← Back to jobs

Remote job

Application Security Engineer AppSec

Other Full-time Permanent Worldwide

Job details

Not specified Salary
Worldwide Eligibility
Not specified Experience
Full-time Employment

About this role

Role overview An application security engineer embedded with engineering teams to secure web applications, APIs, and backend services. The role brings security into design, development, testing, and release workflows while coordinating with mobile stakeholders on cross-platform risks. It also carries ownership of secure SDLC evidence for regulatory compliance frameworks.

Responsibilities - Perform security reviews, code reviews, and testing for web applications, APIs, and backend services - Identify, prioritize, and help remediate injection, broken access control, authentication, and configuration vulnerabilities - Integrate SAST, DAST, software composition analysis, and secrets scanning into CI/CD pipelines - Conduct threat modeling and design reviews for features, APIs, third-party integrations, and major changes - Coordinate with mobile engineers on cross-platform findings and on backend controls that protect native iOS and Android clients - Own application security implementation for SC TRM and BNM RMiT, including secure SDLC evidence, vulnerability management, testing, and audit remediation - Provide secure coding guidance, track remediation, retest fixes, and raise developer security awareness

Requirements - Degree in Computer Science, Cybersecurity, or a related discipline, or equivalent experience - 3+ years in application security, penetration testing, or secure software development - Experience implementing and owning SC TRM and BNM RMiT application security and secure SDLC requirements - Strong understanding of the OWASP Top 10, OWASP API Security Top 10, common web vulnerabilities, API security, and secure design principles - Hands-on experience with Burp Suite, OWASP ZAP, SAST, DAST, and dependency scanning tools - Experience reviewing TypeScript/Node.js and Python services, with familiarity in Swift, Kotlin, AWS, and GCP - Ability to work closely with developers, explain findings clearly, and support remediation end-to-end

Skills detected in the listing

TypeScriptJavaScriptNode.jsPythonSwiftKotlinStakeholder ManagementInformation SecurityAWSGCP
Detected Sep 29, 2026
Last verified Sep 29, 2026

Hidden Jobs Access

Unlock application links

Read the full job details for free. An active Hidden Jobs Access subscription is required to open the original application link.

Weekly

FREE $6.99/week after trial
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
  • Cancel anytime before day 7

Monthly

$35.99 $17.99 /month
  • 35% cheaper than weekly
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching

Lifetime

$99.99 $49.99 /forever
  • One-time payment
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
Hidden Jobs gives subscribers direct access to original application links
Offer ends in 00:00:00 Your profile-fit rate expires at midnight