Application Security Engineer
JOB SUMMARY
Application Security Engineer (Remote – Preference for EST/CST)
Please reach out to Chris McMillan at cmcmillan@alexandertg.com with an updated resume if you are interested.
We're seeking an Application Security Engineer to embed security into our fast-paced Software Development Lifecycle. This critical role partners with development, product, and DevSecOps teams to integrate security controls, conduct threat modeling (e.g., STRIDE), automate testing, and drive secure coding practices across the CI/CD pipeline.
Key Responsibilities:
-
Integrate security into application development workflows
-
Lead threat modeling and secure code reviews
-
Evaluate and manage AppSec tools (SAST, DAST, SCA, etc.)
-
Automate vulnerability management and reporting
-
Support penetration testing and remediation efforts
-
Collaborate on compliance and secure design initiatives
Qualifications:
-
3–5 years of application security experience
-
Strong understanding of AppSec principles, secure coding, and cloud security (AWS/GCP/Azure)
-
Proficient in code (e.g., JS, React, Python, Powershell)
-
Familiarity with threat modeling frameworks (STRIDE)
-
Strong communication and cross-functional collaboration skills
ATG456
*MONATG*
#LI-CM1