Packsize

Smart Packaging for a Healthy Planet®

Senior Application Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteTeam 501-1,000Since 2002H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

3 days ago

Salary

Not specified

Application SecuritySDLCSASTDASTCi/cdOWASP Top 10Threat ModelingVulnerability ManagementSecure CodingSCA

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

We are seeking a skilled Developer Security Operations Engineer to join our security team and help integrate security best practices throughout the software development lifecycle (SDLC). This role focuses on embedding security into development processes, managing secure coding standards, and collaborating with engineering teams to ensure applications are resilient against threats. The ideal candidate will have 3–5 years of application security experience and a strong understanding of SDLC management.

Key Responsibilities

  • Secure Development Integration
    • Partner with development teams to integrate security controls into the SDLC.
    • Review and enhance secure coding practices and guidelines.
    • Conduct code reviews and provide remediation guidance for vulnerabilities.
  • Application Security Management
    • Implement and maintain application security tools (e.g., SAST, DAST, dependency scanning).
    • Monitor and manage vulnerabilities across applications and development pipelines.
    • Collaborate with DevOps teams to ensure secure CI/CD practices.
  • Security Operations Support
    • Assist in incident response related to application vulnerabilities.
    • Develop and maintain security playbooks for application-related incidents.
    • Provide technical expertise during security assessments and audits.
  • Collaboration & Training
    • Educate developers on secure coding principles and threat modeling.
    • Work closely with product and engineering teams to align security requirements with business goals.
    • Advocate for security automation and continuous improvement in development workflows.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field preferred (not required).
  • 3–5 years of application security experience with a strong understanding of SDLC management.
  • Familiarity with secure coding standards (e.g., OWASP Top 10) and threat modeling.
  • Experience with application security tools (SAST, DAST, SCA) and CI/CD pipelines.
  • Strong communication skills and ability to collaborate across technical teams.

Company Description

Packsize is an Equal Opportunity employer and is committed to diversity in its workforce. In compliance with applicable federal and state laws, Packsize policy of equal employment opportunity prohibits discrimination on the basis of race or ethnicity, religion, color, national origin, sex, age, sexual orientation, gender identity/expression, veteran’s status, status as a qualified person with a disability, or genetic information. Individuals from historically underrepresented groups, such as minorities, women, qualified persons with disabilities, and protected veterans are strongly encouraged to apply. Reasonable accommodations in the application process will be provided to qualified individuals with disabilities.

Job Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field preferred (not required).
  • 3–5 years of application security experience with a strong understanding of SDLC management.
  • Familiarity with secure coding standards (e.g., OWASP Top 10) and threat modeling.
  • Experience with application security tools (SAST, DAST, SCA) and CI/CD pipelines.
  • Strong communication skills and ability to collaborate across technical teams.

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 201-500H1B No Sponsor

Cybersecurity Threat Intelligence Expert evaluating incident response strategies

Cyber SecurityFirewalls
Maryland
Security Engineer3 days ago
Full TimeRemoteTeam 51-200

The lead will perform CCRI, vulnerability assessments, and penetration testing across networks, databases, computer applications, and IT frameworks supporting a financial management modernization program.

United States

Staff Product Security Engineer

Greenlight Financial Technology

Greenlight is the leading family fintech company on a mission to help parents raise financially smart kids. We proudly serve more than 6 million parents and kids with our award-winning banking app for families. With Greenlight, parents can automate allowance, manage chores, set flexible spend controls, and invest for their family’s future. Kids and teens learn to earn, save, spend wisely, and invest. At Greenlight, we believe every child should have the opportunity to become financially healthy and happy. It’s no small task, and that’s why we leap out of bed every morning to come to work. Because creating a better, brighter future for the next generation depends on it.

Security Engineer3 days ago
Full TimeRemoteTeam 201-500

This role is responsible for the end-to-end security of consumer products, the digital platform, and a new hardware device line, driving security review, threat modeling, and leading penetration testing and PSIRT operations. Key duties include championing secure AI adoption, establishing security guardrails for AI products, and advising on security implications of new features.

Application SecurityCloud SecurityThreat ModelingPenetration TestingPSIRTCVSSVulnerability ManagementSASTDASTSCAAI SecurityLLM SecurityOWASPMITRE ATT&CKSecure CodingCI/CD SecurityAPI SecurityMobile SecurityEmbedded SecurityClaudeCursorMCP SecurityPythonJavaScriptRubyGoC/C++TerraformAWSKubernetesDockerGitHub ActionsJIRAConfluence
United States
$165K - $200K / year
Full TimeRemoteTeam 10,001

This role is responsible for developing, engineering, and maintaining the Medical Device/IoMT Security Program, which includes designing, engineering, managing, and recommending improvements for security solutions and configurations based on NIST standards. The specialist will also identify vulnerabilities, develop remediation processes, provide technical guidance to IT teams, and assist in defining the overall medical device protection strategy.

NISTCybersecurityMedical Device SecurityIoMT SecurityNetwork SegmentationNetwork ZoningNetwork IsolationRisk Management
United States