Engineer, Cybersecurity
Job in
Charlotte, Mecklenburg County, North Carolina, 28245, USA
Listed on 2026-08-15
Listing for:
Judge Group, Inc.
Full Time
position Listed on 2026-08-15
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Senior Lead Application Security Engineer (App Sec SME) - AI & DCMS Security
We are not accepting C2C or 1099 arrangements.
Location: Charlotte, NC (Hybrid)
Employment Type: Contract
Vendor Opportunities: TEKsystems, Judge Group, Experis, Dexian, Motion Recruitment, Innova Solutions
About the Role
We are seeking a Senior Lead Application Security Engineer (App Sec SME) to lead the Application Security strategy supporting the Data Center Modernization and Simplification (DCMS) program. This role combines deep technical expertise with strategic leadership to strengthen enterprise application security, drive modernization initiatives, and implement innovative AI-powered security solutions.
The ideal candidate will have extensive experience in Application Security, Secure Software Development Lifecycle (SSDLC) practices, Dev Sec Ops , and emerging AI/GenAI security technologies. This individual will partner with engineering, architecture, development, and security teams to reduce risk, improve security posture, and enable secure software delivery at enterprise scale.
Key Responsibilities
Application Security Strategy & Governance
- Define and execute the Application Security strategy for DCMS applications using risk-based and tiered control frameworks.
- Assess existing Application Security controls and establish baseline security requirements across application portfolios.
- Identify security gaps and develop remediation roadmaps in partnership with application owners and technical stakeholders.
- Collaborate with Application Security Champions, development teams, and engineering leaders to drive adoption of security controls.
- Ensure compliance with enterprise Secure Software Development Lifecycle (SSDLC) standards and vulnerability remediation requirements.
- Establish metrics, reporting, and governance processes to measure security effectiveness and program maturity.
- Identify, design, and implement AI-driven security solutions that improve coverage, efficiency, and risk reduction.
- Develop automated threat modeling capabilities leveraging source code, infrastructure-as-code (IaC), architecture data, and application metadata.
- Lead security assessments and adversarial testing of GenAI and Large Language Model (LLM) applications.
- Design defenses against prompt injection, model abuse, unauthorized tool usage, data leakage, and secrets exposure.
- Evaluate and implement AI model scanning, integrity validation, and secure model onboarding processes.
- Research emerging AI security threats and apply best practices to enterprise environments.
- Drive modernization initiatives through security automation, tool integration, and process optimization.
- Build proof-of-concepts (POCs) and pilot programs to evaluate emerging security technologies.
- Scale successful security solutions across enterprise environments.
- Improve developer experience by simplifying security processes while maintaining strong risk management controls.
- Advance Dev Sec Ops capabilities through seamless integration with CI/CD pipelines and developer workflows.
- Serve as a trusted security advisor to senior technology and business leaders.
- Provide recommendations on Application Security priorities, investments, and risk management strategies.
- Lead cross-functional initiatives and influence stakeholders without direct reporting authority.
- Mentor engineering teams on secure design principles and security best practices.
- Translate emerging technologies, threat intelligence, and industry trends into actionable security strategies.
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or related field, or equivalent practical experience.
- 7+ years of experience in Application Security, Cybersecurity Engineering, or Information Security Engineering within large-scale enterprise environments.
- Strong expertise in Secure Software Development Lifecycle (SSDLC) methodologies and controls.
- Hands-on experience with:
- Threat Modeling
- Secure Architecture and Secure Design Reviews
- Static Application Security Testing (SAST)
- Software Composition Analysis (SCA)
- Dynamic Application Security Testing (DAST)
- Penetration Testing
- Vulnerability Management
- Proven experience developing and implementing enterprise security strategies.
- Strong stakeholder management and leadership skills with the ability to drive outcomes through influence.
- Experience working in Agile and Dev Sec Ops environments.
- Experience securing Generative AI (GenAI) and Large Language Model (LLM) applications.
- Expertise in adversarial AI testing, prompt injection mitigation, and AI security frameworks.
- Experience building AI-enabled security automation and intelligent security workflows.
- Strong understanding of CI/CD pipeline security and cloud-native application security.
- Experience with in highly regulated…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×