More jobs:
Senior Application Security Engineer
Job in
Pueblo, Pueblo County, Colorado, 81004, USA
Listed on 2026-09-08
Listing for:
Jobtailor
Full Time
position Listed on 2026-09-08
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
- Define, implement, and continuously improve application security processes, standards, and workflows throughout the SDLC
- Perform AI-assisted and traditional security assessments of applications, APIs, cloud workloads, repositories, and supporting infrastructure
- Manage source code analysis, secret scanning, dependency analysis, and infrastructure review coverage
- Triage findings by exploitability, business impact, and severity
- Drive remediation from discovery through verified closure, including backlog management, ownership assignment, retesting, and evidence collection
- Identify and reduce security debt, dependency vulnerabilities, outdated libraries, and software supply chain risk
- Build security metrics, coverage reporting, and executive dashboards
- Leverage AI tools for security analysis, threat modeling, code review, and documentation under governance controls
- Perform manual validation and security testing using Burp Suite, browser developer tools, API testing platforms, and secure code review methodologies
- Apply OWASP Top 10, API Security Top 10, authentication, authorization, and secure coding principles
- Support remediation through code fixes, configuration changes, and compensating controls
- Partner with architects, developers, Dev Ops engineers, product owners, and business stakeholders to communicate risk, negotiate priorities, and remove blockers
- Maintain Agile work items and participate in Scrum ceremonies
- Stay current on emerging threats and AI-related security risks
- Coach and mentor application teams to build a security-first culture
- Bachelor's and/or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent practical experience)
- 5–7 years of hands‑on application security / Dev Sec Ops experience
- Strong working understanding of Secure SDLC, Dev Sec Ops , Agile, and Scrum methodologies
- Experience with Burp Suite, Git Hub Advanced Security, CodeQL, SAST, SCA, secret scanning, dependency analysis, and CI/CD security tooling
- Ability to read, analyze, test, and modify production application code in Java and Python
- Knowledge of OWASP Top 10, API Security Top 10, authentication/authorization controls, and secure coding principles
- Familiarity with cloud security, identity and access management, and modern application architectures
- Experience using AI‑assisted development and security tools safely and effectively
- Skilled in vulnerability triage and validation, including exploitability, business impact, severity, compensating controls, and security metrics/dashboards
- Excellent communication, stakeholder management, presentation, and documentation skills
- Ability to work independently across multiple applications, teams, portfolios, and technology stacks
- Strong problem‑solving mindset balancing security, usability, and business objectives
- Collaborative and influential, able to negotiate priorities and remove blockers across teams
- Comfortable coaching others and championing a security‑first culture
Demonstrates expertise in Application Security and Dev Sec Ops , with a strong focus on Secure SDLC, vulnerability management, and the application of OWASP and API Security principles. Proficient in leveraging AI tools for security analysis and maintaining effective communication with cross‑functional teams to foster a security‑first culture.
Highest-signal resume keywords- Application Security
- Dev Sec Ops
- Secure SDLC
- Burp Suite
- Vulnerability Triage
- Java
- Python
- SAST
- SCA
- Secret Scanning
- Dependency Analysis
- CI/CD Security Tooling
- Security Metrics
- Threat Modeling
- Secure Coding Principles
- Excellent Communication
- Stakeholder Management
- Problem‑Solving Mindset
- Collaborative
- Coaching
- Bachelor's Degree in Computer Science
- Master's Degree in Cybersecurity
- Information Systems Certification
- Agile
- Scrum
- OWASP Top 10
- API Security Top 10
- Cloud Security
- Identity and Access Management
- Burp Suite
- Git Hub Advanced Security
- CodeQL
- AI-Assisted Development Tools
- API Testing Platforms
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×