2

Remote Application Security Engineer Jobs in Orem, UT

Application Security Engineer

South Jordan, UT · Remote

$56 - $75/hr

Application Security Engineer Canopy, South Jordan, UT About Us Canopy is a fast-growing SaaS ... This position is fully remote in Utah. What You'll Do * Help design and execute a multi-year ...

Application Security Engineer

South Jordan, UT · Remote

$56 - $75/hr

Application Security Engineer Canopy, South Jordan, UT About Us Canopy is a fast-growing SaaS ... This position is fully remote in Utah. What You'll Do * Help design and execute a multi-year ...

Vulnerability & Application Security Management: Own the vulnerability management program end-to ... Partner with engineering teams to review code dependencies, threat-model new features, and ensure ...

Vulnerability & Application Security Management: Own the vulnerability management program end-to ... Partner with engineering teams to review code dependencies, threat-model new features, and ensure ...

This is a remote position available in the state listed on this job. Additionally, employment with ... Partner with Security Engineering, Application Security, Security Operations, and GRC to ensure ...

Cyber Operations Engineer III

Sandy, UT · On-site +1

$91K - $120K/yr

... Security Engineer) Flexible Working At Conduent, we value individuality and flexible working arrangements. In this role, you can expect: * Remote Work: Enjoy the flexibility of working from home ...

Cyber Operations Engineer III

Sandy, UT · On-site +1

$91K - $118K/yr

You'll partner with Security Engineers to implement and improve technology and process to enhance ... Remote work: Enjoy the convenience of working from home and maximize your time by unplugging at the ...

Senior Sales Engineer - AEC

Draper, UT · Remote

$125K - $140K/yr

SENIOR SOLUTIONS ENGINEER -AEC US REMOTE; RALEIGH, NC, DRAPER, UT EGNYTE YOUR CAREER. SPARK YOUR ... Established in 2008, Egnyte has democratized cloud content security for more than 22,000 ...

next page

Showing results 1-20

Remote Application Security Engineer information

See Orem, UT salary details

$25

$57

$83

How much do remote application security engineer jobs pay per hour?

As of Jul 26, 2026, the average hourly pay for remote application security engineer in Orem, UT is $57.73, according to ZipRecruiter salary data. Most workers in this role earn between $49.13 and $65.62 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Remote Application Security Engineer, and why are they important?

To thrive as a Remote Application Security Engineer, you need a strong background in secure software development, vulnerability assessment, and a solid understanding of security frameworks, often supported by a degree in computer science and certifications like CISSP or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, static and dynamic analysis tools, and secure code review systems is typically required. Excellent problem-solving, communication, and self-motivation are essential soft skills for collaborating remotely and articulating security risks to diverse stakeholders. These skills ensure robust application security, effective risk mitigation, and seamless cooperation in distributed work environments.

Can you make $500,000 a year in cyber security?

Remote Application Security Engineers with extensive experience, advanced certifications, and specialized skills in areas like penetration testing or secure software development can potentially earn $500,000 annually, especially in senior or leadership roles. Achieving this level often requires a combination of high-level expertise, strategic responsibilities, and working in high-demand or high-paying industries. Most cybersecurity professionals earn less, but top-tier roles and consulting positions can reach or exceed this income level.

How can I make $2000 a week working from home?

A Remote Application Security Engineer can earn $2000 or more weekly by working full-time, leveraging specialized skills in cybersecurity, secure coding, and vulnerability assessment. Increasing income may involve gaining relevant certifications like CISSP or OSCP, working for high-paying companies, or taking on freelance consulting projects that require advanced security expertise.

What is the difference between Remote Application Security Engineer vs Remote Security Analyst?

AspectRemote Application Security EngineerRemote Security Analyst
CertificationsCSSLP, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentFocus on application security, code reviews, vulnerability assessmentsMonitor security alerts, analyze threats, incident response
Industry UsageSoftware development, tech companies, financeIT services, corporate security teams, government

The Remote Application Security Engineer primarily focuses on securing software applications through code analysis and vulnerability management, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require similar certifications and are vital in cybersecurity teams, but they differ in daily tasks and focus areas.

What engineer makes $500,000 a year?

A remote application security engineer can earn $500,000 or more annually, especially with extensive experience, specialized skills in security tools, and certifications like CISSP or OSCP. High salaries are often found in senior roles at large tech companies or cybersecurity firms, reflecting the critical importance of security expertise in protecting digital assets.

Can security engineers work remotely?

