Application Security Engineer

5 days ago


Remote, Oregon, United States VivSoft technologies Full time $120,000 - $140,000 per year

Title: Application Security Engineer

Clearance Required: Public Trust

Location: Remote, USA

Position Type: Full-Time

About the company:

At VivSoft, we aim to solve complex federal problems using emerging and open technologies in a collaborative and rewarding environment. VivSoft is a diverse team of strategists, engineers, designers, and creators experienced in building high performance effective softwares, with impactful organizational design and organizational dynamics for software delivery. We build secure Software Factories based on DoD reference designs and NIST Frameworks for Cloud and DevSecOps. These factories deliver AI/ML Applications, Data Science Platforms, Blockchain and Microservices for DoD, Healthcare and Civilian Agencies

Job Summary:

We are seeking an Application Security Engineer to support the modernization of a large-scale enterprise software development platform. This role focuses on securing CI/CD pipelines, enforcing DevSecOps best practices, and implementing automated security testing throughout the SDLC. The engineer will work closely with development and platform engineering teams to embed security into reusable templates, GitHub Actions, and deployment workflows, ensuring applications are built and deployed securely across environments.

Key Responsibilities:

  • Using GitHub Advanced security, review security findings of the organization.
  • Review, validate, and approve request to remediate security findings.
  • Review, validate, and approve request to dismiss security findings.
  • Collaborate with Federal POC and FDIC security team to create and implement application security processes and standards.
  • Identify gaps and design solutions to improve application security at the FDIC.
  • Provide guidance to FDIC developers in regard to remediating findings when needed.

Required Skills:

  • Bachelor's degree in Computer Science, Engineering, Information Technology, or related field, or equivalent professional experience.
  • Proficiency in at least one or two major enterprise languages (e.g., Java, .Net, C#, JavaScript) to effectively review code and understand development context.
  • Experience integrating security tools (SAST/DAST/SCA) into CI/CD pipelines to automate vulnerability scanning.
  • Proficient in conducting and interpreting results from
  • SAST (Static Analysis Security Testing)
  • DAST (Dynamic Analysis Security Testing)
  • Manual Code Review for security flaws
  • Deep understanding of the OWASP Top 10 and other common application security attack vectors (e.g., injection, XSS, broken access control).
  • Knowledge of security considerations for large, complex enterprise architectures, which may include Cloud Security (AWS, Azure, or GCP), API security, and microservices.

Benefits:

  • Comprehensive Medical, Dental, and Vision Plans (Healthcare benefits are 100% employer-paid for employees only)
  • Life Insurance
  • Paid Time Off (Flexible/Combined PTO, Bereavement Leave, 11 Company Paid Holidays)
  • 401K Retirement Plan with employer match
  • Professional Development Training Reimbursement

HN66oAhNy6



  • Remote, Oregon, United States GuidePoint Security Full time $120,000 - $180,000 per year

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Remote, Oregon, United States Isc2 Full time $120,000 - $200,000 per year

    OverviewYour Future. Secured. ISC2 is a force for good. As the world's leading nonprofit member organization for cybersecurity professionals, our core values — Integrity, Advocacy, Commitment, Inclusion, and Excellence — drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of...


  • Remote, Oregon, United States Abnormal Full time $200,000 - $250,000 per year

    About the RoleAbnormal AI is looking for a Senior Application Security Engineer to help build the next generation of secure AI-powered cybersecurity applications at scale. This is a senior IC-level role that blends deep application security expertise with strong engineering fundamentals. You'll focus on integrating security into every phase of our software...


  • Remote, Oregon, United States Eden Prescott Full time $180,000 - $220,000 per year

    About the RoleOur client is seeking a Software Engineer specializing in Application Security to strengthen the security posture of their products and services. You'll play a key role in designing and scaling automated security solutions that protect applications from the ground up. This is a highly collaborative position, working alongside engineering,...


  • Remote, Oregon, United States Rapport IT Services Full time $80,000 - $160,000 per year

    Essential Functions:Engineers need to have strong development skills in either any one of Java, GoLang, Python AWS services, and possibly mobile application development.Hands-on development experience is crucial as this role requires active development involvement.Conduct security assessments on applications, including static and dynamic code analysis, to...


  • Remote, Oregon, United States Veeam Software Full time $136,500 - $195,000 per year

    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data recovery, data portability, data security, and data intelligence. Based in Seattle, Veeam protects over 550,000 customers worldwide who trust Veeam to keep...


  • Remote, Oregon, United States GE Vernova Full time $150,000 - $200,000 per year

    Job Description SummaryWe are seeking a seasoned Cyber Security Engineer to lead the development and integration of secure architectures for critical Transmission & Distribution (T&D) systems.As a recognized technical authority, you will define cybersecurity strategy across hardware, embedded systems, and software-defined platforms in modern electric...


  • Remote, Oregon, United States NowSecure Full time $80,000 - $120,000 per year

    Join Our Mission: To Save the World from Unsafe Mobile Apps NowSecure is the mobile app security software company trusted by the world's most demanding organizations and most advanced security teams. As the standards-based mobile app risk management company, NowSecure protects the Mobile App Economy. The world's most demanding organizations, innovative...


  • Remote, Oregon, United States Zync Group Full time $100,000 per year

    I am hiring a Cyber Security Engineer on behalf of a software development company specializing in high-end digital solutions for industrial and healthcare sectors. Known for its agile methodologies and collaborative work culture, they emphasize innovation, quality, and client-centric development. As a Cyber Security Engineer, you`ll contribute to securing...


  • Remote, Oregon, United States Wellspring Full time $80,000 - $120,000 per year

    About WellspringWellspring Worldwide, Inc. is a leading provider of web-based software systems for managing research, technology commercialization, and innovation operations for universities, companies, government agencies, and independent labs. Founded in 2003, Wellspring has grown to serve over 500 organizations globally, including Fortune 500 companies,...