Application Product Security Engineer

  1. Home
  2. Remote jobs
  3. Architecture
  • Company Jobgether
  • Employment Full-time
  • Location 🇺🇸 United States nationwide
  • Submitted Posted 1 day ago - Updated 7 hours ago

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Product Security Engineer based in the United States.

This is a hands-on security engineering role focused on protecting modern software products and the sensitive data they manage.
The position offers the opportunity to shape security practices from the ground up within a fast-moving engineering environment.
You will collaborate closely with product and engineering teams to identify risks early and embed security throughout the development lifecycle.
The role combines application security, secure architecture, vulnerability management, and incident response responsibilities.
You will have significant ownership in building security processes, tooling, and standards that directly influence product reliability and customer trust.
This opportunity is ideal for a security-minded engineer who enjoys solving complex problems and working across teams.
You will play a key role in creating scalable security practices while contributing to a culture of secure innovation.


Accountabilities:

The Application Product Security Engineer will help establish and advance application security practices by partnering with engineering teams, improving security processes, and ensuring products are designed and delivered securely. This role requires strong technical judgment, collaboration skills, and the ability to operate effectively in a dynamic environment.

  • Partner with product and engineering teams throughout the product lifecycle to identify security risks and implement secure solutions from the beginning.
  • Lead threat modeling activities and secure design reviews for new features, products, and architectural changes.
  • Conduct security-focused code reviews and support engineers in remediating vulnerabilities while improving secure development practices.
  • Build, maintain, and improve application security tooling, including static analysis, dependency scanning, and secrets detection integrated into development workflows.
  • Participate in security incident response activities, including investigation, containment, remediation, and post-incident improvements.
  • Review and prioritize findings from vulnerability assessments, penetration tests, security scans, and responsible disclosure programs.
  • Develop security guidelines, reusable patterns, and training materials that help engineering teams adopt secure practices.
  • Support broader security initiatives, including cloud security improvements, customer security assessments, and internal security enhancements.
  • Evaluate emerging security risks and technologies to continuously improve application protection strategies.
  • Collaborate with cross-functional teams to balance security requirements with product goals and engineering velocity.

Requirements:

The ideal candidate is a security-focused engineer with experience securing software applications and collaborating closely with development teams. Success in this role requires strong technical fundamentals, practical security knowledge, and the ability to communicate effectively across technical and business audiences.

  • 2–4 years of experience in application security, product security, software engineering with security responsibilities, or a related security-focused role.
  • Strong understanding of common application vulnerabilities, including OWASP Top 10 risks, authentication and authorization issues, injection vulnerabilities, and security design principles.
  • Experience with threat modeling, secure architecture reviews, and communicating security risks in a practical and actionable way.
  • Hands-on experience supporting security incidents, including detection, investigation, response, and remediation activities.
  • Ability to read and write code in languages such as Python, TypeScript/JavaScript, Go, or similar technologies.
  • Experience reviewing application code and identifying security weaknesses within real-world software systems.
  • Familiarity with application security tooling such as SAST, dependency scanners, vulnerability scanners, and CI/CD security integrations.
  • Strong communication and collaboration skills with the ability to build trusted relationships with engineering teams.
  • Ability to work independently, manage changing priorities, and take ownership in an evolving environment.
  • Strong problem-solving skills and a proactive approach to improving security practices.

Preferred Qualifications:

  • Experience working in a startup environment or within a small, highly collaborative security team.
  • Knowledge of cloud security practices across platforms such as AWS, GCP, or Azure.
  • Experience securing AI-powered applications, machine learning systems, or products handling sensitive financial information.
  • Familiarity with security and compliance frameworks such as SOC 2 or GDPR.
  • Contributions to security communities, bug bounty programs, capture-the-flag competitions, or open-source security projects.

Benefits:

  • Competitive base salary range of $130,000–$170,000, depending on experience and location.
  • Equity participation opportunities.
  • Fully remote, remote-first work environment.
  • Health, dental, and vision insurance coverage.
  • Flexible paid time off policy.
  • Opportunity to shape security strategy and engineering practices in a growing organization.
  • High ownership role with direct impact on product security and customer trust.
  • Collaborative culture focused on innovation, inclusion, and continuous improvement.


How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

 Why Apply Through Jobgether? 

 

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

 

 

#LI-CL1

Loading similar jobs...

USA Remote Jobs

Discover fully remote job opportunities in the United States at USA Remote Jobs. Apply for roles like Software Developer, Customer Service Specialist, Project Manager, and more!

© 2026 Created by USA Remote Jobs. All rights reserved.