2

Remote Security Coding Jobs in Santa Clara, CA (NOW HIRING)

Senior Security Engineer

Livermore, CA · On-site +1

$134K - $184K/yr

... secure code review for web, API, and cloud services. Triage and drive remediation of ... Standard office/remote work environment. Prolonged periods working at a computer. Occasional travel ...

New

Participate in code reviews and provide constructive technical feedback. * Troubleshoot, debug, and ... Contribute to application performance, reliability, scalability, and security. * Document technical ...

Participate in code reviews and provide constructive technical feedback. * Troubleshoot, debug, and ... Contribute to application performance, reliability, scalability, and security. * Document technical ...

Senior Backend Engineer

Palo Alto, CA · Remote

$150K - $180K/yr

... Remote Access Named in Forrester research on Operation Technology Security Solutions, and ... Knowledgeable in C++/go/Java-based secure coding, vulnerability assessment, threat analysis.

next page

Showing results 1-20

Remote Security Coding information

See Santa Clara, CA salary details

$20

$25

$27

How much do remote security coding jobs pay per hour?

As of Aug 28, 2026, the average hourly pay for remote security coding in Santa Clara, CA is $25.25, according to ZipRecruiter salary data. Most workers in this role earn between $21.15 and $26.83 per hour, depending on experience, location, and employer.

Application Security Engineer - AWS :: Remote

Mountain View, CA • Remote

$60.25 - $80.25/hr

Contractor

Posted 29 days ago


Job description

Application Security Engineer – AWS

Role: Certified - Application Security Engineer (AWS) 

Level: Senior (8–12 years) 

Location: Remote 

Role Summary

We are seeking an experienced Application Security Engineer to secure applications built and operated on AWS. You will embed security across the SDLC — from secure design and code review through CI/CD integration, runtime protection, and incident response — working closely with development, DevOps, and client security teams.

Key Responsibilities
  • Perform threat modeling and secure design reviews for applications and microservices deployed on AWS (EC2, ECS/EKS, Lambda, API Gateway).
  • Integrate and operate security tooling in CI/CD pipelines: SAST, DAST, SCA/dependency scanning, container image scanning, and IaC scanning.
  • Configure and manage AWS-native security services: WAF, Shield, GuardDuty, Inspector, Security Hub, KMS, Secrets Manager, IAM.
  • Define and enforce least-privilege IAM policies, secrets management standards, and encryption (at rest/in transit) across workloads.
  • Conduct secure code reviews and vulnerability triage; partner with dev teams on remediation and secure coding practices (OWASP Top 10, CWE).
  • Harden infrastructure-as-code (Terraform/CloudFormation) using policy-as-code (OPA, Checkov) and guardrails (SCPs, Config rules).
  • Support penetration test coordination, findings remediation, and audit/compliance requirements (SOC 2, ISO 27001, PCI-DSS as applicable).
  • Respond to application-layer security incidents; contribute to detection rules and runbooks.
  • Mentor engineers and champion DevSecOps culture across delivery teams.
Required Skills & Experience
  • 8+ years in application security / product security, with 3+ years securing workloads on AWS.
  • Hands-on expertise with AWS security services: IAM, WAF, GuardDuty, Inspector, Security Hub, KMS, Secrets Manager, CloudTrail.
  • Strong knowledge of OWASP Top 10, API security, authentication/authorization patterns (OAuth 2.0, OIDC, SAML).
  • Experience with security tooling: SonarQube/Checkmarx/Veracode (SAST), Snyk/Prisma/Aqua (SCA & containers), Burp Suite/OWASP ZAP (DAST).
  • Proficiency in at least one language for automation — Python, Go, or similar; ability to read Java/Node.js/.NET application code.
  • Experience securing containerized (Docker, EKS/ECS) and serverless (Lambda) architectures.
  • IaC security: Terraform or CloudFormation with Checkov/tfsec/cfn-nag.
  • CI/CD security integration: GitHub Actions, GitLab CI, Jenkins, or AWS CodePipeline.
  • Certifications: AWS Certified Security – Specialty (strongly preferred); CSSLP, OSWE, or CISSP.
Preferred Qualifications
  • Experience with CNAPP platforms (Wiz, Prisma Cloud, CrowdStrike Falcon Cloud).
  • Threat modeling frameworks (STRIDE, PASTA) and secure SDLC program experience.
  • Prior work in a client-facing or consulting/delivery environment with enterprise customers.
  • Exposure to compliance frameworks: SOC 2, ISO 27001, PCI-DSS, HIPAA, FedRAMP.
Soft Skills
  • Strong communication — able to explain risk and remediation to both engineers and business stakeholders.
  • Pragmatic, risk-based mindset; balances security rigor with delivery velocity.
  • Self-driven; comfortable operating in ambiguous, fast-moving programs.
Education

Bachelor's degree in Computer Science, Information Security, or equivalent practical experience.