They are seeking a Security-Focused Software Developer to specialize in manual and automated code review for security vulnerabilities, ensuring secure coding practices and compliance with industry ...
They are seeking a Security-Focused Software Developer to specialize in manual and automated code review for security vulnerabilities, ensuring secure coding practices and compliance with industry ...
... secure coding practices. Responsibilities : • Perform in-depth security-focused code reviews across various codebases and languages • Identify common and advanced security vulnerabilities (e.g ...
... secure coding practices. Responsibilities : • Perform in-depth security-focused code reviews across various codebases and languages • Identify common and advanced security vulnerabilities (e.g ...
Perform in-depth security-focused code reviews across various codebases and languages * Identify ... Work closely with developers to educate and guide them in secure coding practices. * Recommend ...
Perform in-depth security-focused code reviews across various codebases and languages * Identify ... Work closely with developers to educate and guide them in secure coding practices. * Recommend ...
Perform in-depth security-focused code reviews across various codebases and languages * Identify ... Work closely with developers to educate and guide them in secure coding practices. * Recommend ...
Perform in-depth security-focused code reviews across various codebases and languages * Identify ... Work closely with developers to educate and guide them in secure coding practices. * Recommend ...
Senior Security Code Reviewer
Camp Springs, MD · On-site
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Senior Security Code Reviewer
Camp Springs, MD · On-site
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Senior Security Code Reviewer
Camp Springs, MD · On-site
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Senior Security Code Reviewer
Camp Springs, MD · On-site
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Senior Security Code Reviewer
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Quick apply
Senior Security Code Reviewer
$120K - $164K/yr
This Key Personnel role will lead application security testing, secure code review, DevSecOps pipeline integration, secure development guidance, risk assessments, and cloud/network security ...
Application Offensive Security Lead (Associate Director)
Jersey City, NJ · Hybrid
$64.25 - $85.75/hr
You will be responsible for performing the Threat modeling and assess the Threats at design stage and perform manual secure code reviews to assess the code level security risks which cannot be ...
Application Offensive Security Lead (Associate Director)
Jersey City, NJ · Hybrid
$64.25 - $85.75/hr
You will be responsible for performing the Threat modeling and assess the Threats at design stage and perform manual secure code reviews to assess the code level security risks which cannot be ...
Senior Consultant (Source Code Review)
Austin, TX · Remote
$80 - $100/hr
Senior Consultant - Source Code Review (IP Litigation) responsible for deep-dive firmware, driver ... Work independently in secure "clean room" environments, adhering to all confidentiality and ...
Quick apply
Senior Consultant (Source Code Review)
Austin, TX · Remote
$80 - $100/hr
Senior Consultant - Source Code Review (IP Litigation) responsible for deep-dive firmware, driver ... Work independently in secure "clean room" environments, adhering to all confidentiality and ...
Senior Consultant (Source Code Review)
Austin, TX · On-site +1
$80 - $100/hr
Senior Consultant - Source Code Review (IP Litigation) responsible for deep-dive firmware, driver ... Work independently in secure "clean room" environments, adhering to all confidentiality and ...
Senior Consultant (Source Code Review)
Austin, TX · On-site +1
$80 - $100/hr
Senior Consultant - Source Code Review (IP Litigation) responsible for deep-dive firmware, driver ... Work independently in secure "clean room" environments, adhering to all confidentiality and ...
Senior Application Security Engineer (DevSecOps & CI/CD Security)
Chicago, IL · On-site
$60.50 - $81/hr
The role involves providing expert guidance on secure architectures, conducting secure code reviews, and mentoring engineering teams to ensure secure software development practices. Responsibilities ...
Senior Application Security Engineer (DevSecOps & CI/CD Security)
Chicago, IL · On-site
$60.50 - $81/hr
The role involves providing expert guidance on secure architectures, conducting secure code reviews, and mentoring engineering teams to ensure secure software development practices. Responsibilities ...
Senior Application Security Engineer
Chicago, IL · On-site
$60.50 - $80.75/hr
Align secure coding governance with established Bank technology standards, including SDLC, secure development expectations, and code review procedures. Ensure teams understand and implement secure-by ...
