Application Security Engineer
SYSTEMTEC is seeking an Application Security Engineer for a Direct Hire opportunity for a mission-driven organization. This role is purpose-built for someone who thrives at the intersection of development and security, turning code into a competitive advantage rather than a vulnerability. This role is remote working CST hours.
Required Skills of the Application Security Engineer:
- 4+ years in application security or similar role securing production applications
- Deep understanding of OWASP Top 10 and common application vulnerabilities
- Hands-on experience with SAST tools (Checkmarx, SonarQube, Fortify), DAST tools (Burp Suite, OWASP ZAP), and dependency scanning (Snyk, Dependabot)
- Proficient in at least one programming language (Python, JavaScript, or PHP preferred); comfortable reviewing code for security issues
- Experience securing applications in AWS, GCP, or DigitalOcean
- Working knowledge of Git, containerization (Docker/Kubernetes), and CI/CD pipelines (GitLab, GitHub Actions)
- Understanding of API security, authentication/authorization patterns (OAuth, JWT), and API gateway configurations
- Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent experience and certifications)
Duties and Responsibilities of the Application Security Engineer:- Integrate security testing (SAST, DAST, SCA) into CI/CD pipelines
- Conduct threat modeling, design reviews, and architecture assessments
- Perform code reviews for security flaws and penetration testing on web applications and APIs
- Develop security patterns and tools that help developers build securely by default
- Train developers on secure coding practices and OWASP Top 10
- Secure containerized applications, Kubernetes deployments, and microservices across AWS/GCP
- Implement secrets management, encryption strategies, and data protection controls
- Investigate application-layer security incidents and implement preventative controls
Work Location:Â REMOTE. CST hours.
Compensation/Benefits: Direct Hire with client
***Please note:Â SYSTEMTEC is not set up to employ workers in the states of California, New York, and New Jersey.***