Talent.com
Senior Application Security Engineer (Hybrid - US)
Senior Application Security Engineer (Hybrid - US)Energy Solutions - USA • Portland, OR, US
No longer accepting applications
Senior Application Security Engineer (Hybrid - US)

Senior Application Security Engineer (Hybrid - US)

Energy Solutions - USA • Portland, OR, US
14 hours ago
Job type
  • Full-time
Job description

Summary

We are seeking a Senior Application Security Engineer who will work with our development team to manage security and risk on our internally developed applications. The engineer will make risk-based decisions on application security, including recommending and validating controls, contributing to the design and upgrade of application security controls, and leading some new projects to further secure our platforms. This role is primarily focused on execution and consulting but should be familiar with roadmap and strategy and contribute where appropriate. Must have the ability to read, review, and make recommendations on secure Django / Python patterns.

Responsibilities

  • Contribute to the application security roadmap for our internal applications—prioritize risks and sequence work across codebases, application layer, and DevOps.
  • Consult with engineers to communicate requirements, create actionable tickets / acceptance criteria, and drive adoption.
  • Conduct pull request reviews focused on security, provide guidance on refactors, and approve / deny with clear rationale.
  • Serve as a steward for SAST / scanning : review static code scan results, triage findings, eliminate noise, and drive remediation with owners.
  • Build reference implementations in Django / Python (i.e. authentication patterns, input validation, secrets handling, rate limiting, geo-based access) without direct responsibility for production feature development.
  • Map SOC 2 / NIST to engineering work : translate requirements into stories, controls, and automated evidence in CI / CD.
  • Threat modeling & architecture : navigate libraries / architectures and document secure patterns (ADRs / RFCs) that teams follow.
  • Oversee security related tasks in the Software Delivery Life Cycle (SDLC) to ensure software development activities remain in compliance.
  • Collaborate with software developers and code base leads.
  • Act as a liaison between technical requirements from the business (i.e. security, privacy, compliance) and development teams.
  • Participate as a subject matter expert in security architecture, including new designs and design reviews.
  • Recommend application security improvements based on best practices, OWASP standards and other web application security frameworks.
  • Review architecture and compliance-related code changes for security impact.
  • Ensure compliance with all company security policies and standards.
  • Manage and maintain all security related tickets, including recommendations, testing, and validation.

Qualifications

  • Minimum of 5 years' experience in application security experience.
  • Practice and implementation with Django / Python with a clear application-security focus (production experience and impact, not theory).
  • Engineering background (software or DevOps / SRE) with the ability to read / modify code, review PRs, and build PoCs.
  • Experience with GitHub security, including reviewing static code scans, triage findings, eliminate noise, and drive remediation with owners.
  • Experience embedding secure SDLC into Git-based workflows and CI / CD (pre-commit, pipeline gates, policy-as-code).
  • Practical knowledge of SOC 2 and familiarity with NIST 800-53; can turn requirements into technical tasks and evidence.
  • Ability to operate across code, app, and DevOps (containers, IaC basics, secrets, logging / monitoring).
  • Clear, persuasive communication (verbal and written) and prioritization.
  • Excellent time management skills with a proven ability to meet deadlines.
  • Excellent interpersonal and negotiation skills.
  • Preferred Qualifications

  • Bachelors degree in Computer Science or equivalent work experience preferred.
  • CISSP, GIAC, Security+, AWS Security and other related security certifications.
  • Prior experience reporting to or partnering with a security architect, or being the app-sec lead in a smaller org.
  • Strong organizational skills and attention to detail.
  • Strong analytical and problem-solving skills.
  • Ability to prioritize tasks according to severity
  • Ability to adapt to the needs of the organization
  • Proficient in AWS Security services (I.E. Cloud watch, Guard Duty)
  • The salary range for this role is $119,100 - $147,400 / annually, with a target compensation of $119,000 to $131,600 based on experience and qualifications.

    J-18808-Ljbffr

    Create a job alert for this search

    Application Security Engineer • Portland, OR, US

    Related jobs
    Lead, Assembler I, Optics - 1st Shift

    Lead, Assembler I, Optics - 1st Shift

    SigSauer • Tualatin, OR, US
    Full-time
    For over 250 years SIG SAUER, Inc.American ingenuity, German engineering, and Swiss precision.Today, SIG SAUER is synonymous with industry-leading quality and innovation which has made it the brand...Show more
    Last updated: 30+ days ago • Promoted
    Technician I - Security

    Technician I - Security

    Paladin Technologies • Portland, OR, US
    Full-time
    Quick Apply
    This Technician I position will provide efficient and high-quality installations related to integrated security systems.Responsibilities include, but are not limited to performing startup, installa...Show more
    Last updated: 30+ days ago
    Risk Engineer - Pacific Northwest Target Segments

    Risk Engineer - Pacific Northwest Target Segments

    Crum & Forster • Portland, OR, US
    Full-time
    Risk Engineer Loss Control Specialist Pacific Northwest.The Risk Engineer Loss Control Specialist is responsible for delivering risk management and safety services to policyholders and underwrit...Show more
    Last updated: 30+ days ago • Promoted
    Senior Integration Engineer

    Senior Integration Engineer

    Jireh Semiconductor • Hillsboro, OR, USA
    Full-time
    Quick Apply
    Jireh is looking for a Process Integration Engineer to join their team.As a Process Integration Engineer, you will work in a dynamic team environment at AOS Semiconductor's leading technology fabri...Show more
    Last updated: 9 days ago
    Project Manager

