2

Remote Application Security Engineer Jobs in New York

Staff Application Security Engineer

New York, NY · On-site +1

$168K - $240K/yr

Staff Application Security Engineer As a Staff Application Security Engineer on Gemini's AppSec ... Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we ...

Job Purpose The Application Security Engineer is responsible for strengthening the security of our applications, platforms, and development processes. This position partners with software engineers ...

Senior Application Security Engineer

New York, NY · On-site +1

$140K - $200K/yr

Senior Application Security Engineer As a Senior Application Security Engineer on the Application ... Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we ...

Manager Application Security

Iselin, NJ · On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... As part of the cybersecurity organization, this role partners closely with engineering, platform ...

Manager Application Security

Iselin, NJ · On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... As part of the cybersecurity organization, this role partners closely with engineering, platform ...

Software Engineer - Security

New York, NY · On-site +1

$170K - $240K/yr

OVERVIEW This position can be based out of San Francisco, New York, or remote (we accept candidates ... Lead application security across our payment platform, including secure code review, threat ...

Senior Security Engineer

New York, NY · Remote

$180K - $210K/yr

Operate and evolve the application security toolchain and keep it high-signal for developers. * Own ... Remote first - work from anywhere in the US & CAN! * Regular in-person company retreats and cross ...

Senior Security Engineer

New York, NY · On-site +1

$180K - $210K/yr

Operate and evolve the application security toolchain and keep it high-signal for developers. * Own ... Remote first - work from anywhere in the US & CAN! * Regular in-person company retreats and cross ...

Security Engineer

New York, NY · Remote

$88 - $94/hr

The Security Engineer will collaborate with cryptographers to design and implement a high-security ... remote attestation. * Develop and review threat models covering network and application attack ...

Lead Security Engineer

New York, NY · On-site +1

$239K - $263K/yr

You'll sit at the critical intersection of cloud security , AI-enabled engineering , and identity & access management , partnering closely with Application Security, SRE, and R&D Engineering to ...

Security Engineer Full-time Remote Exclusive confidential search -- details shared with qualified applicants. Benefits You'll Love * Competitive salary * Meaningful equity * Flexible hybrid ...

Lead AppSec Engineer

Stamford, CT · On-site +1

$62.75 - $83.75/hr

Serve as asubject-matter-expertfor Application Security; actas a first point of contact for ... Scripting or programming experience (Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript ...

next page

Showing results 1-20

Remote Application Security Engineer information

What are the key skills and qualifications needed to thrive as a Remote Application Security Engineer, and why are they important?

To thrive as a Remote Application Security Engineer, you need a strong background in secure software development, vulnerability assessment, and a solid understanding of security frameworks, often supported by a degree in computer science and certifications like CISSP or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, static and dynamic analysis tools, and secure code review systems is typically required. Excellent problem-solving, communication, and self-motivation are essential soft skills for collaborating remotely and articulating security risks to diverse stakeholders. These skills ensure robust application security, effective risk mitigation, and seamless cooperation in distributed work environments.

Can you make $500,000 a year in cyber security?

Remote Application Security Engineers with extensive experience, advanced certifications, and specialized skills in areas like penetration testing or secure software development can potentially earn $500,000 annually, especially in senior or leadership roles. Achieving this level often requires a combination of high-level expertise, strategic responsibilities, and working in high-demand or high-paying industries. Most cybersecurity professionals earn less, but top-tier roles and consulting positions can reach or exceed this income level.

How can I make $2000 a week working from home?

A Remote Application Security Engineer can earn $2000 or more weekly by working full-time, leveraging specialized skills in cybersecurity, secure coding, and vulnerability assessment. Increasing income may involve gaining relevant certifications like CISSP or OSCP, working for high-paying companies, or taking on freelance consulting projects that require advanced security expertise.

What is the difference between Remote Application Security Engineer vs Remote Security Analyst?

AspectRemote Application Security EngineerRemote Security Analyst
CertificationsCSSLP, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentFocus on application security, code reviews, vulnerability assessmentsMonitor security alerts, analyze threats, incident response
Industry UsageSoftware development, tech companies, financeIT services, corporate security teams, government

The Remote Application Security Engineer primarily focuses on securing software applications through code analysis and vulnerability management, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require similar certifications and are vital in cybersecurity teams, but they differ in daily tasks and focus areas.

What engineer makes $500,000 a year?

A remote application security engineer can earn $500,000 or more annually, especially with extensive experience, specialized skills in security tools, and certifications like CISSP or OSCP. High salaries are often found in senior roles at large tech companies or cybersecurity firms, reflecting the critical importance of security expertise in protecting digital assets.

Can security engineers work remotely?

Yes, many security engineers, including application security engineers, can work remotely. The role often involves tasks such as code review, vulnerability assessment, and security tool management, which can be performed effectively from a remote environment with proper access to systems and secure communication tools.

How does a Remote Application Security Engineer typically collaborate with development teams to address security vulnerabilities?

