1

Web Application Security Jobs (NOW HIRING)

In-depth knowledge of web application security vulnerabilities, such as OWASP Top 10, and experience with secure coding practices and solutions (DAST, penetration testing, WAF's). * Experience with ...

In-depth knowledge of web application security vulnerabilities, such as OWASP Top 10, and experience with secure coding practices and solutions (DAST, penetration testing, WAF's). * Experience with ...

Application Security Engineer

Torrance, CA · On-site

$61.25 - $82/hr

Strong knowledge of secure development practices Deep knowledge of common web application vulnerabilities (e.g. XSS, CSRF, clickjacking) and their mitigation strategies Knowledge of system security ...

OR

$58.75 - $78.50/hr

Fragomen is seeking a Security Engineer - Application Security to join our talented Cyber Security ... Demonstrated understanding of web application penetration testing, secure coding and source code ...

As a Senior Web Application Developer, you will be responsible for designing, testing, and ... Implement security measures to protect web applications from vulnerabilities * Optimize web ...

... security best practices to safeguard applications against vulnerabilities. • Optimize ... web application security principles. • Proven experience developing complex web applications in ...

Application Security Engineer- Remote

$60.25 - $80.25/hr

Interpret and triage results from web application assessments * Assess Azure and AWS cloud offerings to ensure usage aligns with security best practices * Assess applications for potential migration ...

Application Security Analyst

Auburn Hills, MI · On-site

$55.50 - $74.25/hr

Lead Web Application Firewall (WAF) deployment for new and existing apps * Implement application security policies, controls, and standards Collaboration & Enablement * Partner with development ...

Lead Application Security Engineer

San Francisco, CA · On-site

$69.25 - $92.50/hr

Responsibilities : • Own application security across Ivo's web app, API surface, and the systems behind them. • Find and fix bugs. Hunt for vulnerabilities in our own product through hands-on ...

Application Security Engineer

$60.25 - $80.25/hr

EC-Council Certified Application Security Engineer (C|ASE), (ISC)2 Certified Secure Software Lifecycle Professional (CSSLP), GIAC Web Application Penetration Tester (GWAPT) • Experience testing web ...

next page

Showing results 1-20

Web Application Security information

See salary details

$22K

$98.5K

$153K

How much do web application security jobs pay per year?

As of Jun 7, 2026, the average yearly pay for web application security in the United States is $98,514.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,000.00 and $119,500.00 per year, depending on experience, location, and employer.

What is the difference between Web Application Security vs Web Developer?

AspectWeb Application SecurityWeb Developer
Primary FocusProtecting web applications from security threats and vulnerabilitiesDesigning, coding, and maintaining websites and web applications
Required SkillsSecurity protocols, vulnerability assessment, penetration testingProgramming languages, UI/UX design, front-end/back-end development
CertificationsCertified Ethical Hacker, CSSLP, OSCPCertified Web Developer, Microsoft Certified, JavaScript certifications
Work EnvironmentSecurity teams, IT departments, cybersecurity firmsWeb development agencies, tech companies, freelance

Web Application Security and Web Developer roles overlap in the tech industry but focus on different aspects. Web Application Security specialists concentrate on safeguarding applications from threats, while Web Developers build and maintain the applications themselves. Both roles require technical skills, but their core responsibilities differ significantly, making them complementary in the web development lifecycle.

What cities are hiring for Web Application Security jobs? Cities with the most Web Application Security job openings:
What states have the most Web Application Security jobs? States with the most job openings for Web Application Security jobs include:
Infographic showing various Web Application Security job openings in the United States as of May 2026, with employment types broken down into 75% Full Time, and 25% Contract. Highlights an 50% In-person, and 50% Remote job distribution, with an average salary of $98,514 per year, or $47.4 per hour.

Application Security Analyst

Corporate Services

Detroit, MI • On-site

Other

Posted 28 days ago


Job description

GENERAL SUMMARY: 

The Web Application Security Analyst is a key member of the Application Security Service Team supporting the Web Application Security team by processing results and reports from security scanning tools, formalizing findings, tracking results, and coordinating with developers to ensure code vulnerabilities are remediated. The role contributes to the organization's application security posture by managing vulnerability tracking and reporting metrics to management. Although the position is technical by nature, champions policies, processes, and procedures to enable secure controls for implemented applications that meet best practice and regulatory standards. The Web Application Security Analyst reports to the Director of Application Security Services. This position will work in a collaborative effort within the Information Privacy and Security Office and application developers to ensure software development life cycle policies, standards and controls are followed. 

KEY ROLES AND RESPONSIBILITIES:

  • Processing and formalizing security scan results and reports from tools; tracking vulnerability findings.
  • Following up with developers to ensure code fixes are implemented; producing monthly KPI reports and performance charts for management
  • Monitoring and maintaining security scanning tools; attending project meetings to represent the application security team.

EDUCATION/EXPERIENCE REQUIRED: 

  • Bachelor's degree in business, Information Technology, Cybersecurity, or related field required. 
  • Minimum five (5) years experience Web Application development experience in designing and implementing software systems, building mission-critical and highly reliable software required. 
  • Exceptional understanding in mitigating OWASP Top 10 attacks on web applications/services, cryptography, key management, PKI, TLS/SSL, DDoS mitigation, authentication, authorization, and/or general web application security.
  •  Strong understanding of secure/rugged engineering concepts such as secure coding practices and secure code reviews used to identify, mitigate, and prevent threat vectors. Understanding of vulnerability management lifecycle and process. 
  • Strong understanding of security architecture and tools which can be leveraged for Application Security mitigation. 
  • Experience with Security Assessment Toolsets and manually test and validate reported vulnerabilities.
  •  Strong Knowledge of relational databases, structured query language, and client/server relationships in multi-tier environments. 
  • Ability to communicate clearly and concisely to drive change through verbal and written communication. 
  • Cyber security risk management experience, e.g., conducting assessments, identifying risks, and recommending solutions.
Additional Information
  • Organization: Corporate Services
  • Department: Ascension Info_Network Scrty
  • Shift: Day Job
  • Union Code: Not Applicable