Angular codebases, while also guiding developers on secure coding practices and mitigation techniques specific to the Java and JavaScript ecosystem.
  • Review, assess, and implement REST API security controls hands-on, including coding authentication, authorization, input validation, and data protection solutions directly within Spring Boot services.
  • Produce clear, well-structured vulnerability reports and executive summaries for both technical teams and leadership.
  • Establish and maintain application security policies, standards, and guidelines aligned with OWASP and industry best practices.
  • Participate in Architecture Review Board discussions to identify and address security risks in proposed designs.
  • Evaluate AI-generated code from tools such as GitHub Copilot for security risks and guide developers on safe AI-assisted development practices.
  • Leverage AI-assisted security tooling to accelerate vulnerability detection, triage, and remediation workflows.
  • Support compliance and audit activities related to application security controls.

Lead Software Engineering

  • Take full ownership of team deliverables, ensuring quality, stability, and resilience of applications.
  • Establish and enforce coding standards and development practices for high-quality, secure software delivery.
  • Serve as the technical lead for major system components, guiding architecture and technical decisions while remaining an active, hands-on contributor to the codebase.
  • Actively design, write, review, and maintain code for scalable user interfaces and services, contributing directly to efficient, responsive applications built on Java, Spring Boot, Angular, and microservices architectures.
  • Understand data flows and system integrations to support solution design, and write code directly to facilitate defect resolution and system improvements.
  • Identify and resolve performance issues, defects, and system inefficiencies through direct, hands-on code contributions or delegating fixes to others as needed.
  • Act as the primary technical liaison with stakeholders, translating requirements into scalable solutions and managing expectations.
  • Foster a culture of accountability, security awareness, and continuous improvement through coaching and mentoring.

Qualifications

  • Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.
  • 5+ years of hands-on application security engineering experience, including vulnerability assessment and remediation.
  • 7+ years of software development experience with Java and Angular/AngularJS.
  • 3+ years of experience in a technical leadership or lead engineering capacity.
  • Proficient in: Java, Spring Boot, Spring Security, REST Web Services, Microservices, JavaScript, TypeScript, AngularJS, Angular, HTML, CSS, JUnit, Mockito, Git, Maven, and SQL.
  • Hands-on experience with enterprise application security scanning platforms such as Veracode, Checkmarx, Fortify, or similar tools, including SAST, DAST, and SCA scan configuration, results interpretation, and developer-facing remediation guidance.
  • Strong understanding of the OWASP Top 10 and how vulnerabilities manifest in enterprise Java and JavaScript applications.
  • Experience securing REST APIs, including OAuth2, JWT, and Spring Security implementations.
  • Demonstrated ability to produce clear vulnerability reports with severity ratings, impact assessments, and recommended mitigations for both technical and non-technical audiences.
  • Experience in project estimation, requirements gathering, system design, agile story creation, release support, and agile methodologies.
  • Preferred knowledge in: GitHub Copilot, AI-assisted security tooling, AWS, GCP, Drupal, Jasmine, Karma, IntelliJ, Eclipse, STS, WebStorm, Rancher, Jira, PL/SQL, Checkmarx, Fortify, or Burp Suite.
  • Security certifications such as CSSLP, CEH, GWAPT, or equivalent application security credentials are a plus.
  • Strong written and verbal communication skills with the ability to engage both development teams and IT leadership effectively.
  • Excellent analytical and problem-solving abilities with strong attention to detail.
  • Team-oriented, adaptable, and motivated to support both engineering excellence and organizational security goals.
Additional Information

All your information will be kept confidential according to EEO guidelines.

Thank You
Arnold Avila
Xceed Search
(480) 419-1311
http://www.xceedsearch.com