
Application Security Engineer
Posted Jul 28

Posted Jul 28
This is a fully remote position, open to applicants in United States.
• Collaborate closely with engineering and product teams to implement security initiatives across applications, cloud infrastructure, and internal platforms.
• Design, evaluate, and continuously refine secure architectures based on secure-by-design principles.
• Work alongside Product Managers, Software Engineers, Architects, and DevOps teams to incorporate security into development workflows and product lifecycles.
• Evaluate the implementation of security controls across cloud environments, applications, and CI/CD pipelines, ensuring adherence to security best practices.
• Create, uphold, and advocate for security standards, policies, and technical controls to safeguard systems and infrastructure.
• Develop and enhance automated threat modeling capabilities to facilitate secure software development.
• Contribute to architecture reviews and technical planning by offering security guidance throughout the software development lifecycle.
• Assist in cloud transformation efforts by ensuring secure migration of applications and infrastructure from on-premises environments.
• Serve as a trusted security partner for engineering teams, identifying risks and suggesting practical mitigation strategies.
• Demonstrated experience integrating security tools and automated security controls into contemporary CI/CD workflows.
• Practical experience in securing applications and microservices developed with JavaScript and TypeScript.
• Strong knowledge of CI/CD platforms along with Infrastructure-as-Code technologies such as Terraform, Helm, CloudFormation, or similar tools.
• Proficient in scripting or automation using Python and/or Shell.
• Solid understanding of software supply chain security, secure build pipelines, software integrity, and release security practices.
• Hands-on experience with Docker, container technologies, and service mesh solutions like Istio.
• Capability to conduct security architecture reviews, threat modeling exercises, and application security assessments.
• Experience in Agile software development teams.
• Familiarity with recognized security frameworks and compliance standards, including PCI DSS, ISO 27001, NIST, or similar.
• Knowledge of data protection and privacy regulations such as GDPR is considered an asset.
• Experience securing Kubernetes-based environments is a plus.
• Experience in designing secure solutions for AWS and/or hybrid or on-premises infrastructure is desirable.
• Industry certifications such as CISSP, CISM, CCSP, CCSK, CEH, or equivalent are viewed favorably.
• Proficiency in English at an upper-intermediate level or higher.
• 24 days of annual leave plus paid sick leave.
• Private health insurance and a sports & wellbeing allowance.
• Recognition gifts for significant life milestones.
• Learning & development budget for courses, certifications, and conferences.
• Regular team events and company gatherings.
• Clear opportunities for career advancement within a rapidly growing business.
• Company-supported language learning.
Henkel
Pepperl+Fuchs Group
Win Systems
Intel Corporation
Get handpicked remote jobs straight to your inbox weekly.