Yes, many security engineers, including application security engineers, can work remotely. The role often involves tasks such as code review, vulnerability assessment, and security tool management, which can be performed effectively from a remote environment with proper access to systems and secure communication tools.

How does a Remote Application Security Engineer typically collaborate with development teams to address security vulnerabilities?

As a Remote Application Security Engineer, you will regularly interact with development teams through virtual meetings, code reviews, and secure communication platforms. Collaboration involves identifying vulnerabilities through security assessments, then working closely with developers to explain risks and recommend remediation strategies. Effective communication skills and a proactive approach are essential, as you'll often need to bridge the gap between security requirements and development timelines. Embracing tools for remote collaboration, such as shared issue trackers and documentation platforms, is key to ensuring efficient teamwork and timely resolution of security issues.

What is a Remote Application Security Engineer?

A Remote Application Security Engineer is a cybersecurity professional who works from a location outside the traditional office environment to assess, design, and implement security measures for software applications. Their responsibilities include identifying vulnerabilities in code, conducting security testing, and recommending fixes to prevent cyberattacks. They collaborate with development teams remotely to ensure secure coding practices and compliance with industry standards. This role is critical for protecting sensitive data and maintaining trust in digital products, especially as remote work and cloud-based applications become more common.
What are the most commonly searched types of Application Security Engineer jobs in Orem, UT? The most popular types of Application Security Engineer jobs in Orem, UT are:
What job categories do people searching Remote Application Security Engineer jobs in Orem, UT look for? The top searched job categories for Remote Application Security Engineer jobs in Orem, UT are:
What cities near Orem, UT are hiring for Remote Application Security Engineer jobs? Cities near Orem, UT with the most Remote Application Security Engineer job openings:
Infographic showing various Remote Application Security Engineer job openings in Orem, UT as of July 2026, with employment types broken down into 87% Full Time, and 13% Part Time. Highlights an 100% Remote job distribution, with an average salary of $120,074 per year, or $57.7 per hour.
Application Security Engineer

Application Security Engineer

Canopy

South Jordan, UT • Remote

$56 - $75/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 5 days ago


Hilton Grand Vacations rating

6.8

Company rating: 6.8 out of 10

Based on 150 frontline employees who took The Breakroom Quiz

8th of 21 rated holiday rentals


Job description

Application Security Engineer

Canopy, South Jordan, UT

About Us

Canopy is a fast-growing SaaS company in South Jordan, Utah building simple, powerful software for accounting firms. We're on a mission to help accountants build an autonomous firm - giving them back the time and tools they need to focus on what matters most: their clients.

We believe the accounting industry deserves world-class software, and we're building exactly that. Our Practice Management Suite is purpose-built for firms that want to work smarter, grow faster, and deliver more value to the people they serve. We place a strong emphasis on delighting our customers, spotting and solving problems, and being good people along the way.

Click here to see why our clients (and investors) love Canopy.

Interested in learning more about Canopy & the industry? Check out our blog here where you can find great information on our product features, industry news, practice management, and more!

The Opportunity

As we scale, so does the trust our customers place in us to protect their data. We're hiring a Senior Application Security Engineer to help harden our platform - from how we isolate workloads and control access, to how we secure our network, harden our applications, achieve audit-grade observability, and lock down our software supply chain.

This is a hands-on, high-ownership role. You'll be a primary builder on a broad security roadmap spanning cloud infrastructure, identity, network, application, observability, and the software supply chain - turning it into shipped, operational reality alongside platform, infrastructure, and product engineering teams. We're looking for someone who can go deep on any one of these areas when needed, while staying comfortable moving across all of them, and who has a sharp read on how AI is reshaping both the threats we defend against and the tools we defend with.

This position is fully remote in Utah.

What You'll Do

  • Help design and execute a multi-year application and platform security roadmap spanning cloud infrastructure, identity, network, application, observability, and the software supply chain
  • Harden our AWS and Kubernetes environments - from account/organization structure and IAM to workload identity, network segmentation, and zero-trust access
  • Strengthen authentication and application-layer defenses, including anti-abuse protections, secure headers, and multi-tenant isolation
  • Build out the security observability stack: audit logging, cloud posture monitoring, runtime threat detection, and deception-based detection techniques
  • Embed security into the SDLC - CI/CD gates, secret scanning, threat modeling, and software supply chain integrity (SBOMs, artifact signing, provenance), accounting for the new risks and review needs introduced by AI-generated code and AI-assisted development workflows
  • Evaluate and adopt AI-powered security tooling - from AI-assisted pentesting and code review to anomaly detection - to help our small team punch above its weight
  • Work closely with the security lead to prioritize this work, balancing finite hardening projects against the ongoing operational load of running a security program that scales with the company
  • Serve as a trusted security resource for engineering teams - reviewing designs, unblocking teams on secure implementation patterns, and helping raise security literacy across the org
  • Support customer and compliance conversations where deep technical credibility is needed

