{"schemaVersion":"jobsearcher.job.v1","id":"5dff23fdc0bc297855df5268","url":"https://jobsearcher.com/jobs/5dff23fdc0bc297855df5268","canonicalUrl":"https://jobsearcher.com/jobs/5dff23fdc0bc297855df5268","title":"Sr. Application Security Engineer","description":"Overview\n\nAs someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative and technology-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping secure Esri's intellectual property and sensitive data against a variety of complex threats with support from all levels of leadership. Our Application Security team collaborates closely with the application development, DevSecOps, and information security departments to design security into our applications up front, perform application layer security testing, and assist developers with vulnerability remediation. We value collaboration, pragmatic security, and continuous improvement. We welcome you to join Esri, where you can make a real difference every day!\n\nResponsibilities\n\nDesign, operate, and continuously improve application security testing capabilities and pipelines\nAssess application risks and recommend mitigations\nPerform application layer security reviews of the code developed by our application teams, across multiple languages and frameworks used internally\nAssist with application layer penetration testing to identify potential issues\nProvide application security guidance and mentorship to development teams as needed\n\nRequirements\n\n5+ years of experience in application security, including manual and automated code reviews, manual penetration testing, dynamic application security testing, and false positive analysis of code, pen test, and open-source security findings\nDemonstrated experience determining risk based on analysis/findings using a consistent risk management framework\nProven ability to develop automations/applications using Python, Typescript, Java, or PowerShell\nExperience creating and maintaining reusable GitHub Actions workflows, with expertise in all aspects of GitHub workflow management\nHands-on experience working in a DevSecOps environment built on Kubernetes with a strong knowledge of Kubernetes security best practices\nAbility to read and analyze code for security and design vulnerabilities\nSolid understanding of common web application security standards (HTTP, OAuth, OIDC, REST, and more)\nExperience working with cloud platforms, specifically AWS and Azure\nWillingness to learn new skills and enhance workflows using various AI tools\nUS citizenship and willingness and ability to maintain a US Security Clearance\nBachelor's degree in computer science or related field\n\nRecommended Qualifications\n\nProficiency in any of the following languages: C#, Python, Bash/Shell, PowerShell, JavaScript, SQL, Java\nFamiliarity with AI-assisted coding practices, including tools such as GitHub Copilot, and an understanding of the security implications and risks introduced by AI-generated code\nPractical experience interpreting findings from application pen testing, code scanning and open-source scanners to determine the risk and collaborate with developers to resolve them\nUnderstanding of layer 2-7 communication protocols, common encoding and encryption schemes, and algorithms\n\n#LI-TM1\n\n#LI-onsite\n\nThe Company\n\nAt Esri, diversity is more than just a word on a map. When employees of different experiences, perspectives, backgrounds, and cultures come together, we are more innovative and ultimately a better place to work. We believe in having a diverse workforce that is unified under our mission of creating positive global change. We understand that diversity, equity, and inclusion is not a destination but an ongoing process. We are committed to the continuation of learning, growing, and changing our workplace so every employee can contribute to their life's best work. Our commitment to these principles extends to the global communities we serve by creating positive change with GIS technology. For more information on Esri's Racial Equity and Social Justice initiatives, please visit our website here.\n\nIf you don't meet all of the preferred qualifications for this position, we encourage you to still apply!\n\nEsri is an equal opportunity employer (EOE) and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. If you need reasonable accommodation for any part of the employment process, please email askcareers@esri.com and let us know the nature of your request and your contact information. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this e-mail address.\n\nEsri Privacy Esri takes our responsibility to protect your privacy seriously. We are committed to respecting your privacy by providing transparency in how we acquire and use your information, giving you control of your information and preferences, and holding ourselves to the highest national and international standards, including CCPA and GDPR compliance.","company":"Esri","rawCompany":"esri","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-09-02T08:40:02.812Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Sr. Application Security Engineer","description":"Overview\n\nAs someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative and technology-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping secure Esri's intellectual property and sensitive data against a variety of complex threats with support from all levels of leadership. Our Application Security team collaborates closely with the application development, DevSecOps, and information security departments to design security into our applications up front, perform application layer security testing, and assist developers with vulnerability remediation. We value collaboration, pragmatic security, and continuous improvement. We welcome you to join Esri, where you can make a real difference every day!\n\nResponsibilities\n\nDesign, operate, and continuously improve application security testing capabilities and pipelines\nAssess application risks and recommend mitigations\nPerform application layer security reviews of the code developed by our application teams, across multiple languages and frameworks used internally\nAssist with application layer penetration testing to identify potential issues\nProvide application security guidance and mentorship to development teams as needed\n\nRequirements\n\n5+ years of experience in application security, including manual and automated code reviews, manual penetration testing, dynamic application security testing, and false positive analysis of code, pen test, and open-source security findings\nDemonstrated experience determining risk based on analysis/findings using a consistent risk management framework\nProven ability to develop automations/applications using Python, Typescript, Java, or PowerShell\nExperience creating and maintaining reusable GitHub Actions workflows, with expertise in all aspects of GitHub workflow management\nHands-on experience working in a DevSecOps environment built on Kubernetes with a strong knowledge of Kubernetes security best practices\nAbility to read and analyze code for security and design vulnerabilities\nSolid understanding of common web application security standards (HTTP, OAuth, OIDC, REST, and more)\nExperience working with cloud platforms, specifically AWS and Azure\nWillingness to learn new skills and enhance workflows using various AI tools\nUS citizenship and willingness and ability to maintain a US Security Clearance\nBachelor's degree in computer science or related field\n\nRecommended Qualifications\n\nProficiency in any of the following languages: C#, Python, Bash/Shell, PowerShell, JavaScript, SQL, Java\nFamiliarity with AI-assisted coding practices, including tools such as GitHub Copilot, and an understanding of the security implications and risks introduced by AI-generated code\nPractical experience interpreting findings from application pen testing, code scanning and open-source scanners to determine the risk and collaborate with developers to resolve them\nUnderstanding of layer 2-7 communication protocols, common encoding and encryption schemes, and algorithms\n\n#LI-TM1\n\n#LI-onsite\n\nThe Company\n\nAt Esri, diversity is more than just a word on a map. When employees of different experiences, perspectives, backgrounds, and cultures come together, we are more innovative and ultimately a better place to work. We believe in having a diverse workforce that is unified under our mission of creating positive global change. We understand that diversity, equity, and inclusion is not a destination but an ongoing process. We are committed to the continuation of learning, growing, and changing our workplace so every employee can contribute to their life's best work. Our commitment to these principles extends to the global communities we serve by creating positive change with GIS technology. For more information on Esri's Racial Equity and Social Justice initiatives, please visit our website here.\n\nIf you don't meet all of the preferred qualifications for this position, we encourage you to still apply!\n\nEsri is an equal opportunity employer (EOE) and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. If you need reasonable accommodation for any part of the employment process, please email askcareers@esri.com and let us know the nature of your request and your contact information. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this e-mail address.\n\nEsri Privacy Esri takes our responsibility to protect your privacy seriously. We are committed to respecting your privacy by providing transparency in how we acquire and use your information, giving you control of your information and preferences, and holding ourselves to the highest national and international standards, including CCPA and GDPR compliance.","datePosted":"2026-09-02T08:40:02.812Z","dateModified":"2026-09-02T08:40:02.812Z","hiringOrganization":{"@type":"Organization","name":"Esri","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"5dff23fdc0bc297855df5268"},"url":"https://jobsearcher.com/jobs/5dff23fdc0bc297855df5268"}}