Quick apply
Senior Application Security Engineer
Chicago, IL · On-site
$60.50 - $80.75/hr
Align secure coding governance with established Bank technology standards, including SDLC, secure development expectations, and code review procedures. Ensure teams understand and implement secure-by ...
Senior Application Security Engineer (DevSecOps & CI/CD Security)
Chicago, IL · On-site
$60.50 - $81/hr
The role involves providing expert guidance on secure architectures, conducting secure code reviews, and mentoring engineering teams to promote a strong security culture. Responsibilities : • Lead ...
Senior Application Security Engineer (DevSecOps & CI/CD Security)
Chicago, IL · On-site
$60.50 - $81/hr
The role involves providing expert guidance on secure architectures, conducting secure code reviews, and mentoring engineering teams to promote a strong security culture. Responsibilities : • Lead ...
Application Security Engineer
Rockville, MD · On-site
$60 - $80/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. Evaluate, recommend, and implement application security ...
Application Security Engineer
Rockville, MD · On-site
$60 - $80/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. Evaluate, recommend, and implement application security ...
Application Security Engineer -- Secure Mission Systems
Laurel, MD · On-site +1
$58.25 - $77.75/hr
Contribute to technical reviews, code reviews, software testing, and security-remediation ... Understanding of secure software-development lifecycle practices. * Integrating automated security ...
Quick apply
Application Security Engineer -- Secure Mission Systems
Laurel, MD · On-site +1
$58.25 - $77.75/hr
Contribute to technical reviews, code reviews, software testing, and security-remediation ... Understanding of secure software-development lifecycle practices. * Integrating automated security ...
Application Security Engineer-68257
$58 - $77.75/hr
Conduct secure code reviews and support vulnerability remediation efforts. * Integrate security controls into CI/CD pipelines and DevSecOps workflows. * Analyze findings from SAST, DAST, SCA ...
Application Security Engineer-68257
$58 - $77.75/hr
Conduct secure code reviews and support vulnerability remediation efforts. * Integrate security controls into CI/CD pipelines and DevSecOps workflows. * Analyze findings from SAST, DAST, SCA ...
Application Security Engineer-68257
Dallas, TX · On-site
$58 - $77.75/hr
Conduct secure code reviews and support vulnerability remediation efforts. * Integrate security controls into CI/CD pipelines and DevSecOps workflows. * Analyze findings from SAST, DAST, SCA ...
Application Security Engineer-68257
Dallas, TX · On-site
$58 - $77.75/hr
Conduct secure code reviews and support vulnerability remediation efforts. * Integrate security controls into CI/CD pipelines and DevSecOps workflows. * Analyze findings from SAST, DAST, SCA ...
Lead Application Security Engineer
Atlanta, GA · On-site
$56.50 - $75.50/hr
Secure code review, API security & advanced testing (25%) * Conducting and directing advanced secure code reviews, SAST/DAST assessments, and manual penetration testing across web, mobile, and API ...
Lead Application Security Engineer
Atlanta, GA · On-site
$56.50 - $75.50/hr
Secure code review, API security & advanced testing (25%) * Conducting and directing advanced secure code reviews, SAST/DAST assessments, and manual penetration testing across web, mobile, and API ...
Application Security Engineer @ Onsite @ Rockville, MD (or) McLean, VA
Mclean, VA · On-site
$60.25 - $80.50/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. * Evaluate, recommend, and implement application ...
Application Security Engineer @ Onsite @ Rockville, MD (or) McLean, VA
Mclean, VA · On-site
$60.25 - $80.50/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. * Evaluate, recommend, and implement application ...
HYBRID::Application Security Engineer at Rockville, MD or McLean, VA
Mclean, VA · On-site
$60.25 - $80.50/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. Evaluate, recommend, and implement application security ...
New
HYBRID::Application Security Engineer at Rockville, MD or McLean, VA
Mclean, VA · On-site
$60.25 - $80.50/hr
Conduct secure code reviews and leverage GenAI-enabled security tooling to improve scalability and efficiency of application security analysis. Evaluate, recommend, and implement application security ...