What We're Looking For

  • 8+ years of professional experience in application security, security engineering, or a closely related discipline, with a track record of driving substantial security initiatives from design through to production
  • Deep, hands-on expertise across most of the following: cloud account/organization security (AWS preferred), IAM and least-privilege design, Kubernetes and container security, network security and zero-trust access (e.g., Tailscale, mTLS), web application security (WAF, CSP, authentication/anti-abuse), security observability (SIEM/audit logging, CSPM, runtime detection), and secure SDLC/supply chain security (SAST/DAST, secret scanning, SBOM, artifact signing)
  • A working understanding of how AI is currently shaping the security landscape - both offensively (AI-assisted phishing, automated exploitation, LLM-specific attack surfaces) and defensively (AI-assisted detection, code review, and pentesting) - and the judgment to separate real risk and real value from hype
  • Demonstrated ability to go deep on a single domain when the problem demands it, and to reason credibly across all of them when setting priorities
  • Experience threat modeling new features and influencing engineering design decisions before code is written
  • Strong communication skills - able to translate security risk into terms that engineers, product managers, and leadership can act on
  • Comfort operating with significant autonomy in a fast-moving environment, and pulling in the right partners across the org to get things done

Bonus Points 

  • Experience securing multi-tenant SaaS platforms, including tenant-isolation testing or red-teaming
  • Relevant certifications (e.g., OSCP, GWAPT, GCSA, or similar) - nice to have, not required
  • Experience building or operating detection engineering programs (honeytokens, canary credentials, runtime threat detection)
  • Prior experience in a regulated or compliance-heavy environment (SOC 2, ISO 27001, etc.)
  • Hands-on experience securing AI/LLM-powered features or evaluating the security posture of AI coding tools and agentic workflows

We know many women do not apply for a job if they don't perfectly fit the description. We want you to apply anyway.

Why You Want to Work Here

Flexible Paid Time Off - you're actually encouraged to use, plus 10 company holidays! 

Health Benefits - including Medical, Dental, and Vision and an HSA Match. 

401(k) - we match 100% up to 3% of your contribution. Eligibility is immediate with 100% vesting.

Mental Health -  all employees have access to Impact Suite & to our Employee Assistance Program (EAP).

Paid New Parent Leave & Birthing Parent Leave - so you're able to care for your little ones.

Supplemental Benefits - including 100% company paid Basic Life & AD&D insurance and long & short-term disability coverage.

Nectar - our peer-to-peer recognition program to help our employees recognize the amazing work being done by other Canopians!

Company Events - including monthly company-wide meetings, summer parties, and more.

ERG Committees - to plan initiatives around continuing education, community outreach, recruiting, onboarding, and more.

Fully-stocked kitchen - Keto? Vegan? Flexitarian? Mandalorian? We've got you covered. 

Our Values

We approach our work every day with a few things in mind:

Own - We own this place! We focus on outcomes, holding ourselves & each other accountable.

Win - We win by delighting our customers with the very best products and services.

Do Good - We work hard to be good people!

Embrace Curiosity & Candor - We approach everything with curiosity & we understand that candor is kindness and give the gift of feedback.

Act Startup Fast - We know the best way to become a world-class company is to always act like a tiny startup: fast, hungry, intense, and scrappy. But especially fast.

To learn more about us & our values, click here.

Interviewing @ Canopy

Application processes can be a little stressful. Here are the stages of a typical interview process at Canopy:

  • Once your application is received, we will review it and get back to you if we feel like it's a mutual fit! 
  • 20-minute phone call with the People Team
  • 45-60-minute video or in-person interview with the Hiring Manager
  • 1-3 rounds of interviews, depending on the role
  • Final Interview

Interview processes can vary depending on the role. The People Team will give you a role-specific overview of the process during your first phone call. 

Remember: This is your interview too! We know candidates are evaluating us just as much as we are them. We encourage you to bring questions to each of your interviews-our hiring teams will always make sure to save time for questions at the end! 

Canopy is an equal-opportunity employer. Canopy provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, national origin, sexual orientation, gender identity or expression, age, disability, genetic information, marital status, or veteran status.


What Hilton Grand Vacations employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom