AppFolio

62 Appfolio Application Security Engineer Jobs Hiring Near You

Application Security Engineer

$60.25 - $80.25/hr

They are seeking an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems and identify ...

Application Security Engineer

Washington, DC · On-site

$66.50 - $89/hr

Cloud application security engineering * Docker and Kubernetes security * Infrastructure as Code (Terraform) * CI/CD pipeline security integration * Identity management, encryption, and access ...

$63.50 - $85/hr

Application Security Engineer Apply now Application Security Engineer Be the spark that brightens days and ignite your career with TTECs award-winning employment experience. As an Application ...

Application Security Engineer

Tampa, FL · Remote

$55.50 - $74.25/hr

Application Security Engineer Year/Option : 1/5 Duration of the Contract : 1+ years Job Locations: 100% Remote Huntsville, AL * They will need to meet the following requirements. Burp and Veracode ...

$45.25 - $60.50/hr

We are currently looking for a Application Security Engineer in Netherlands. This role sits at the intersection of software engineering and cybersecurity, focusing on strengthening the security ...

New

Application Security Engineer

OR · Remote

$80K - $110K/yr

As an Application Security Engineer you will perform application security testing on web applications, mobile applications, microservices, infrastructure code, and open source code in order to expose ...

OR

$58.75 - $78.50/hr

Fragomen is seeking a Security Engineer - Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh. Our industry-leading, immigration specific ...

Application Security Engineer

$60.25 - $80.25/hr

Responsibilities The Application Security Engineer plays a crucial role in securing our growing portfolio of applications. This role will focus on integrating security best practices into the ...

Application Security Engineer

Herndon, VA · On-site

$60.25 - $80.75/hr

They are seeking a highly skilled and innovative Application Security Engineer to define security strategies, lead threat modeling, and manage application vulnerabilities for the Army National Guard.

Application Security Engineer

Salt Lake City, UT · On-site +1

$56.75 - $76/hr

Application Security Engineer About the Role Packsize is seeking an experienced Application Security Engineer to champion secure software development across our technology stack. You will collaborate ...

Application Security Engineer

San Francisco, CA · On-site

$69.25 - $92.50/hr

We're hiring an Application Security Engineer to own security across Opal's product and platform - and yes, own means what it sounds like. You'd be our dedicated security engineer, embedded directly ...

Application Security Engineer

Washington, DC · On-site

$66.50 - $89/hr

Cloud application security engineering * Docker and Kubernetes security * Infrastructure as Code (Terraform) * CI/CD pipeline security integration * Identity management, encryption, and access ...

Application Security Engineer

OR · Remote

$58.75 - $78.50/hr

Application Security Engineer Location: Remote (United States) | Employment Type: Full-Time About the Role We are looking for an Application Security Engineer to join our product engineering team.

Showing results 21-40

AppFolio Jobs Information

What are the key skills and qualifications needed to thrive as an Application Security Engineer, and why are they important?

To thrive as an Application Security Engineer, you need a solid background in software development, cybersecurity fundamentals, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing frameworks, and relevant certifications like CISSP or CEH is common. Attention to detail, problem-solving abilities, and strong communication skills help you effectively identify risks and collaborate with development teams. These skills are crucial for safeguarding applications against evolving threats and ensuring secure software delivery.

What are some common challenges faced by Application Security Engineers when integrating security into the software development lifecycle?

Application Security Engineers often encounter challenges such as balancing security requirements with development speed, ensuring all team members understand secure coding practices, and keeping up with evolving threats. They frequently work closely with developers, DevOps, and QA teams to embed security controls without disrupting workflows. Overcoming these challenges requires strong communication skills, a deep understanding of both security and software development, and the ability to advocate for security as a shared responsibility across the organization.

What does an Application Security Engineer do?

An Application Security Engineer is responsible for identifying and mitigating security vulnerabilities in software applications throughout their development lifecycle. They work closely with developers to ensure secure coding practices, conduct security assessments and code reviews, and implement tools for threat detection and prevention. Their primary goal is to protect applications from threats such as data breaches, unauthorized access, and other forms of cyber attacks. They also stay updated on the latest security trends and compliance requirements to keep applications safe.

What is the difference between Application Security Engineer vs Security Analyst?

AspectApplication Security EngineerSecurity Analyst
CertificationsCEH, CISSP, OSCPCISSP, Security+
Work EnvironmentDevelops security measures, reviews code, tests applicationsMonitors security systems, investigates incidents, analyzes threats
Industry UsageTech companies, software firms, organizations with strong app focusBroad sectors including finance, healthcare, government

Application Security Engineers focus on securing software applications through code review, vulnerability testing, and implementing security measures. Security Analysts monitor and analyze security threats, respond to incidents, and maintain security systems. While both roles require security certifications and work in security-focused environments, Application Security Engineers are more involved in the development and testing of secure applications, whereas Security Analysts focus on threat detection and incident response.

What other companies are hiring for Application Security Engineer jobs?
What are the most popular categories at Appfolio?
Infographic showing various Application Security Engineer job openings at Appfolio in the United States as of May 2026, with employment types broken down into 100% Full Time. Highlights an 79% Physical, 7% Hybrid, and 14% Remote job distribution.

$60.25 - $80.25/hr

Full-time

Posted 11 days ago


Job description

Job Summary:
Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their operations. They are seeking an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems and identify vulnerabilities.
Responsibilities:
• Conduct threat modeling and security architecture reviews for new and existing applications and services
• Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components
• Operate and tune SAST, DAST, IAST, SCA, and secret-scanning tools across CI/CD pipelines
• Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking
• Build paved-road libraries and frameworks that make secure patterns the default for engineering teams
• Lead red-team and purple-team exercises against internal applications and drive remediation of identified weaknesses
• Implement and operate runtime protections including WAF, RASP, bot protection, and abuse-detection mechanisms
• Design and enforce secure authentication, authorization, session management, and cryptographic patterns
• Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments
• Develop and deliver application security training, lunch-and-learns, and onboarding content for engineering staff
• Respond to security incidents involving application vulnerabilities or active exploitation
• Track and apply emerging threats and CVEs that may affect the application portfolio
• Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures — so that the system remains supportable, auditable, and easy to onboard new engineers onto over time
• Stay current with application security research and emerging defensive tooling
Qualifications:
Required:
• Bachelor’s degree in Computer Science, Cybersecurity, or a related field
• Five or more years of application security or security engineering experience
• Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns
• Hands-on experience performing code review across at least two major languages
• Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling
• Strong understanding of authentication, authorization, and cryptographic primitives
• Experience with cloud security and modern infrastructure controls
• Strong communication skills with technical and non-technical audiences
• Proficiency in at least one programming language for tooling and automation
• Experience working closely with engineering teams in an Agile environment
Preferred:
• Industry certifications such as OSCP, OSCE, GWAPT, or CISSP
• Experience with offensive security tooling and red-team operations
• Bug bounty experience, public CVEs, or open-source security contributions
• Familiarity with AI/LLM application security considerations
• Exposure to regulated industries with strict compliance requirements
Company:
Bright Vision Technologies is an information technology company that offers software development, AI, and cybersecurity services. Founded in 2020, the company is headquartered in Bridgewater, USA, with a team of 51-200 employees. The company is currently Growth Stage.