2

Remote Application Security Engineer Jobs in Phoenix, AZ

Manager, Application & AI Security arrivia Remote (US) Full-time -d11f-4733-b11f- 914dddd28c06 ... Hands-on experience building security into CI/CD as guardrails-as-code (Azure DevOps, GitHub ...

Senior DevSecOps Engineer

Phoenix, AZ ยท On-site +1

$113K - $155K/yr

Application Security & DevSecOps * Identify and address security risks in application architecture ... Build developer-friendly security guardrails, reusable patterns, and automations that improve ...

Security Firewall Engineer

Phoenix, AZ ยท On-site +1

$47.50 - $63.50/hr

We are looking for candidates with deep technical expertise in network security, firewall engineering, remote access, and routing technologies. The ideal candidate should possess strong design and ...

New

The Role We are seeking a skilled Mainframe Logical Security Engineer to design, implement, and ... application process, select 'Employee Referral' and enter your contact's Kyndryl email address.

Senior Software Engineer

Phoenix, AZ ยท Remote

$121K - $160K/yr

... remote data via SOAP, REST and JSON * 4+ years of experience in software development, with a focus ... Solid understanding of web application security principles, including authentication, authorization ...

next page

Showing results 1-20

Remote Application Security Engineer information

See Phoenix, AZ salary details

$29

$65

$95

How much do remote application security engineer jobs pay per hour?

As of Aug 30, 2026, the average hourly pay for remote application security engineer in Phoenix, AZ is $65.93, according to ZipRecruiter salary data. Most workers in this role earn between $56.11 and $74.95 per hour, depending on experience, location, and employer.

What is a remote application security engineer?

A Remote Application Security Engineer is a cybersecurity professional who works from a location outside the traditional office environment to assess, design, and implement security measures for software applications. Their responsibilities include identifying vulnerabilities in code, conducting security testing, and recommending fixes to prevent cyberattacks. They collaborate with development teams remotely to ensure secure coding practices and compliance with industry standards. This role is critical for protecting sensitive data and maintaining trust in digital products, especially as remote work and cloud-based applications become more common.

How does a remote application security engineer typically collaborate with development teams to address security vulnerabilities?

As a Remote Application Security Engineer, you will regularly interact with development teams through virtual meetings, code reviews, and secure communication platforms. Collaboration involves identifying vulnerabilities through security assessments, then working closely with developers to explain risks and recommend remediation strategies. Effective communication skills and a proactive approach are essential, as you'll often need to bridge the gap between security requirements and development timelines. Embracing tools for remote collaboration, such as shared issue trackers and documentation platforms, is key to ensuring efficient teamwork and timely resolution of security issues.

What are the key skills and qualifications needed to thrive as a remote application security engineer, and why are they important?

To thrive as a Remote Application Security Engineer, you need a strong background in secure software development, vulnerability assessment, and a solid understanding of security frameworks, often supported by a degree in computer science and certifications like CISSP or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, static and dynamic analysis tools, and secure code review systems is typically required. Excellent problem-solving, communication, and self-motivation are essential soft skills for collaborating remotely and articulating security risks to diverse stakeholders. These skills ensure robust application security, effective risk mitigation, and seamless cooperation in distributed work environments.

What is the difference between Remote Application Security Engineer vs Remote Security Analyst?

AspectRemote Application Security EngineerRemote Security Analyst
CertificationsCSSLP, CISSP, CEHCISSP, Security+, CEH
Work EnvironmentFocus on application security, code reviews, vulnerability assessmentsMonitor security alerts, analyze threats, incident response
Industry UsageSoftware development, tech companies, financeIT services, corporate security teams, government

The Remote Application Security Engineer primarily focuses on securing software applications through code analysis and vulnerability management, while the Remote Security Analyst monitors security systems and responds to threats. Both roles require similar certifications and are vital in cybersecurity teams, but they differ in daily tasks and focus areas.

What are popular job titles related to Remote Application Security Engineer jobs in Phoenix, AZ?

For Remote Application Security Engineer jobs in Phoenix, AZ, the most frequently searched job titles are:

What job categories do people searching Remote Application Security Engineer jobs in Phoenix, AZ look for?

The top searched job categories for Remote Application Security Engineer jobs in Phoenix, AZ are:

What cities near Phoenix, AZ are hiring for Remote Application Security Engineer jobs?

