1

Security Design Engineer Jobs in New York (NOW HIRING)

Integrate SAST/SCA tooling into developer workflows and participate in threat modeling and security design reviews * Audit and rationalize identity and access across cloud, SaaS, and internal tooling ...

Security for us is a strategic priority. We're hiring a senior engineer to own the security ... Design and enforce least-privilege IAM across services * Implement permission boundaries and SCP ...

Design and improve isolation mechanisms for multi-tenant workloads (containers, sandboxing ... Embed security into infrastructure-as-code and deployment systems Engineering Partnership * Work ...

Founding Design Engineer

New York, NY · On-site

$170 - $230/day

... security and governance into every part of our product. Our customers include the U.S. Dept of ... design system. The rules, components, patterns, and principles that allow our engineering team to ...

Responsibilities : • Provide Engineering Design level support of desktop and laptop computers and ... security, as well as the entire Microsoft Office suite including Office 365; • Provide tier three ...

Showing results 41-60

Security Design Engineer information

See New York salary details

$67.3K

$167.1K

$224.8K

How much do security design engineer jobs pay per year?

As of Aug 11, 2026, the average yearly pay for security design engineer in New York is $167,139.00, according to ZipRecruiter salary data. Most workers in this role earn between $156,400.00 and $173,400.00 per year, depending on experience, location, and employer.

What is the difference between Security Design Engineer vs Security Analyst?

AspectSecurity Design EngineerSecurity Analyst
CredentialsCertifications like CISSP, CEH, Security+Certifications like Security+, GIAC, CISSP (preferred)
Work EnvironmentDesigning security systems, architecture, and protocolsMonitoring, analyzing security incidents, and responding to threats
Employer & IndustryIT firms, cybersecurity companies, large enterprisesOrganizations across various industries, including finance, healthcare, and government

Security Design Engineers focus on creating and implementing security architectures, while Security Analysts monitor and respond to security threats. Both roles require relevant certifications and are vital in cybersecurity teams, but they differ in their primary responsibilities and daily tasks.

How does a Security Design Engineer typically collaborate with other teams during the development lifecycle?

Security Design Engineers work closely with multiple teams, such as software developers, network architects, and project managers, to ensure security is integrated into every phase of a project. They often participate in design reviews, threat modeling sessions, and code audits to identify and address vulnerabilities early. Effective communication and the ability to explain complex security concepts to non-security colleagues are essential for success in this collaborative environment. This cross-functional work helps ensure that security requirements are met without hindering overall project goals.

What is a Security Design Engineer?

A Security Design Engineer is a professional responsible for integrating security measures into the design of systems, products, or infrastructure. They assess potential risks and vulnerabilities, develop security protocols, and ensure that security requirements are met throughout the design and development process. Security Design Engineers work closely with architects, developers, and other stakeholders to implement effective security solutions. Their expertise helps protect organizations from cyber threats and ensures compliance with relevant regulations and standards.

What are the key skills and qualifications needed to thrive as a Security Design Engineer, and why are they important?

To thrive as a Security Design Engineer, you need strong expertise in security principles, risk assessment, and system architecture, typically backed by a degree in engineering, computer science, or a related field. Familiarity with security frameworks, CAD software, network modeling tools, and relevant certifications like CISSP or PSP are often required. Attention to detail, problem-solving abilities, and effective communication skills distinguish top performers in this role. These competencies ensure robust security solutions are designed, risks are minimized, and client needs are clearly understood and addressed.
What job categories do people searching Security Design Engineer jobs in New York look for? The top searched job categories for Security Design Engineer jobs in New York are:
Infographic showing various Security Design Engineer job openings in New York as of August 2026, with employment types broken down into 82% Full Time, 15% Part Time, 1% Temporary, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $167,139 per year, or $80.4 per hour.

Application Security Engineer

Peer Consulting Resources

Brooklyn, NY • On-site

$62 - $83/hr

Other

This job post has expired today. Applications are no longer accepted.


Job description

Contact Details:
1. Yashodatta Deshpande
Email:
Cell:
2.Saravanan Ganesan
Email:
Cell:
Job Title: Application Security Engineer
Location: Brooklyn NY 11201 (The position will be 3-day onsite hybrid)
Duration: 12 months+
Years of Experience: 10+ Years
Required Hours/Week: 35Hours/Week
Note:
  • local candidates only & F2F Interview
Job Overview:
  • The Application Security Engineer is embedded within the Application Development team and ensures security is integrated into all stages of software development. The role focuses on designing and building secure applications while working closely with application administrators who manage security tools and CI/CD pipelines.
  • This position is responsible for enabling developers to produce secure, resilient, and compliant software for web, mobile, API, GIS, and cloud-based systems supporting Fire, EMS, and administrative operations.
Responsibilities:
1. Secure Software Development
  • Establish and apply secure coding practices within the development team.
  • Define and enforce secure coding standards for Java, .NET, Python, and JavaScript applications.
  • Conduct secure design and architecture reviews for new and legacy systems.
  • Educate developers on secure coding practices, authentication/authorization best practices, and common application vulnerabilities.
Apply protections aligned with:
o OWASP Top 10
o OWASP API Security Top 10
2. Application & API Security
  • Design and implement secure REST APIs and web services.
Implement secure authentication/authorization using:
o SAML2
o OIDC
o OAuth2
Secure Java and JavaScript applications, including:
o Spring Boot
o React
  • Ensure secure handling of tokens, sessions, and secrets.
  • Collaborate with App Admins and Security team to integrate applications into WAFs, load balancers, and other security monitoring tools.
Mandatory Qualifications:
  • Minimum 4+ years in secure application development.
  • Prior hands-on software development experience.
Strong understanding:
o Web and mobile application architecture
o Internet protocols (HTTP, HTTPS, WebSockets)
o REST API security
  • Expertise in SAST, DAST, and SCA concepts (understanding results and remediation), in collaboration with App Admins.
  • Familiarity with security tools such as Veracode, Burp Suite, Zimperium, Prisma, Rapid7.
  • Experience applying NIST 800-53 and 800-171 controls at the application design level.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to work independently within a development-focused team.
Preferred Qualifications:
  • Experience with containerized applications (Docker, Kubernetes).
Knowledge:
o Core Java, J2EE, Spring Boot
o React, AngularJS, HTML5, CSS, JavaScript
  • Experience designing secure GIS systems.
  • Familiarity with public safety or emergency response systems.