As a Remote Application Security Engineer, you will regularly interact with development teams through virtual meetings, code reviews, and secure communication platforms. Collaboration involves identifying vulnerabilities through security assessments, then working closely with developers to explain risks and recommend remediation strategies. Effective communication skills and a proactive approach are essential, as you'll often need to bridge the gap between security requirements and development timelines. Embracing tools for remote collaboration, such as shared issue trackers and documentation platforms, is key to ensuring efficient teamwork and timely resolution of security issues.

What is a Remote Application Security Engineer?

A Remote Application Security Engineer is a cybersecurity professional who works from a location outside the traditional office environment to assess, design, and implement security measures for software applications. Their responsibilities include identifying vulnerabilities in code, conducting security testing, and recommending fixes to prevent cyberattacks. They collaborate with development teams remotely to ensure secure coding practices and compliance with industry standards. This role is critical for protecting sensitive data and maintaining trust in digital products, especially as remote work and cloud-based applications become more common.
What are the most commonly searched types of Application Security Engineer jobs in New York? The most popular types of Application Security Engineer jobs in New York are:
What job categories do people searching Remote Application Security Engineer jobs in New York look for? The top searched job categories for Remote Application Security Engineer jobs in New York are:
What cities in New York are hiring for Remote Application Security Engineer jobs? Cities in New York with the most Remote Application Security Engineer job openings:
Infographic showing various Remote Application Security Engineer job openings in New York as of July 2026, with employment types broken down into 77% Full Time, 17% Part Time, 1% Temporary, and 5% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution.

Application Security Engineer

Bright Vision Technologies

Secaucus, NJ • Remote

$100K - $150K/yr

Full-time

Posted 4 days ago


Job description

Application Security Engineer – Remote
Bright Vision Technologies is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States.
This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential.
Job Title: Application Security Engineer
Location: 100% Remote (U.S.)
Position Type: Full-time, Direct W2
Salary Range: $100,000–$150,000 Annually
Experience Required: 6+ years
Sponsorship: U.S. Citizens, Green Card Holders, EAD Holders, and H-1B transfer candidates are encouraged to apply. We are unable to sponsor new H-1B visa petitions for this position.
Job Summary:
We are looking for an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio. The role blends hands-on offensive and defensive skills with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down. The ideal candidate brings deep technical security expertise, strong software engineering fundamentals, and a track record of shipping security improvements that meaningfully reduce risk in production.
Key Responsibilities
  • Conduct threat modeling and security architecture reviews for new and existing applications and services.
  • Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components.
  • Operate and tune SAST, DAST, IAST, SCA, and secret-scanning tools across CI/CD pipelines.
  • Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking.
  • Build paved-road libraries and frameworks that make secure patterns the default for engineering teams.
  • Lead red-team and purple-team exercises against internal applications and drive remediation of identified weaknesses.
  • Implement and operate runtime protections including WAF, RASP, bot protection, and abuse-detection mechanisms.
  • Design and enforce secure authentication, authorization, session management, and cryptographic patterns.
  • Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments.
  • Develop and deliver application security training, lunch-and-learns, and onboarding content for engineering staff.
  • Respond to security incidents involving application vulnerabilities or active exploitation.
  • Track and apply emerging threats and CVEs that may affect the application portfolio.
  • Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures — so that the system remains supportable, auditable, and easy to onboard new engineers onto over time.
  • Stay current with application security research and emerging defensive tooling.
Required Qualifications
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • Five or more years of application security or security engineering experience.
  • Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns.
  • Hands-on experience performing code review across at least two major languages.
  • Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling.
  • Strong understanding of authentication, authorization, and cryptographic primitives.
  • Experience with cloud security and modern infrastructure controls.
  • Strong communication skills with technical and non-technical audiences.
  • Proficiency in at least one programming language for tooling and automation.
  • Experience working closely with engineering teams in an Agile environment.
Preferred Qualifications
  • Industry certifications such as OSCP, OSCE, GWAPT, or CISSP.
  • Experience with offensive security tooling and red-team operations.
  • Bug bounty experience, public CVEs, or open-source security contributions.
  • Familiarity with AI/LLM application security considerations.
  • Exposure to regulated industries with strict compliance requirements.
How to Apply
Would you like to know more about this opportunity? For immediate consideration, please send your resume to venkat.r@bvteck.com or contact us at (908) 505-3899. Learn more about Bright Vision Technologies at www.bvteck.com.
Bright Vision Technologies is an Equal Opportunity Employer.
 

Equal Employment Opportunity (EEO) Statement

Bright Vision Technologies (BV Teck) is committed to equal employment opportunity (EEO) for all employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected status as defined by applicable federal, state, or local laws. This commitment extends to all aspects of employment, including recruitment, hiring, training, compensation, promotion, transfer, leaves of absence, termination, layoffs, and recall.

BV Teck expressly prohibits any form of workplace harassment or discrimination. Any improper interference with employees\' ability to perform their job duties may result in disciplinary action up to and including termination of employment.