1

Lead Application Security Engineer Jobs (NOW HIRING)

Lead Application Security Engineer

San Francisco, CA ยท On-site

$69.25 - $92.50/hr

About the Role We're seeking a Lead Application Security Engineer to help advance Zeta Global's application and platform security posture through AI-native security practices, intelligent automation ...

Lead Application Security Engineer

$60.25 - $80.25/hr

About the Role We're seeking a Lead Application Security Engineer to help advance Zeta Global's application and platform security posture through AI-native security practices, intelligent automation ...

Lead Application Security Engineer

$60.25 - $80.25/hr

About the Role We're seeking a Lead Application Security Engineer to help advance Zeta Global's application and platform security posture through AI-native security practices, intelligent automation ...

Lead Application Security Engineer

San Francisco, CA ยท On-site

$69.25 - $92.50/hr

About the Role We're seeking a Lead Application Security Engineer to help advance Zeta Global's application and platform security posture through AI-native security practices, intelligent automation ...

Senior Application Security Engineer

OR ยท On-site +1

$58.75 - $78.50/hr

Through engineering, automation, and close collaboration, we protect Upstart's customer-facing ... Lead application security projects from planning through implementation, coordinating contributors ...

Senior Application Security Engineer

$117K - $160K/yr

Through engineering, automation, and close collaboration, we protect Upstart's customer-facing ... Lead application security projects from planning through implementation, coordinating contributors ...

Engineer

Charlotte, NC ยท On-site

$89 - $95/hr

Senior Lead Application Security Engineer (AppSec SME) - AI & DCMS Security We are not accepting C2C or 1099 arrangements. Location: Charlotte, NC (Hybrid) Employment Type: Contract Vendor ...

next page

Showing results 1-20

Lead Application Security Engineer information

See salary details

$9

$46

$100

How much do lead application security engineer jobs pay per hour?

As of Sep 9, 2026, the average hourly pay for lead application security engineer in the United States is $46.53, according to ZipRecruiter salary data. Most workers in this role earn between $17.31 and $65.38 per hour, depending on experience, location, and employer.

What does a lead application security engineer do?

A Lead Application Security Engineer is responsible for ensuring the security of software applications throughout their development lifecycle. They design, implement, and oversee security measures to protect applications from threats and vulnerabilities. This role typically involves leading security reviews, performing risk assessments, guiding development teams on secure coding practices, and responding to security incidents. They also stay updated on emerging threats and help shape security policies and protocols within the organization.

How does a lead application security engineer typically collaborate with software development teams to ensure secure application design?

As a Lead Application Security Engineer, you will regularly partner with software developers throughout the software development lifecycle. This collaboration includes conducting security reviews of architecture and code, recommending best practices, providing secure coding training, and integrating security tools into development pipelines. Building strong relationships with developers and fostering a security-first mindset are key to ensuring vulnerabilities are addressed early, and secure design principles are consistently applied. Expect to participate in design meetings, threat modeling sessions, and code reviews, acting as both a consultant and a technical leader.

What are the key skills and qualifications needed to thrive as a lead application security engineer, and why are they important?

A Lead Application Security Engineer requires deep expertise in secure software development, vulnerability assessment, and threat modeling, often backed by a computer science degree and relevant certifications such as CISSP or CSSLP. Familiarity with security testing tools (like Burp Suite, OWASP ZAP, and SAST/DAST platforms), as well as experience with CI/CD pipelines and cloud environments, is typically expected. Strong leadership, problem-solving, and communication skills help drive security initiatives and effectively collaborate with development teams. These skills are crucial to proactively identify and mitigate security risks, ensuring robust protection of applications in dynamic development environments.

What is the difference between Lead Application Security Engineer vs Application Security Engineer?

AspectLead Application Security EngineerApplication Security Engineer
CertificationsOSCP, CISSP, CEHOSCP, CISSP, CEH
Work EnvironmentLeads security initiatives, manages teamsExecutes security assessments, implements security measures
Industry UsageUsed in organizations with mature security teamsCommon in growing security teams

The Lead Application Security Engineer typically oversees security projects, manages teams, and sets strategic security goals. In contrast, the Application Security Engineer focuses on hands-on security assessments and implementing security controls. Both roles require similar certifications and are vital in organizations prioritizing application security, but the lead role involves more leadership and strategic responsibilities.

What cities are hiring for Lead Application Security Engineer jobs?

Cities with the most Lead Application Security Engineer job openings:

What states have the most Lead Application Security Engineer jobs?

States with the most job openings for Lead Application Security Engineer jobs include:

What are popular job titles related to Lead Application Security Engineer jobs?

For Lead Application Security Engineer jobs, the most frequently searched job titles are:

Infographic showing various Lead Application Security Engineer job openings in the United States as of September 2026, with employment types broken down into 88% Full Time, 10% Part Time, and 2% Contract. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution, with an average salary of $96,776 per year, or $46.5 per hour.

Lead Application Security Engineer

Irving, TX โ€ข On-site

Kanak Elite Services Inc
Software Developmentย โ€ขย 51 - 200 employees

$56.50 - $75.50/hr

Contractor

Re-posted 22 days ago


Job description

Hello There,

Wish you a Happy Monday,

My name is Yashmita, and I am a Technical Recruiter at Kanak IT Services LLC. I am reaching out to you regarding the following job opportunity. If you are interested, kindly reply to this email  with your updated resume.  

TITLE : LEAD APPLICATION SECURITY ENGINEER/VERACODE/CHECKMARX -

LOCATION : REMOTE OR IRVING, TX OR WILMINGTON, DE, MANASSAS,VA DES MOINES, IOWA -

UPDATE: THE MANAGER HAS INFORMED US HE WILL CONSIDER A REMOTE RESOURCE AS LONG AS THE CANDIDATE CAN TRAVEL TO WILMINGTON, DE OR IRVING TX ONCE OR TWICE A QUARTER. CANDIDATES WILL HAVE TO BE VERY GOOD TO BE CONSIDERED FOR REMOTE.

UPDATE: CANDIDATES CAN NOW SIT IN ANY OF THE BELOW LOCATIONS

IRVING, TX or Wilmington, DE, Manassas, VA OR Des Moines, IOWA

THIS IS A VERY SENIOR, HIGH-PROFILE POSITION AND REQUIRES EXCELLENT COMMUNICATION SKILLS AND SENIOR/LEAD EXPERIENCE.

**** CANDIDATES MUST BE WITHIN ONE HOUR COMUTE TO IRVING, TX OR WILMINGTON, DE. NO RELOCATION.

***MUST HAVE RECENT VERACODE AND CHECKMARX EXPERIENCE. PLEASE SEND CANDIDATES EVEN IF OVER THE TARGET RATE. I WANT TO SEE ALL QUALIFIED CANDIDATES.

CANDIDATES CAN SIT IN IRVING/DALLAS, TX OR WILMINGTON, DE. CANDIDATES MUST HAVE LEAD OR LEAD LEVEL EXPERIENCE AND RECENT EXPERIENCE WORKING WITH VERACODE AND CHECKMARX.

**We need A Senior (12+ years) Lead Application security engineer with excellent experience working with Varacode and CheckMarx along with other security tools.

Candidate must be a Leader with hands-on engineer with cross-vertical technical expertise encompassing penetration testing strategy and execution, vulnerability management, static code analytics, and policy compliance.

Must have experience in Information Security or a related role encompassing security compliance, penetration testing, vulnerability management, and/or static code analysis.

Job Description:

We are looking for a versatile and Leader with hands-on engineer with cross-vertical technical expertise encompassing penetration testing strategy and execution, vulnerability management, static code analytics, and policy compliance. Here, you’ll sit directly at the intersection of technical innovation and business engagement. You’ll actively partner with our engineers along with our Security Management and Senior Leadership teams to lead initiatives across our highly distributed, multi-national footprint. You’ll engage in both project execution and project leadership, working side by side with our Director of Vulnerability Management to ensure the fluid continuity of compliance programs across the enterprise. And as we continue to standardize our security posture, you’ll have opportunities to influence change and see the impact of what you’re doing each and every day to secure our global infrastructure.

Key functions include but are not limited to the following:

  • Lead initiatives and projects to support and enhance our application security initiatives which include penetration testing capabilities and static code
  • Bring your ideas forward, evaluating how to optimize the tools we’re using and exploring technologies that could continue to enhance our security posture and ensure solutions scalability
  • Develop and lead projects to continually analyze source code, pinpointing and remediating potential vulnerabilities upon discovery
  • Manage compliance scanning process across the enterprise to identify and remediate potential risks and vulnerabilities as expeditiously as possible
  • Continuously communicate that status of our security compliance projects and programs to provide updates and obtain buy-in from global engineering, business, security management, and senior leadership teams

Qualifications

  • Minimum of 5+ years of experience in Information Security or a related role encompassing security compliance, penetration testing, vulnerability management, and/or static code analysis
  • Prior experience leading projects and/or as a supervisor or team lead preferred
  • Bachelor’s degree in Computer Science, Information Security, Network Engineering, or a related technical discipline required; prior experience may substitute for education
  • Demonstrate proficiency in commonly used Penetration Testing Tools
  • Demonstrate proficiency in Web Application scanning tools
  • Demonstrate experience and proficiency in a Static Code Analysis Tool (For example: Veracode, Fortify, Checkmarx, etc.)
  • Proven ability to engage with and secure buy-in from business, technical, and executive stakeholders required