JOBSEARCHER

Application Security Engineer

ACL DigitalDenver, COL6 LeadSeptember 15th, 2026
Application Security EngineerThe position is a great opportunity for an entry level Application Security Engineer or people who want to jump into Application Security Career path. You will provide hands-on validation of static code analysis results and software composition analysis results, then communicate with developers to fix with guidance. You will work with another application security engineer and be a part of the security team for the assigned business domain.Key ResponsibilitiesWork with engineers to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC)Analyze output of application security scanners, such as SAST and SCA, to proactively identify risks and security vulnerabilitiesValidate and investigate applicability of identified vulnerabilities and provide risk analysis as neededConfigure and fine-tune security scanners to ensure scanner output is applicable to the application's contextCollaborate with developers and report vulnerabilities to application owners, supervising issues from report to resolutionEngage with other application security engineers to align tasks with development timelines, completing tasks according to application release timingQualifications2+ years of experience working within software developmentBachelor's degree in Computer Science, Information Security, Cyber Security or equivalent experience (> 7 years)Excellent written and oral communication skills, as well as social skills including the ability to articulate to both technical and non-technical audiencesHigh level of personal integrity, with the ability to professionally handle confidential matters, and reflect appropriate level of judgment as it pertains to securityAble to work both independently and with development teams, and multi-task effectivelyFirm understanding of enterprise class application architectures that are highly scalable and reliable, and the expertise to secure themExperience with security architecture and feature design reviewsExperience with multiple languages such as Java, Go, Python and Perl etc, and understand how to detect and remedy related security issues such as OWASP top 10Desired ExperienceExcellent analytical, evaluative, and problem-solving abilitiesExperience with securing host, database, and application solutions for multi-tier systemsExperience with penetration testingKnowledge of automated attack tools and developing mitigation techniquesAbility to think like an attackerExperience with AWS and Akamai technologiesTechnical certifications within information security are a plus (GWAPT, OSCP or equivalents)