1

Web Application Security Engineer Jobs in Portland, OR

Bachelor's degree in computer science, Engineering, or a related field (or equivalent practical experience), plus7+ years of experience in software/application security, secure software development ...

Bachelor's degree in computer science, Engineering, or a related field (or equivalent practical experience), plus11+ years of experience in software/application security, secure software development ...

Application Development Project Management Quality Assurance Business/Systems Analysis ... Security & Privacy Specialties Contract Staffing (Staff Augmentation) Permanent Placement (Staff ...

Our Technical Operations team is looking for a Network Engineer to be a part of our Technology ... Security Information & Event Management (SIEM) platform * Web Application Firewall * Network Access ...

Senior Web Developer

Portland, OR · On-site

$93K - $103K/yr

... security * Provide peer review and informal mentorship to other developers Technical Leadership ... Public-sector, planning, transportation, GIS, or other data-intensive application experience; WCAG ...

.NET Developer

Hillsboro, OR

$52.50 - $69.50/hr

... Security & Privacy Specialties Contract Staffing (Staff Augmentation) Permanent Placement (Staff ... Web application development, Testing and deployment .NET Developer Start Date ASAP .NET Developer ...

Senior Web Developer

Portland, OR · On-site

$93K - $103K/yr

... security * Provide peer review and informal mentorship to other developers Technical Leadership ... Public‑sector, planning, transportation, GIS, or other data‑intensive application experience;

Showing results 21-40

Web Application Security Engineer information

See Portland, OR salary details

$31

$70

$102

How much do web application security engineer jobs pay per hour?

As of Sep 11, 2026, the average hourly pay for web application security engineer in Portland, OR is $70.42, according to ZipRecruiter salary data. Most workers in this role earn between $59.90 and $80.05 per hour, depending on experience, location, and employer.

What is a web application security engineer?

A Web Application Security Engineer is a specialist responsible for protecting web applications from security threats and vulnerabilities. They analyze code, perform security testing, and implement measures to safeguard applications against attacks like SQL injection, cross-site scripting (XSS), and data breaches. Their work involves collaborating with developers to design secure systems, monitoring for security incidents, and staying updated on the latest cybersecurity trends and threats. Ultimately, they help ensure the confidentiality, integrity, and availability of web-based applications.

How does a web application security engineer typically collaborate with development teams to ensure secure coding practices?

Web Application Security Engineers work closely with software developers throughout the software development lifecycle, often participating in design reviews, code audits, and threat modeling sessions. They provide guidance on secure coding standards, identify potential vulnerabilities early, and recommend remediation strategies. Regular communication and knowledge sharing, such as conducting security training or workshops, help foster a security-first mindset across the team. This collaborative approach ensures that security is integrated from the outset rather than added as an afterthought.

What are the key skills and qualifications needed to thrive as a web application security engineer, and why are they important?

To thrive as a Web Application Security Engineer, you need a solid understanding of web technologies, application vulnerabilities (such as OWASP Top 10), and a background in computer science or cybersecurity. Familiarity with security testing tools like Burp Suite, Nessus, and proficiency in secure coding practices or relevant certifications such as CEH or OSCP are typically required. Outstanding problem-solving skills, attention to detail, and effective communication help in identifying, mitigating, and explaining security risks. These skills and qualities are essential to protect applications from cyber threats and ensure the integrity and confidentiality of sensitive data.
Infographic showing various Web Application Security Engineer job openings in Portland, OR as of August 2026, with employment types broken down into 76% Full Time, 20% Part Time, and 4% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $146,473 per year, or $70.4 per hour.

Information Security Engineer

Beaverton, OR • Hybrid

Concora Credit Inc.
Finance and Insurance • 501 - 1,000 employees

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted yesterday


Concora Credit rating

7.8

Company rating: 7.8 out of 10

Based on 6 frontline employees who took The Breakroom Quiz


Job description

As our Information Security Engineer, you’ll help drive Concora Credit’s Mission to enable customers to Do More with Credit – every single day.

The impact you’ll have at Concora Credit:

You’ll work as part of an IT Information Security Team in an agile environment. This individual contributor position is a technical, hands-on role. Your focus will be on information security systems administration, implementation support, system monitoring, best practice guidance, and security operations support. 

