Full-Time Senior Application Security Engineer
Daxko is hiring a remote Full-Time Senior Application Security Engineer. The career level for this job opening is Senior Manager and is accepting Birmingham, AL based applicants remotely. Read complete job description before applying.
Daxko
Job Title
Posted
Career Level
Career Level
Locations Accepted
Salary
Share
Job Details
Secure Our Applications: Partner with software engineering teams to integrate security best practices into the SDLC.
Identify & Fix Vulnerabilities: Conduct security assessments, code reviews, and penetration testing using SAST, DAST, and SCA tools.
Stay Ahead of Threats: Monitor emerging security threats and implement proactive defenses to safeguard sensitive customer data.
Enhance CI/CD Security: Maintain and improve security tools and processes within CI/CD pipelines for scalable security enforcement.
Investigate & Respond: Assist in security incident response, mitigating risks and strengthening prevention strategies.
Educate & Mentor: Guide developers on secure coding practices and foster a security-first culture.
Document & Communicate: Maintain detailed security documentation and provide regular updates to leadership.
What We’re Looking For:
- A security expert with deep knowledge of application security principles and best practices.
- A collaborative partner who can work with developers, product managers, and leadership to align security goals.
- A proactive problem-solver who anticipates threats and designs solutions before issues arise.
- A technical mentor who enjoys educating teams on secure coding and security awareness.
- A detail-oriented professional with strong analytical and documentation skills.
Must-Have Skills & Experience:
- 5+ years of experience in application security or a related field.
- Strong programming skills in multiple languages (e.g., C#, Java, Python, JavaScript).
- Proficiency with security tools like SAST (Snyk, Checkmarx, SonarQube), DAST (OWASP ZAP, Burp Suite), and SCA (Snyk, Dependabot).
- Experience securing CI/CD pipelines (e.g., Jenkins, GitLab, Azure DevOps).
- Familiarity with cloud environments (AWS, Azure) and cloud-native security practices.
- Knowledge of security frameworks (OWASP Top 10, NIST, ISO 27001).
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
Nice-to-Haves:
- 8+ years of experience in security, software development, or a related field.
- Professional certifications such as CISSP, CISM, CEH, or similar.
- Experience working with non-profits, fitness centers, or membership-based organizations.