Talent.com
Python/Django Senior Application Security Engineer (Hybrid - US)
Python/Django Senior Application Security Engineer (Hybrid - US)Energy Solutions • Chicago, IL, United States
Python / Django Senior Application Security Engineer (Hybrid - US)

Python / Django Senior Application Security Engineer (Hybrid - US)

Energy Solutions • Chicago, IL, United States
8 days ago
Job type
  • Full-time
Job description

Interested in joining a growing company where you will work with talented colleagues, enhance a supportive and energetic culture, and be part of the climate solution? At Energy Solutions, we focus on the big impacts. And we believe that market-based programs can be a powerful force to deliver large-scale energy, carbon, and water-use savings. Since 1995, we've harnessed that power to offer proven, performance-based solutions for our utility, government, and institutional customers.

Summary :

We are seeking a Senior Application Security Engineer who will work with our development team to manage security and risk on our internally developed applications. The engineer will make risk-based decisions on application security, including recommending and validating controls, contributing to the design and upgrade of application security controls, and leading some new projects to further secure our platforms. This role is primarily focused on execution and consulting but should be familiar with roadmap and strategy and contribute where appropriate. Must have the ability to read, review, and make recommendations on secure Django / Python patterns.

Responsibilities :

  • Contribute to the application security roadmap for our internal applications-prioritize risks and sequence work across codebases, application layer, and DevOps.
  • Consult with engineers to communicate requirements, create actionable tickets / acceptance criteria, and drive adoption.
  • Conduct pull request reviews focused on security, provide guidance on refactors, and approve / deny with clear rationale.
  • Serve as a steward for SAST / scanning : review static code scan results, triage findings, eliminate noise, and drive remediation with owners.
  • Build reference implementations in Django / Python (i.e. authentication patterns, input validation, secrets handling, rate limiting, geo-based access) without direct responsibility for production feature development.
  • Map SOC 2 / NIST to engineering work : translate requirements into stories, controls, and automated evidence in CI / CD.
  • Threat modeling & architecture : navigate libraries / architectures and document secure patterns (ADRs / RFCs) that teams follow.
  • Oversee security related tasks in the Software Delivery Life Cycle (SDLC) to ensure software development activities remain in compliance.
  • Collaborate with software developers and code base leads.
  • Act as a liaison between technical requirements from the business (i.e. security, privacy, compliance) and development teams.
  • Participate as a subject matter expert in security architecture, including new designs and design reviews.
  • Recommend application security improvements based on best practices, OWASP standards and other web application security frameworks.
  • Review architecture and compliance-related code changes for security impact.
  • Ensure compliance with all company security policies and standards.
  • Manage and maintain all security related tickets, including recommendations, testing, and validation.

Qualifications :

  • Minimum of 5 years' experience in application security experience.
  • Practice and implementation with Django / Python with a clear application-security focus (production experience and impact, not theory).
  • Engineering background (software or DevOps / SRE) with the ability to read / modify code, review PRs, and build PoCs.
  • Experience with GitHub security, including reviewing static code scans, triage findings, eliminate noise, and drive remediation with owners.
  • Experience embedding secure SDLC into Git-based workflows and CI / CD (pre-commit, pipeline gates, policy-as-code).
  • Practical knowledge of SOC 2 and familiarity with NIST 800-53; can turn requirements into technical tasks and evidence.
  • Ability to operate across code, app, and DevOps (containers, IaC basics, secrets, logging / monitoring).
  • Clear, persuasive communication (verbal and written) and prioritization.
  • Excellent time management skills with a proven ability to meet deadlines.
  • Excellent interpersonal and negotiation skills.
  • Preferred Qualifications :

  • Bachelors degree in Computer Science or equivalent work experience preferred.
  • CISSP, GIAC, Security+, AWS Security and other related security certifications.
  • Prior experience reporting to or partnering with a security architect, or being the app-sec lead in a smaller org.
  • Strong organizational skills and attention to detail.
  • Strong analytical and problem-solving skills.
  • Ability to prioritize tasks according to severity
  • Ability to adapt to the needs of the organization
  • Proficient in AWS Security services (I.E. Cloud watch, Guard Duty)
  • The salary range for this role is $119,100 - $147,400 / annually, with a target compensation of $119,000 to $131,600 based on experience and qualifications.

    Compensation is commensurate with experience and includes a generous retirement package. Energy Solutions provides an excellent benefits package including medical, dental and vision insurance, other pre-tax contribution plans and an Employee Stock Ownership Plan (ESOP).

    AI Use

    At Energy Solutions we believe in the importance of authentic interactions and equitable opportunities. We base our candidate selection on one's own skills, knowledge, and experience. To ensure the integrity and fairness of our interview process, the use of artificial intelligence (AI) tools (including Generative AI) or other means to generate or assist with responses during interviews is strictly prohibited. This practice supports our commitment to create a transparent and equitable space where skills, knowledge and experience skills can truly shine.

    Equal Opportunity Employer

    Energy Solutions is an affirmative action-equal opportunity employer and prohibits discrimination and harassment of any type. We afford equal employment opportunities to employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristics protected by law. Energy Solutions conforms to the spirit as well as to the letter of all applicable laws and regulations.

    Office Locations and a Remote Workforce

    Energy Solutions operates as a predominantly remote workforce with offices in six different locations . Employees who reside within 40 miles of an office (except New York) will be assigned to that location, though in-office attendance requirements may vary by team. At this time, we are not accepting applications from candidates residing in the following states : Delaware, Kentucky, Mississippi, Montana, Nebraska, North Dakota, and Wyoming.

    Background Check Information

    Information will be requested to perform the compulsory background check. A drug screen and authorization to work in the U.S. indefinitely are preconditions of employment. Energy Solutions is an equal opportunity employer.

    Reasonable Accommodations

    Energy Solutions is committed to providing access and reasonable accommodation for individuals with disabilities. If you require accommodations in completing this application, interviewing, and / or completing any pre-employment testing, or otherwise participating in the employee selection process, please email accommodation@energy-solution.com .

    Privacy Notice for Job Applicants

    Create a job alert for this search

    Senior Application Security Engineer • Chicago, IL, United States

    Related jobs
    Lead Platform Engineer (Global Payment Network Palo Alto, Security, Python, AWS, Terraform, Ansible)

    Lead Platform Engineer (Global Payment Network Palo Alto, Security, Python, AWS, Terraform, Ansible)

    Capital One • Chicago, Illinois, USA
    Full-time +1
    Lead Platform Engineer (Global Payment Network - Palo Alto Security Python AWS Terraform Ansible).Do you love building and pioneering in the technology space Do you enjoy solving complex technical ...Show more
    Last updated: 13 days ago • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    Foley & Lardner • Chicago, IL, United States
    Full-time
    Senior Cloud Security Engineer.Information Technology / Security.Foley & Lardner LLP is a great place to work because of what we do and how we do it. Here, your unique perspectives, experiences, and a...Show more
    Last updated: 17 days ago • Promoted
    Programmer Analyst 6 Accela

    Programmer Analyst 6 Accela

    HighCloud Solutions • Lansing, Illinois, USA
    Full-time
    Title : Programmer Analyst 6 - Accela.Location : Lansing MI (Hybrid Locals Only).As a Senior Application Developer the employee performs a complete range of information system analyst assignments inc...Show more
    Last updated: 9 days ago • Promoted
    Software Development Engineer

    Software Development Engineer

    Amazon • Zion, IL, USA
    Full-time
    Join Amazon's engineering team and help us build innovative solutions to complex problems.As a Software Development Engineer, you will design, develop, and test software applications and services.W...Show more
    Last updated: 22 days ago • Promoted
    Programmer Analyst 6 Sr. Genesys Developer

    Programmer Analyst 6 Sr. Genesys Developer

    TekWissen LLC • Lansing, Illinois, USA
    Full-time +1
    TekWissen is a global workforce management provider headquartered in Ann Arbor Michigan that offers strategic talent solutions to our clients world-wide. The below Client runs through fifteen ex...Show more
    Last updated: 13 days ago • Promoted
    Application Security Engineer

    Application Security Engineer

    ProSight Financial Association • Chicago, IL, United States
    Full-time
    Reports To : Director, Product Development & Operations.BAI and RMA have come together as ProSight Financial Association, a leading industry organization whose purpose is to empower financial servic...Show more
    Last updated: 26 days ago • Promoted
    Senior Python Developer

    Senior Python Developer

    Unicom Technologies INC • Chicago, Illinois, USA
    Full-time
    Capital Risk concepts Markets and management.Strong understanding of capital markets (Fixed Income Derivativ management (Market risk Credit risk). Experience with REST APIs microservices architectur...Show more
    Last updated: 7 days ago • Promoted
    Sr Mechanical Engineer Data Center Development