We hire people, not positions. That's because, at Concora Credit, we put people first, including our customers, partners, and Team Members. Concora Credit is guided by a single purpose: to help non-prime customers do more with credit. Today, we have helped millions of customers access credit. Our industry leadership, resilience, and willingness to adapt ensure we can help our partners responsibly say yes to millions more. As a company grounded in entrepreneurship, we're looking to expand our team and are looking for people who foster innovation, strive to make an impact, and want to Do More! We’re an established company with over 20 years of experience, but now we’re taking things to the next level. We're seeking someone who wants to impact the business and play a pivotal role in leading the charge for change.


As our Information Security Engineer, you will:

  • Identify new and novel ways to address information security challenges in the Concora Credit environment and develop secure solutions for new and existing systems that align with organizational security standards, regulatory requirements, and business goals.
  • Collaborate on the design, implementation, and optimization of enterprise security controls across on-prem, cloud, and hybrid environments. 
  • Evaluate, select, and deploy new security technologies; lead Proof of Concepts (POCs) and drive vendor assessments to support strategic security initiatives. 
  • Collaborate with architecture, DevOps, and IT operations teams to deploy and operate new solutions and embed security early in the system and application life cycle. 
  • Establish and maintain security baseline configurations, hardening standards, and technical policies across endpoints, servers, networks, and cloud services. 
  • Provide input into enterprise security strategies, roadmaps, and risk mitigation plans. 
  • Manage security system projects, ensuring timely delivery, technical quality, and cross-team alignment. 
  • Demonstrate and champion the use of automation and scripting capabilities to deploy, manage, and maintain information security capabilities.   
  • Maintain awareness and knowledge of contemporary security laws, standards, practices, and methods. 
  • Participate as a member of the Concora Credit Incident Response Team. 
  • Assist with the collection of data and maintenance of systems that support our ongoing compliance activities.  
  • Other duties as assigned. 

These duties must be performed with or without reasonable accommodation.

We know experience comes in many forms and that many skills are transferable. If your experience is close to what we're looking for, consider applying. Diversity has made us the entrepreneurial and innovative company that we are today.


Requirements:

  • Bachelor's degree or equivalent work experience with a minimum of 2 years' experience in information security, systems engineering, or a related role.
  • Working knowledge of information security control technologies, including EDR, access control, cryptography, vulnerability management, SIEM/log management, IDS/IPS, DLP, cloud security, and more. 
  • Working knowledge of network protocols, desktops, laptops, DNS, and networking devices - servers, routers, VPNs, proxies, firewalls. 
  • Working knowledge of Azure, Entra, and Microsoft server and security products. 
  • Proven capability to take ownership of delegated initiatives with limited initial direction, using sound judgment to clarify scope, drive progress, and act as a trusted representative of the team. 
  • Demonstrated ability to translate security and compliance requirements into practical, business-aligned solutions that manage risk without unnecessarily impeding operations. 
  • Strong written and verbal communication and presentation skills, including the ability to discuss technical topics with a non-technical audience. 

Preferred Qualifications: 

  • Experience building and supporting information technology systems, specifically those used to perform information security functions or integrations.  
  • Strong CLI and scripting language experience (PowerShell strongly preferred)
  • Working knowledge of security frameworks such as NIST, ISO/IEC 27000 series, PCI-DSS, FedRamp, and CSA. 
  • Working knowledge of security architecture for cloud/hybrid systems, specifically Azure. 
  • Excellent conceptualization, analytical, logical, and documentation skills. 
  • Experience in the financial services or servicing operations sectors is desirable. 

What’s In It For You:

  • Medical, Dental and Vision insurance for you and your family
  • Relax and recharge with Paid Time Off (PTO)
  • 6 company-observed paid holidays, plus 3 paid floating holidays
  • 401k (after 90 days) plus employer match up to 4%
  • Pet Insurance for your furry family members
  • Wellness perks including onsite fitness equipment at both locations, EAP, and access to the Headspace App
  • We invest in your future through Tuition Reimbursement
  • Save on taxes with Flexible Spending Accounts
  • Peace of mind with Life and AD&D Insurance
  • Protect yourself with company-paid Long-Term Disability and voluntary Short-Term Disability

Concora Credit provides equal employment opportunities to all Team Members and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Employment-based visa sponsorship is not available for this role.

Concora Credit is an equal opportunity employer (EEO).

Please see the Concora Credit Privacy Policy for more information on how Concora Credit processes your personal information during the recruitment process and, if applicable, based on your location, how you can exercise your privacy rights. If you have questions about this privacy notice or need to contact us in connection with your personal data, including any requests to exercise your legal rights referred to at the end of this notice, please contact caprivacynotice@concoracredit.com.


What Concora Credit employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom