Senior Application Security Engineer

4 weeks ago


New York, New York, United States MedReview Full time
Job Summary

We are seeking a seasoned Senior Application Security Engineer to lead MedReview's application security initiatives. As a key member of our team, you will be responsible for the strategic implementation of security measures to protect our applications and data, while mentoring junior engineers and shaping our security posture.

Key Responsibilities:

  • Develop and implement secure-by-default solutions across various applications and platforms.
  • Perform secure design reviews and threat models with staff engineers and architects on complex systems.
  • Work closely with development teams to integrate security into the software development lifecycle (SDLC) and to implement secure coding practices.
  • Participate in incident response activities for application security incidents, including root cause analysis and identification of remediation strategies.
  • Evaluate, implement, and manage security tools and technologies to improve the detection and prevention of vulnerabilities.

Requirements:

  • 5+ years' experience in an application security role with a focus on software development.
  • Advanced knowledge of application security principles, frameworks, and technologies.
  • Excellent critical thinking and problem-solving skills, with the ability to think strategically and act tactically.
  • Familiarity with a wide variety of security tools, technologies, and methodologies.
  • Scripting/development experience (e.g. Python, Java, Ruby, etc.).
  • Background in Application Security - OWASP Top 10, XSS, injection, access control, cryptography, static analysis security testing (SAST), dynamic analysis security testing (DAST), security libraries.
  • Background in software engineering or development in a collaborative environment.
  • Lead the development and implementation of secure-by-default solutions across various applications and platforms.
  • Perform secure design reviews and threat models with staff engineers and architects on complex systems.
  • Working with team members to develop and document security standards and policies that align with HITRUST.
  • Familiarity with regulatory requirements (HITRUST, HIPAA, SOC2, etc.).
  • Availability to work nights and weekends during (un)planned outages and other special circumstances, with 24/7 accountability.
  • Availability to enter on call rotation.
  • Ability to lift 50 lbs.

Benefits:

  • Healthcare that fits your needs - We offer excellent medical, dental, and vision plan options that provide coverage to employees and dependents.
  • 401(k) with Employer Match - Join the team and we will invest in your future.
  • Generous Paid Time Off - Accrued PTO starting day one, plus additional days off when you're not feeling well, and 11 observed holidays.
  • Wellness - We care about your well-being. From Commuter Benefits to FSAs we've got you covered.
  • Learning & Development - Through continued education/mentorship on the job and our investment in LinkedIn Learning, we're focused on your growth as a working professional.

Salary: $145k-160k



  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a Senior Software Engineer to join the Inbound Email Products - Systems (IEPS) team. The IEPS team is responsible for Abnormal's core Inbound Email Security product backend systems, including Remediation and Threat Log (data processing and storage). Our objective is to enhance stability and scalability, as well as...


  • New York, New York, United States Bitcoin Devs Company Full time

    Job Title: Senior Security EngineerJob Description:The Senior Security Engineer plays a vital role in ensuring the security and integrity of Bitcoin Devs Company’s platform, systems, and applications. This position is crucial in protecting the organization from potential security threats and vulnerabilities, as well as implementing and maintaining best...


  • New York, New York, United States Amazon Services LLC Full time

    About the RoleWe are seeking a highly skilled Senior Security Engineer to join our Application Security Testing Automation team at Amazon Services LLC. As a key member of our team, you will play a critical role in helping us provide automated security testing solutions for all of Amazon.Key ResponsibilitiesDefine and drive strategy, act as a technical lead...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a Senior ML Infra Engineer to join the Detection Team. The Detection Division focuses on building advanced technology for identifying and stopping email and cloud-based attacks. As an ML Infra Engineer, you will be responsible for making feature development at Abnormal fast, responsive, stable, and confident for...


  • New York, New York, United States Genius Sports Full time

    About Genius SportsGenius Sports is a leading provider of sports data and technology solutions. We are at the forefront of the global sports industry, connecting sports, brands, and fans through official live data.The RoleWe are seeking an experienced Application Security Engineer to join our team. As a key member of our security team, you will be...


  • New York, New York, United States Sirius XM Radio Inc Full time

    Job Summary:The Application Security Engineer will play a crucial role in supporting SiriusXM technology objectives by providing tools, guidance, and continuous support to ensure the security success of our software and applications.Key Responsibilities:Build and document security features to enable developers to write secure code.Facilitate the...


  • New York, New York, United States Sirius XM Radio Inc Full time

    Job Title: Application Security EngineerSiriusXM is seeking an experienced Application Security Engineer to join our team. As a key member of our security organization, you will play a critical role in ensuring the security and integrity of our software applications.Key Responsibilities:Design and implement secure software development lifecycle (SDLC)...


