1

Web Application Security Engineer Jobs in Oregon

Application Security Engineer

OR ยท On-site +1

$58.75 - $78.50/hr

A conceptual understanding of vulnerability categories and web application security standards. * An ... engineering and security. Benefits * Flexible work environment * Unlimited Vacation * 100% paid ...

Senior Application Security Engineer

OR ยท On-site +1

$58.75 - $78.50/hr

Upstart's Application Security team enables product and engineering teams to build secure products ... Experience securing cloud-native or distributed systems, including web applications, APIs, or ...

Senior Application Security Engineer

OR ยท On-site +1

$58.75 - $78.50/hr

MetaMask is both a crypto wallet and a gateway to the decentralized web. Our tools help people ... We are looking for a Senior Application Security Engineer to join our rapidly growing security team ...

Application Security Engineer

OR ยท On-site +1

$185K - $260K/yr

Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is ...

Staff Security Engineer, Application Security

OR ยท On-site +1

$210K - $260K/yr

What you'll do: We're looking for a Staff Security Engineer, Application Security to help scale and mature our security program. You'll own key security domains and initiatives end-to-end, working ...

Sales Engineer (Application Security)

OR ยท On-site +1

$103K - $128K/yr

Sales Engineers are an integral part of Thales's sales organization and assist the sales team with ... DDoS Mitigation, Web application firewalls, API Management & Security, Bot Management or related ...

Design, build, and deploy security controls across web applications, data pipelines, APIs, and ... hands-on application security, DevSecOps, or security engineering roles. * Proven experience ...

Security Engineer

OR ยท On-site +1

$100K - $135K/yr

You will work hands-on across our cloud, endpoint, identity, and application security tooling as ... Support the security of our cloud infrastructure in Microsoft Azure/EntraID and Amazon Web Services ...

Reporting to the Security Engineering Director, the Staff Security Engineer will act as technical ... Apply Web application and API security principles and techniques, such as zero trust, RBAC ...

next page

Showing results 1-20

Web Application Security Engineer information

See Oregon salary details

$31

$70

$101

How much do web application security engineer jobs pay per hour?

As of Sep 10, 2026, the average hourly pay for web application security engineer in Oregon is $70.21, according to ZipRecruiter salary data. Most workers in this role earn between $59.71 and $79.81 per hour, depending on experience, location, and employer.

What is a web application security engineer?

A Web Application Security Engineer is a specialist responsible for protecting web applications from security threats and vulnerabilities. They analyze code, perform security testing, and implement measures to safeguard applications against attacks like SQL injection, cross-site scripting (XSS), and data breaches. Their work involves collaborating with developers to design secure systems, monitoring for security incidents, and staying updated on the latest cybersecurity trends and threats. Ultimately, they help ensure the confidentiality, integrity, and availability of web-based applications.

How does a web application security engineer typically collaborate with development teams to ensure secure coding practices?

Web Application Security Engineers work closely with software developers throughout the software development lifecycle, often participating in design reviews, code audits, and threat modeling sessions. They provide guidance on secure coding standards, identify potential vulnerabilities early, and recommend remediation strategies. Regular communication and knowledge sharing, such as conducting security training or workshops, help foster a security-first mindset across the team. This collaborative approach ensures that security is integrated from the outset rather than added as an afterthought.

What are the key skills and qualifications needed to thrive as a web application security engineer, and why are they important?

To thrive as a Web Application Security Engineer, you need a solid understanding of web technologies, application vulnerabilities (such as OWASP Top 10), and a background in computer science or cybersecurity. Familiarity with security testing tools like Burp Suite, Nessus, and proficiency in secure coding practices or relevant certifications such as CEH or OSCP are typically required. Outstanding problem-solving skills, attention to detail, and effective communication help in identifying, mitigating, and explaining security risks. These skills and qualities are essential to protect applications from cyber threats and ensure the integrity and confidentiality of sensitive data.

What cities in Oregon are hiring for Web Application Security Engineer jobs?

Cities in Oregon with the most Web Application Security Engineer job openings:

Infographic showing various Web Application Security Engineer job openings in Oregon as of August 2026, with employment types broken down into 77% Full Time, 17% Part Time, and 6% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $146,029 per year, or $70.2 per hour.

