{"schemaVersion":"jobsearcher.job.v1","id":"88b8dbb76b88bc5ff68a44bc","url":"https://jobsearcher.com/jobs/88b8dbb76b88bc5ff68a44bc","canonicalUrl":"https://jobsearcher.com/jobs/88b8dbb76b88bc5ff68a44bc","title":"Staff Application Security Engineer","description":"Basic Qualifications and\nDesign, implement, and maintain infrastructure as code solutions for managing and protecting cloud resources, ensuring scalability, resilience and security\nContribute to the security hardening efforts and producing sensible baseline configurations for all key *Client's* systems\nLead the application security processes including managing the existing security tools in the CI/CD pipelines, reviewing proposed project architectures, initial threat modeling, triage of the identified application security defects and the suggested fixes\nWork closely with the development teams to promote best application security practices\nWork closely with the infrastructure and the DevOps teams to ensure consistent implementation of the security standards including the remediation of the identified gaps in the security posture\nContribute to the bug bounty triage and remediation processes ‍\nResponsibilities\nRequired Skills and Experience\nYou bring:\nBachelor's degree in computer science, Information Technology, or a related technical area\n8+ years proven experience in Appsec (web, api, mobile) or related role\n3+ years of experience in cloud environments. (AWS preferred)\nProficient in Bash, Powershell or other scripting languages.\nFamiliar with the Infrastructure as Code and “desired state” concepts including tools such as Terraform, Salt, Chef, Puppet etc\nKnowledge of common attack vectors including OWASP Top 10\nExperience in automating build and deployment infrastructure built on Kubernetes, Docker etc.\nExperience in python programming or other shell scripting language\nExperience with CI/CD tools (e.g., Jenkins, CircleCI) and version control systems (e.g., git)\nExcellent problem-solving and communication skills\nPreferred Qualifications:\nIn-depth knowledge of containerization technologies (Docker), orchestration (Kubernetes) and infrastructure as code (Terraform)\nProficiency in deploying, monitoring, and scaling containerized applications on AWS using EKS, serverless, and ensuring high availability and performance\nProficiency in application security assessments, penetration testing, red team, purple team","company":"Identify Security","rawCompany":"identify security","city":"Millbrae","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-03T12:15:50.006Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Staff Application Security Engineer","description":"Basic Qualifications and\nDesign, implement, and maintain infrastructure as code solutions for managing and protecting cloud resources, ensuring scalability, resilience and security\nContribute to the security hardening efforts and producing sensible baseline configurations for all key *Client's* systems\nLead the application security processes including managing the existing security tools in the CI/CD pipelines, reviewing proposed project architectures, initial threat modeling, triage of the identified application security defects and the suggested fixes\nWork closely with the development teams to promote best application security practices\nWork closely with the infrastructure and the DevOps teams to ensure consistent implementation of the security standards including the remediation of the identified gaps in the security posture\nContribute to the bug bounty triage and remediation processes ‍\nResponsibilities\nRequired Skills and Experience\nYou bring:\nBachelor's degree in computer science, Information Technology, or a related technical area\n8+ years proven experience in Appsec (web, api, mobile) or related role\n3+ years of experience in cloud environments. (AWS preferred)\nProficient in Bash, Powershell or other scripting languages.\nFamiliar with the Infrastructure as Code and “desired state” concepts including tools such as Terraform, Salt, Chef, Puppet etc\nKnowledge of common attack vectors including OWASP Top 10\nExperience in automating build and deployment infrastructure built on Kubernetes, Docker etc.\nExperience in python programming or other shell scripting language\nExperience with CI/CD tools (e.g., Jenkins, CircleCI) and version control systems (e.g., git)\nExcellent problem-solving and communication skills\nPreferred Qualifications:\nIn-depth knowledge of containerization technologies (Docker), orchestration (Kubernetes) and infrastructure as code (Terraform)\nProficiency in deploying, monitoring, and scaling containerized applications on AWS using EKS, serverless, and ensuring high availability and performance\nProficiency in application security assessments, penetration testing, red team, purple team","datePosted":"2026-08-03T12:15:50.006Z","dateModified":"2026-08-03T12:15:50.006Z","hiringOrganization":{"@type":"Organization","name":"Identify Security","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Millbrae","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"88b8dbb76b88bc5ff68a44bc"},"url":"https://jobsearcher.com/jobs/88b8dbb76b88bc5ff68a44bc"}}