Cities near Phoenix, AZ with the most Remote Application Security Engineer job openings:

Manager, Application & AI Security

Provn

Scottsdale, AZ โ€ข Remote

$137K - $206K/yr

Full-time

Re-posted 9 days ago


Job description

Manager, Application & AI Security

arrivia Remote (US) Full-time

https://provn.co/org/arrivia/jobs/a9c66316-d11f-4733-b11f-914dddd28c06/manager-application-ai-security?utm_source=dstribute&utm_medium=job+boards&utm_campaign=arrivia-mgr-ai-security

About arrivia

arrivia specializes in making brands better through the power of travel, powering loyalty and membership travel programs. Formed from the merger of ICE, SOR Technology, and WMPH Vacations, the company brings more than 55 years of combined experience and operates on both US coasts and around the world.

About the Role

This role keeps arrivia's applications, cloud, and AI usage governed and secure-by-default, so delivery speed never outruns risk review. You will own the secure software development lifecycle per NIST SSDF and ISO/IEC 27001, CI/CD golden-pipeline guardrails and artifact integrity, application security testing across API and the OWASP Top 10, container and Kubernetes and IaC scanning, threat modeling, SBOM generation, and cloud tenant guardrails at the application layer. You will also hold the central AI-governance mandate: LLM and Copilot usage policy, the AI and model inventory and AI-BOM, the model registry and approval workflow, prompt-injection and jailbreak testing, LLM red-teaming, and MCP and AI-agent runtime security. You will report to the EVP of IT and Security and CIO and lead the App and AI Security team of roughly four to five.

What You'll Do
  • Own the secure SDLC per NIST SSDF and ISO/IEC 27001, including application security reviews for major releases.
  • Own CI/CD golden-pipeline guardrails, pipeline and artifact integrity, and pipeline monitoring.
  • Run application security testing across API security, OWASP ASVS, and the OWASP Top 10 and API Security Top 10.
  • Own container, Kubernetes, and IaC scanning, threat modeling, secure-code training, and SBOM generation.
  • Hold the central AI-governance mandate: LLM and Copilot usage policy and data-leakage and shadow-AI controls under NIST AI RMF and ISO/IEC 42001.
  • Run prompt-injection and jailbreak testing and LLM red-teaming, and secure MCP and AI-agent runtimes with per-tool-call authorization and containment.
What We're Looking For
  • A degree in computer science, cybersecurity, or a related field, or a minimum of 7 years in security; 5+ years in application security and/or DevSecOps, including team leadership.
  • Hands-on experience building security into CI/CD as guardrails-as-code (Azure DevOps, GitHub Actions, GitLab, Jenkins).
  • Strong application security testing across SAST, DAST, SCA, secrets scanning, and API security (Checkmarx, Veracode, Snyk).
  • Knowledge of API security architecture and standards such as OAuth2, OWASP, and CIS; experience with containers, Kubernetes, IaC, threat modeling, and SBOMs.
  • Working knowledge of AI/LLM security: usage governance, prompt-injection and jailbreak testing, LLM red-teaming, and MCP/AI-agent runtime controls; familiarity with NIST AI RMF and ISO 42001.
  • CISSP or CCNP-Security required; CSSLP, CCSP, or CISM preferred.
Compensation and Benefits

$137,000-$206,000. Remote within the US, leading the App and AI Security team (currently three, growing to four or five).

How to Apply

To apply for this role, you must create an account on provn.co and submit all required application artifacts. Resume only applications may be considered, but candidates who complete a full application are reviewed with priority.

How hiring works here

Referrals are king for getting an interview. But what if you don't have a referral? Applying with Provn is designed to help you get more interviews. Instead of sending a cold resume into an ATS and waiting, you will complete a challenge built by arrivia and submit a short video walking through your approach. No time limit. No timers. No restrictions on AI usage. Show how you build with AI.

Why that works in your favor:

  • You show how you actually build and ship with coding agents, instead of hoping a resume communicates your skill clearly.
  • Your judgment with AI becomes visible, which no "proficient with AI coding agents" resume bullet can prove.
  • One challenge puts you in front of the security team, scored on the work. Priority without a referral!

The hiring manager reviews every completed submission, and strongest candidates go straight to an interview round. No referral needed. Performance over pedigree. Proof over polish.

For this role, the challenge is a significant part of your candidacy. If you have been looking for a foot in the door, a chance to show what you can do, if you have ever felt like all you needed was ten minutes with the hiring manager to prove yourself, this is that opportunity.

https://provn.co/org/arrivia/jobs/a9c66316-d11f-4733-b11f-914dddd28c06/manager-application-ai-security?utm_source=dstribute&utm_medium=job+boards&utm_campaign=arrivia-mgr-ai-security