    Sr Mechanical Engineer Data Center Development

    Pkaza • Ashburn, Illinois, USA
    Full-time
    Sr Mechanical Engineer - Data Center Development - Ashburn VA.This position is also available for your coworkers that do Civil Engineering or Electrical Engineering in NoVA.Also looking for a Lead ...Show more
    Last updated: 30+ days ago • Promoted
    PythonDjango Senior Application Security Engineer (Hybrid US)

    PythonDjango Senior Application Security Engineer (Hybrid US)

    Energy Solutions • Chicago, Illinois, USA
    Full-time
    Interested in joining a growing company where you will work with talented colleagues enhance a supportive and energetic culture and be part of the climate solution At Energy Solutions we focus on t...Show more
    Last updated: 5 days ago • Promoted
    Lansing, MI IT DTMB Agency Services DHHS Programmer Analyst 6 Sr. Genesys Developer

    Lansing, MI IT DTMB Agency Services DHHS Programmer Analyst 6 Sr. Genesys Developer

    Buzzclan • Lansing, Illinois, USA
    Full-time
    Please ensure you attach the Cover Sheet (attached) valid Right to Represent with hybrid work schedule acknowledged and confirmed by candidate and the candidates resume with full legal first name a...Show more
    Last updated: 13 days ago • Promoted
    Application Security Engineer

    Application Security Engineer

    Clearwater Analytics • Chicago, IL, United States
    Full-time
    Responsible for working with Clearwater Analytics development teams to ensure security is injected into the software development lifecycle and products are secure. This role will focus on implementi...Show more
    Last updated: 26 days ago • Promoted
    Programmer Analyst 6 Accela

    Programmer Analyst 6 Accela

    Agile Tech Labs • Lansing, Illinois, USA
    Full-time
    Job Location : Lansing MI (Hybrid).Experience implementing and supporting the Accela Civic Platform (Accela Automation) for Licensing and Case Management and Accela Citizen Access Required 3-5 years...Show more
    Last updated: 8 days ago • Promoted
    Application Security Engineer

    Application Security Engineer

    h3 Technologies • Chicago, IL, United States
    Full-time
    Engineering graduates with internship experience considered).Minimum 5 years in IT, with at least 2 years in Application Security. PSM, CPM, AIM / AAM, Secrets Manager.Privileged Access Management (PA...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cloud Security Engineer (Azure)

    Senior Cloud Security Engineer (Azure)

    KellyMitchell Group • Chicago, IL, United States
    Full-time
    Our client is seeking a Azure Security Engineer to join their team! This position is located in Chicago, Illinois.Evaluate proposed systems, networks, and software designs for security risks.Recomm...Show more
    Last updated: 30+ days ago • Promoted
    Senior Full Stack Software Engineer

    Senior Full Stack Software Engineer

    International Code Council • Country Club Hills, Illinois, United States
    Full-time
    International Code Council is seeking a Senior Full Stack Software Engineer with a strong track record of building enterprise-scale web applications. You’ll help shape our architecture, standards, a...Show more
    Last updated: 7 days ago • Promoted
    Lead, Anti-Tamper System Security Engineer

    Lead, Anti-Tamper System Security Engineer

    Akaasa Technologies • Ashburn, Illinois, USA
    Full-time
    Job Title : Lead Anti-Tamper System Security Engineer (Secret Security Clearance).Serve as a Subject Matter Expert (SME) in AT. Assess systems for Critical Program Information (CPI).Conduct...Show more
    Last updated: 20 days ago • Promoted
    Programmer Analyst 6 – Accela

    Programmer Analyst 6 – Accela

    California Creative Solutions Inc. • Lansing, Illinois, USA
    Full-time
    The client would like to hire Programmer Analyst 6 - General.As a Senior Application Developer the employee performs a complete range of information system analyst assignments including but not lim...Show more
    Last updated: 7 days ago • Promoted
    (Hybrid) Application Security Engineer

    (Hybrid) Application Security Engineer

    TOP TALENT, INC. • Chicago, IL, United States
    Full-time
    As an Application Security Engineer, you will have significant visibility across the organization due to the critical nature of discovering and communicating high-risk vulnerabilities in applicatio...Show more
    Last updated: 26 days ago • Promoted