  • New York, New York, United States Keeper Security Full time

    About the RoleWe are seeking a highly motivated and experienced Senior Software Engineer to join our Keeper Dev team.As a Senior Software Engineer, you will play a pivotal role in designing, developing, and maintaining one of our core products, Keeper Secrets Manager.You will work closely with cross-functional teams to deliver high-quality software solutions...


  • New York, New York, United States Copia Automation Full time

    We are seeking a highly skilled Senior Field Applications Engineer to support the implementation of Copia's DeviceLink product in industrial automation settings.This role is part of our Strategy and Operations team, partnering with sales and customer success to accelerate time to value for our customers.You will be responsible for collaborating closely with...


  • New York, New York, United States Motion Recruitment Full time

    Job Title:Senior Software Engineer - Financial ApplicationsLocation:Fully remote (must be in CST or EST)Job Summary:We are seeking a highly skilled Senior Software Engineer to join our team and lead the development of financial applications for our online lending platform. As a key member of our engineering team, you will be responsible for designing,...


  • New York, New York, United States New Directions Staffing Full time

    Job Opportunity: Applications Security Sales EngineerWe are seeking a highly motivated and experienced Applications Security Sales Engineer to join our team at New Directions Staffing. As a key member of our sales team, you will be responsible for educating prospects and customers on SaaS-based applications security products.Key Responsibilities:Deliver...


  • New York, New York, United States Mizuho Bank Ltd Full time

    Job SummaryWe are seeking a highly skilled Senior Security Engineer to join our team at Mizuho Bank Ltd. As a key member of our security team, you will be responsible for ensuring the security and integrity of our systems and data.Main Responsibilities:Design and implement secure systems and architecturesConduct vulnerability assessments and penetration...


  • New York, New York, United States SourcePro Search, LLC Full time

    Job DescriptionWe are seeking a highly skilled Senior Applications Engineer to join our team at SourcePro Search, LLC. The ideal candidate will be the technical leader of our document management system (DMS) and will contribute to the strategy, growth, health, security, and day-to-day support of the entire DMS ecosystem.This is a highly technical position...


  • New York, New York, United States SysLogic Full time

    Job DescriptionWe are seeking a highly skilled Application Security Architect to join our team at SysLogic. As a key member of our managed security offering, you will be responsible for developing enterprise architectural security deliverables that drive significant value to our clients.You will work closely with key client decision makers and business...


  • New York, New York, United States MongoDB Full time

    About the RoleWe are seeking a highly skilled Senior Security Engineering Manager to join our team at MongoDB. As a key member of our Security organization, you will be responsible for leading globally-distributed engineering teams and driving the development of our security products.Key ResponsibilitiesLead one or more globally-distributed engineering teams...


  • New York, New York, United States SourcePro Search, LLC Full time

    We are seeking a highly skilled Senior Applications Engineer to lead our team in the implementation and support of our document management system (DMS) based on iManage Work10.This is a technical leadership position that requires expertise in the strategy, growth, health, security, and day-to-day support of the entire DMS ecosystem.The ideal candidate will...


  • New York, New York, United States Keeper Security Full time

    About the JobThe Senior Software Engineer will be a key member of Keeper's elite team, reporting to the VP of Engineering. This role will involve driving the development of our Privileged Access Management solution, with a focus on innovation and delivering industry-leading products.ResponsibilitiesWrite and maintain code across various languages, with an...


  • New York, New York, United States Capgemini Government Solutions LLC Full time

    Job Title: Senior DevSecOps Security EngineerCapgemini Government Solutions LLC is seeking a highly motivated and experienced Senior DevSecOps Security Engineer to support our government clients.As a Senior DevSecOps Security Engineer, you will play a pivotal role in defining, maintaining, and implementing our security strategy. You will apply your deep...


  • New York, New York, United States Blackbird Full time

    Job DescriptionWe are seeking a highly skilled Principal Application Security Engineer to join our team at Blackbird.AI. Reporting directly to the CISO, you will play a critical role in securing our applications and infrastructure hosted on AWS and Kubernetes. Your expertise will be instrumental in helping us achieve key security certifications such as SOC...


  • New York, New York, United States Intetics Full time

    Job Title: Senior Cloud Security EngineerDescription:Intetics Inc., a leading technology company, is seeking a skilled Senior Cloud Security Engineer to join its team. The ideal candidate will have a strong background in cloud security, with expertise in designing and building resilient cloud infrastructures, developing and assessing cloud security...