    Project Manager

    Oregon Staffing • Beaverton, OR, US
    Full-time
    Physical Security Project Manager.This role requires 9-5 onsite M-Th at Beaverton WHQ, there is no exception or flexibility on this schedule due to the organization. The nature of this work will be ...Show more
    Last updated: 1 day ago • Promoted
    System Engineer (Radar)

    System Engineer (Radar)

    Corvid Technologies LLC • Portland, OR, USA
    Full-time
    Quick Apply
    Corvid Technologies is looking to add an experienced Systems Engineer for the X-Band Transportable Radar (XTR) to support the Missile Defense Agency (MDA). This system is based on-board the Pacific ...Show more
    Last updated: 30+ days ago
    Target Security Specialist

    Target Security Specialist

    Target • Vancouver, WA, US
    Full-time
    The starting hourly rate is $20.Working at Target means helping all families discover the joy of everyday life.Target's values and culture bring that vision to life. Assets Protection (AP) teams fun...Show more
    Last updated: 30+ days ago • Promoted
    Seasonal Asset Protection Security Guard, Washington Square

    Seasonal Asset Protection Security Guard, Washington Square

    Macy’s • Tigard, Oregon, US
    Full-time +1
    Be part of an amazing story Macy's is more than just a store.One that's captured the hearts and minds of America for more than 160 years. A story about innovations and traditions…about inspiring sto...Show more
    Last updated: 2 days ago • Promoted
    Security Professional - Distribution Center - Part Time

    Security Professional - Distribution Center - Part Time

    Oregon Staffing • Tualatin, OR, US
    Full-time +1
    Security Professional - Distribution Center - Part Time.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpos...Show more
    Last updated: 1 day ago • Promoted
    Sr. Apparel Product Integrity Engineer

    Sr. Apparel Product Integrity Engineer

    Ohm Systems • Beaverton, OR, United States
    Full-time
    Quick Apply
    MsoNoSpacing"> • •This is a proactive position that will be opening within 1-2 days.Let's focus on top tal...Show more
    Last updated: 19 hours ago • New!
    Senior Full-Stack Engineer - Risk Experience

    Senior Full-Stack Engineer - Risk Experience

    Mercury • Portland, OR, United States
    Full-time
    Senior Full-Stack Engineer - Risk Experience.San Francisco, CA, New York, NY, Portland, OR, or Remote within Canada or United States. Soaring high above the Gardon River, the Pont du Gard is a maste...Show more
    Last updated: 30+ days ago • Promoted
    Intel Corporation uses cookies and similar technologies on this website to improve your online experience, to analyze site usage and to show tailored advertising to you.
 For more information, visit ourCookie Notice.

    Intel Corporation uses cookies and similar technologies on this website to improve your online experience, to analyze site usage and to show tailored advertising to you. For more information, visit ourCookie Notice.

    Intel Corporation • Hillsboro, OR, US
    Temporary
    This role reports to the Chief Tax Officer and is responsible for global tax accounting and all US tax reporting.In addition to strong technical expertise, the successful candidate will build, lead...Show more
    Last updated: 30+ days ago • Promoted
    Security Guard - Open Availability Needed

    Security Guard - Open Availability Needed

    Oregon Staffing • Gresham, OR, US
    Full-time
    Flex Security Guard Full Time Portland, OR.Must be available any day, any shift & will be stationed at various site locations. Hour Thinking about a job in the security field? Securitas employees ...Show more
    Last updated: 1 day ago • Promoted
    Senior Integration Engineer

    Senior Integration Engineer

    1010 Analog Devices Inc. • Camas, WA, United States
    Full-time +2
    NASDAQ : ADI ) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge. ADI combines analog, digital, and software technologie...Show more
    Last updated: 30+ days ago • Promoted
    Senior Engineer - Design and Development

    Senior Engineer - Design and Development

    Micro Systems Engineering, Inc. • Lake Oswego, OR, United States
    Permanent
    Micro Systems Engineering, Inc.Senior Engineer - Design and Development in Lake Oswego, Oregon : Dvlp, implement, & qualify new supply chain & tech platforms to meet product quality, reliability, vo...Show more
    Last updated: 1 day ago • Promoted
    Senior Engineer, Implant

    Senior Engineer, Implant

    1010 Analog Devices Inc. • Beaverton, OR, United States
    Full-time +1
    NASDAQ : ADI ) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge. ADI combines analog, digital, and software technologie...Show more
    Last updated: 30+ days ago • Promoted
    Electronic Warfare Specialist

    Electronic Warfare Specialist

    United States Army • Portland, OR, US
    Full-time
    ELIGIBLE FOR UP TO A $16K SIGNING BONUS.Talk to your recruiter for details.As an Electromagnetic Warfare Specialist, you’ll plan and execute electronic warfare operations.You’ll be trained to detec...Show more
    Last updated: 30+ days ago • Promoted
    Sr Sales Application Engineer

    Sr Sales Application Engineer

    BorgWarner • Wilsonville, OR, US
    Full-time
    Sr Sales Application Engineer For New Business Acquisition.The Sr Sales Application Engineer For New Business Acquisition is responsible for driving revenue growth, managing key customer relationsh...Show more
    Last updated: 30+ days ago • Promoted