Application Security Engineer

OR โ€ข On-site, Remote

Zocdoc
Internet Websites and Web Search Portalsย โ€ขย 501 - 1,000 employees

$58.75 - $78.50/hr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 28 days ago


Job description

Your Impact to our Mission

Zocdoc's most important asset is our people. As an Application Security Engineer, you'll play a meaningful role in helping our development organization build secure software with confidence. In this role, you'll work closely with our Compliance, Security, and Engineering teams to support our secure software development lifecycle, strengthen application security governance, and help shape emerging AI governance guardrails across the business.

You'll enjoy this role if you...

  • Personally motivated by helping teams build secure software and reduce risk before issues reach production.
  • Autonomous, urgent, and creative. You genuinely love turning security requirements into practical guidance for developers.
  • Highly collaborative and energized by partnering with engineering squads across the software development lifecycle.
  • Passionate about application security, secure coding, and improving how teams work within modern development environments.
  • A clear communicator who can make security concepts approachable and actionable for technical partners.
  • The kind of person who is excited by emerging technology trends, especially AI security risks and automated workflows.
  • Serious about your work, but not about yourself.

Your day to day is...

  • Serving as an accessible point of contact for engineering squads, helping teams understand and follow secure development lifecycle guidelines.
  • Assisting developers in reviewing and interpreting alerts from static analysis and software composition analysis tools, including helping distinguish true vulnerabilities from false positives.
  • Providing clear, actionable guidance on remediating common application security vulnerabilities, including issues aligned to the OWASP Top 10.
  • Helping maintain internal security documentation, developer playbooks, and secure coding training materials so that compliance expectations are clear and achievable.
  • Supporting application security governance by tracking key security milestones and organizing technical evidence from repositories and deployment pipelines for compliance audits.
  • Monitoring application security metrics, including vulnerability patch timelines and policy exceptions, to support regular leadership reporting.
  • Working with cutting-edge GenAI tools and technology while supporting AI governance frameworks and helping ensure AI-enabled workflows align with privacy and security guardrails.

You'll be successful in this role if you have...

  • Meaningful experience in an information security role, software engineering position, or IT audit function with an application security focus.
  • A foundational understanding of software development processes and how security fits into agile environments.
  • Familiarity with code review concepts and comfort reading at least one major language used in cloud environments, such as Python, JavaScript, Go, or Java.
  • Basic exposure to cloud environments such as AWS, GCP, or Azure, along with an understanding of Git workflows.
  • A conceptual understanding of vulnerability categories and web application security standards.
  • An interest in emerging technology trends, especially AI security risks and automated workflows.
  • Required: the ability to integrate generative AI tools into daily workflows to automate tasks, foster innovation, and maximize productivity.
  • A degree in Computer Science, Cybersecurity, or a related technical field is preferred, though equivalent hands-on experience or certifications such as Security+, GSEC, or CEH are also highly valued.
  • Superb communication skills, humility, and a collaborative approach to supporting stakeholders across engineering and security.

Benefits

  • Flexible work environment
  • Unlimited Vacation
  • 100% paid employee health benefit options (including medical, dental, and vision)
  • 401(k) with employer funded match
  • Corporate wellness program with Wellhub
  • Sabbatical leave (for employees with 5+ years of service)
  • Competitive paid parental leave and fertility/family planning reimbursement
  • Cell phone reimbursement
  • Employee Resource Groups and ZocClubs to promote shared community and belonging
  • Great Place to Work Certified

ZocDoc logo

About ZocDoc

Sourced by ZipRecruiter

Zocdoc is the country's leading digital health marketplace that helps patients easily find and book the care they need. Each month, millions of patients use our free service to find nearby, in-network providers, compare choices based on verified patient reviews, and instantly book in-person or video visits online. Providers participate in Zocdoc's Marketplace to reach new patients to grow their practice, fill their last-minute openings, and deliver a better healthcare experience. Founded in 2007 with a mission to give power to the patient, our work each day in pursuit of that mission is guided by our six core values. Zocdoc is a private company backed by some of the world's leading investors, and we believe we're still only scratching the surface of what we plan to accomplish. Zocdoc is a mission-driven organization dedicated to building teams as diverse as the patients and providers we aim to serve. In the spirit of one of our core values - Together, Not Alone , we are a company that prides itself on being highly collaborative, and we believe that diverse perspectives, experiences, and contributors make our community and our platform better. We're an equal-opportunity employer committed to providing employees with a work environment free of discrimination and harassment. Applicants are considered for employment regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity, gender expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or any other class protected by applicable laws.

Industry

Internet websites and web search portals

Company size

501 - 1,000 Employees

Headquarters location

New York, NY, US

Year founded

2007