1

Web Application Security Engineer Jobs in Oregon

Our work spans the entire stack - infrastructure, web, mobile, and IT - and we approach security ... Partner across the security team on cloud, infrastructure, and application security work alongside ...

We are looking for contracted PHP/MySQL web developer familiar with PHP web frameworks like ... Skills/Qualifications: 3+ years experience focused on web application development Advanced ...

The Application Security Analyst is responsible for ensuring the security of homegrown and 3rd ... developers with the identification, understanding and implementation of remediation measures.

Web Analyst

Beaverton, OR · Hybrid

$7.0K - $9.5K/mo

Collaborate with ITS colleagues on infrastructure upgrades, security, and ongoing maintenance. Meet ... application development, web process analysis, advanced web design, programming, and database ...

New

... or application security experience. * Experience designing secure cloud-native or distributed ... Strong programming experience in Python or TypeScript. * Excellent communication and collaboration ...

Sr. Cloud Security Engineer - FedRamp

OR · On-site +1

$114K - $156K/yr

Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF ... Cloud Security Engineering in a multi-cloud environment. - Expert-level proficiency in ...

... application vulnerabilities. * Deep expertise in modern web applications, APIs, authentication ... security risks. * Partner with engineering to validate remediations, confirm exploit paths are ...

Senior Software Engineer

OR · On-site +1

$122K - $161K/yr

Experience designing, building, and operating production web applications used by internal or ... Experience implementing application security fundamentals, including authentication, role-based ...

Responsibilities Bishop Fox is looking for experienced contract penetration testers with a primary focus in web application security and strong secondary expertise in cloud, mobile, source code ...

Dig into application architecture, APIs, authentication, authorization, data flows, cloud services ... Tune security tools and workflows so engineers receive useful findings instead of a flood of false ...

Requirements: * 4-6 years of professional experience in information security, application security ... remediation through engineering teams. * Working proficiency with several of the following:

Dig into application architecture, APIs, authentication, authorization, data flows, cloud services ... Tune security tools and workflows so engineers receive useful findings instead of a flood of false ...

Showing results 21-40

Web Application Security Engineer information

See Oregon salary details

$31

$70

$101

How much do web application security engineer jobs pay per hour?

As of Sep 10, 2026, the average hourly pay for web application security engineer in Oregon is $70.21, according to ZipRecruiter salary data. Most workers in this role earn between $59.71 and $79.81 per hour, depending on experience, location, and employer.

What is a web application security engineer?

A Web Application Security Engineer is a specialist responsible for protecting web applications from security threats and vulnerabilities. They analyze code, perform security testing, and implement measures to safeguard applications against attacks like SQL injection, cross-site scripting (XSS), and data breaches. Their work involves collaborating with developers to design secure systems, monitoring for security incidents, and staying updated on the latest cybersecurity trends and threats. Ultimately, they help ensure the confidentiality, integrity, and availability of web-based applications.

How does a web application security engineer typically collaborate with development teams to ensure secure coding practices?

Web Application Security Engineers work closely with software developers throughout the software development lifecycle, often participating in design reviews, code audits, and threat modeling sessions. They provide guidance on secure coding standards, identify potential vulnerabilities early, and recommend remediation strategies. Regular communication and knowledge sharing, such as conducting security training or workshops, help foster a security-first mindset across the team. This collaborative approach ensures that security is integrated from the outset rather than added as an afterthought.

What are the key skills and qualifications needed to thrive as a web application security engineer, and why are they important?

To thrive as a Web Application Security Engineer, you need a solid understanding of web technologies, application vulnerabilities (such as OWASP Top 10), and a background in computer science or cybersecurity. Familiarity with security testing tools like Burp Suite, Nessus, and proficiency in secure coding practices or relevant certifications such as CEH or OSCP are typically required. Outstanding problem-solving skills, attention to detail, and effective communication help in identifying, mitigating, and explaining security risks. These skills and qualities are essential to protect applications from cyber threats and ensure the integrity and confidentiality of sensitive data.

What cities in Oregon are hiring for Web Application Security Engineer jobs?

Cities in Oregon with the most Web Application Security Engineer job openings:

Infographic showing various Web Application Security Engineer job openings in Oregon as of August 2026, with employment types broken down into 77% Full Time, 17% Part Time, and 6% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $146,029 per year, or $70.2 per hour.

Network Security Architect

Portland, OR • On-site

Decision Six Inc.
IT Services • 11 - 50 employees

Other

Posted 2 days ago

New


Job description

Responsibilities:
Need strong handson experience on SASE, Firewalls, Zscaler, Cisco ISE, and troubleshootingSASE, Firewalls, Zscaler, Cisco ISE, and troubleshooting

Juniper Networks Routing, Switching, SRX Firewalls, VPNs, Security Policies

Palo Alto Networks NGFW, Panorama, App ID, Threat Prevention, GlobalProtect

Barracuda Networks WAF, Reverse Proxy, Load Balancing, Web Security

Broadcom / Symantec DLP Endpoint DLP, Network DLP, Data Classification, Incident Management

Zscaler, ZIA, ZPA/ZTNA, Secure Web Gateway, Cloud Security Policies

Juniper Networks (10+ Years Experience)

Hands on experience with Juniper SRX firewalls, VPNs, NAT, and security policy management.

Strong knowledge of routing & switching protocols such as BGP, OSPF, and VLANs.

Experience in Junos OS administration, troubleshooting, and network security implementation.

Experience with Juniper Security Director and Junos Space for centralized firewall management.

Hands on expertise with Panorama administration and centralized firewall management.

Knowledge of WildFire, IPS/IDS, GlobalProtect VPN, and advanced threat prevention features.

Experience in firewall migration and large scale enterprise deployments.

Hands on experience with Panorama and Strata Cloud Manager for centralized firewall and cloud security management.

Barracuda Networks WAF / Reverse Proxy / Load Balancing (6+ Years Experience)

Experience configuring and managing Barracuda WAF and reverse proxy solutions.

Knowledge of SSL offloading, load balancing, and web traffic filtering.

Strong understanding of OWASP Top 10 vulnerabilities and web application security best practices.

Symantec / Broadcom DLP Endpoint / Network DLP / Data Classification (6+ Years Experience)

Experience in incident management, policy tuning, and sensitive data protection.

Knowledge of email, web, and USB data leakage prevention controls.

Zscaler ZIA / ZPA / ZTNA Zero Trust Security (6+ Years Experience)

Experience in end to end deployment including tenant setup, policy configuration, SSL inspection, authentication integration, and traffic forwarding (GRE, IPSec, PAC).

Strong knowledge of user migration, application onboarding, Zero Trust architecture implementation, and production troubleshooting.

Strong understanding of SASE and Zero Trust security architecture principles.