New
Secure Code Review information
See salary details
$29.81 - $35.86
1% of jobs
$35.86 - $41.91
1% of jobs
$41.91 - $47.97
2% of jobs
$47.97 - $54.02
13% of jobs
$56.22 is the 25th percentile. Wages below this are outliers.
$54.02 - $60.07
23% of jobs
The median wage is $64.40 / hr.
$60.07 - $66.13
15% of jobs
$66.13 - $72.18
16% of jobs
$74.34 is the 75th percentile. Wages above this are outliers.
$72.18 - $78.23
15% of jobs
$78.23 - $84.29
7% of jobs
$84.29 - $90.34
4% of jobs
$90.34 - $96.39
4% of jobs
$29
$66
$96
How much do secure code review jobs pay per hour?
What is secure code review?
What are the key skills and qualifications needed to thrive as a secure code reviewer?
What are some common challenges faced by professionals performing secure code reviews, and how can they be addressed?
What is the difference between Secure Code Review vs Static Application Security Testing (SAST)?
| Aspect | Secure Code Review | Static Application Security Testing (SAST) |
|---|---|---|
| Credentials | Knowledge of secure coding, programming languages, security standards | Security testing tools, programming knowledge, security certifications |
| Work Environment | Manual review, developer collaboration, code analysis | Automated scanning, integration with CI/CD pipelines |
| Industry Usage | Development teams, security analysts, code audits | Security teams, QA, DevOps, automated security testing |
Secure Code Review involves manual or semi-automated analysis of source code to identify security flaws, emphasizing developer collaboration. SAST uses automated tools to scan code for vulnerabilities during development, enabling faster detection. Both roles aim to improve code security but differ in approach: one is manual and detailed, the other automated and scalable.

Full-time
Re-posted 14 days ago
ThreatLocker rating
7.0
Based on 6 frontline employees who took The Breakroom Quiz
194th of 242 rated software companies
Job description
ThreatLocker is a leader in endpoint protection technologies, providing enterprise-level cybersecurity tools. They are seeking a Security-Focused Software Developer to specialize in manual and automated code review for security vulnerabilities, ensuring secure coding practices and compliance with industry standards.
Responsibilities:
• Perform in-depth security-focused code reviews across various codebases and languages
• Identify common and advanced security vulnerabilities (e.g., injection, XSS, insecure deserialization, insecure APIs).
• Work closely with developers to educate and guide them in secure coding practices.
• Recommend fixes and mitigation strategies, ensuring adherence to security standards (e.g., OWASP Top 10, CWE, NIST).
• Collaborate with security engineers, architects, and DevSecOps teams to enhance code security posture.
• Maintain documentation of findings and track remediation status.
• Utilize static and dynamic analysis tools to supplement manual reviews.
• Participate in security audits, threat modeling, and secure code training sessions.
Qualifications:
Required:
• Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
• 5+ years of experience in software development with at least 2 years in secure code review or application security.
• Strong understanding of secure software development lifecycle (SSDLC).
• Experience identifying and remediating vulnerabilities in code written in one or more languages (e.g., C/C++, C#, Swift, Java, JavaScript, Python).
• Familiarity with security tools such as SonarQube, Fortify, Checkmarx, Veracode, or similar.
• Knowledge of OWASP Top 10, CWE/SANS 25, and CVSS scoring.
• Strong analytical, communication, and documentation skills.
Preferred:
• Security certifications such as OSCP, CSSLP, CEH, or GWAPT.
• Experience in regulated environments (e.g., finance, healthcare, defense).
• Familiarity with threat modeling, penetration testing, or red/blue team operations.
Company:
ThreatLocker is a cybersecurity company that specializes in endpoint security and application whitelisting solutions. Founded in 2017, the company is headquartered in Orlando, USA, with a team of 501-1000 employees. The company is currently Late Stage.
What ThreatLocker employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About ThreatLocker
Sourced by ZipRecruiter
Industry
Network security
Company size
201 - 500 Employees
Headquarters location
Maitland, FL, US
Year founded
2015