More jobs:
Application Security Engineer
Job in
Englewood, Arapahoe County, Colorado, 80151, USA
Listed on 2026-06-18
Listing for:
Compunnel, Inc.
Full Time
position Listed on 2026-06-18
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, Data Security
Job Description & How to Apply Below
The Application Security Engineer will play a critical role in safeguarding web, mobile, and backend systems from vulnerabilities and malicious activity. This role involves deep technical testing, fraud detection, and integration with development teams to build secure-by-design solutions. It combines security expertise with hands-on experience in modern technologies, including wireless protocols, APIs, automation, and threat detection tools.
Job Responsibilities:
- Perform application security testing on front-end web and mobile apps.
- Collaborate with GraphQL and backend teams to secure APIs and data flow.
- Analyze wireless domain components like eSIMs for telecom-specific vulnerabilities.
- Investigate fraud risks in business logic through detailed scenario testing.
- Conduct adversarial testing with a hacker's mindset to simulate abuse cases.
- Simulate social engineering breaches to test internal defenses.
- Monitor and analyze data traffic to identify potential security gaps.
- Create, document, and maintain security policies, procedures, and training materials.
- Implement industry best practices for secure software development.
- Conduct gap analysis to ensure alignment with standards and compliance requirements.
- Continuously evaluate and enhance security posture in response to emerging threats.
- Automate security checks using BDD frameworks and CI/CD pipelines.
Hands-on experience with:
- App Security Testing: OWASP ZAP, Burp Suite, MobSF, Appium, Selenium, Charles Proxy
- API Security:
GraphQL, JWT, OAuth 2.0, API Gateway, Kong - Wireless/Telecom: eUICC, GSMA, Wireshark, QXDM, QCAT
- Social Engineering Simulation: SET, Gophish, OSINT tools
- Monitoring/Data Flow:
Wireshark, tcpdump, Fiddler - Security Standards: NIST, ISO 27001, CIS Benchmarks
- Best Practices: OWASP ASVS, Jenkins, Git Hub Actions, Snyk, Sonar Qube
- Gap Analysis:
Nessus, OpenVAS, Qualys, RSA Archer
Skills:
- Experience in fraud management tools (e.g., Actimize, SAS)
- Familiarity with Dev Sec Ops pipelines and secure SDLC frameworks
- Exposure to CVE analysis and threat intelligence platforms (e.g., Recorded Future, MISP)
Security certifications such as OSCP, CEH, GWAPT, or CISSP (preferred but not mandatory)
Education:
Bachelor’s degree in computer science, Cybersecurity, or a related field
#J-18808-LjbffrTo View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×