Job Description A forward-thinking digital enterprise in Plano, TX is actively looking for an Application Security Engineer to strengthen the organization's secure development framework and improve the security posture of both internal and customer-facing applications. This hands-on professional will help safeguard mission-critical systems by advancing secure application design, identifying emerging threats, and coordinating across product teams to address and preempt vulnerabilities from the earliest design phases through deployment.
You will work closely with engineering and DevOps to build secure code pipelines, establish continuous security testing, and champion secure software development practices. This role requires evaluating application architectures for risk, conducting code and design reviews, providing guidance on secure coding, and responding to security incidents affecting web, mobile, or API endpoints. You'll routinely facilitate threat modeling exercises, manage security findings, and communicate mitigation plans to developers and stakeholders.
Required Skills & Experience - Strong understanding of common security vulnerabilities and exploits for web, backend, and mobile applications
- Hands-on experience with application vulnerability scanning tools and manual testing techniques
- Proficient writing and reviewing code in languages such as Java, .NET, JavaScript, or Python
- Familiarity with CI/CD systems and automation of security controls within DevOps workflows
- Experience analyzing threat vectors in RESTful APIs, web frameworks, or serverless environments
- Bachelor's degree in Computer Science, Engineering, or related technical discipline, or comparable experience
Preferred Qualifications - Knowledge of secure architecture patterns in cloud environments (AWS, Azure, Google Cloud Platform)
- Prior work with application firewalls, IAM integration, or zero-trust approaches
- Experience supporting regulatory or data privacy initiatives (PCI, GDPR, HIPAA, etc.)
- Recognized certifications (e.g., OSCP, GWAPT, CSSLP, or similar security credentials)
Key Responsibilities Daily Responsibilities
100% Hands On
- Collaborate with product and dev teams by integrating security checks in development sprints
- Create custom security scripts, automate vulnerability management, and remediate findings
- Deliver end-to-end code review and architectural analysis for both greenfield and legacy systems
- Coordinate and document results from pen tests, risk reviews, and red team exercises
- Conduct technical training and mentor teams on emerging security threats and best response strategies
- Prepare documentation and evidence for audits, and partner with compliance on secure SDLC controls
The Offer Eligible for bonus or commission
Comprehensive benefits include:
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k) with matching, where available
Applicants must have authorization to work in the United States full-time, now and in the future