{"schemaVersion":"jobsearcher.job.v1","id":"e547331bf12dfed81e269db4","url":"https://jobsearcher.com/jobs/e547331bf12dfed81e269db4","canonicalUrl":"https://jobsearcher.com/jobs/e547331bf12dfed81e269db4","title":"Application Security Engineer - Remote","description":"EVOTEK is North America's premier enabler of secure digital business focused on innovation. With an integrated set of technical domains, including data center, network, security, cloud, and communications, EVOTEK provides a cohesive approach to digital initiatives while driving business impact. In addition to technical solutions, EVOTEK offers advisory services and strategic sourcing to help bridge the gap between IT and business, reducing functional silos and facilitating alignment. EVOTEK was named Inc. Magazine's \"Best Places to Work\" in 2018, 2020, and 2022. In addition, for seven consecutive years, EVOTEK was listed in The San Diego Business Journal's \"Best Places to Work\" and recognized in CRN's \"Solution Provider 500\" list, CRN's \"Next-Generation 250\" list, CRN's \"Triple Crown\" and highlighted as CRN's \"Top 150 Growth Companies\".\nThe Application Security Engineer ensures that company applications and services are secured and implemented with the best security practices. The main goal of AppSec Engineer is to protect applications from security attacks by developing, inserting, and testing security components that make the application more secure. The ideal candidate will support application security reviews, threat modeling, and perform application security vulnerability management.\nRequirements\nPerform secure program testing, review, and/or assessment to identify potential flaws in codes and mitigate vulnerabilities.\nCoordinate with product, engineering, and other departments to support secure outcomes, while building out the product security knowledge base.\nPerform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.\nExposure to various application security testing tools and common offerings for application security testing and analysis.\nExperience with Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools.\nResponsible for designing and evaluating application security in all phases of the application life cycle.\nApply coding and testing standards, apply security testing tools and conduct code reviews.\nDetermine and document software patches or the extent of releases that would leave software vulnerable.\nAbility to triage, reproduce, and recommend remediations for vulnerabilities.\nTranslate security requirements into application design elements including documenting the elements of the software attack surfaces, conducting threat modeling, and defining any specific security criteria.\nIdentify basic common coding flaws at an elevated level while consulting with engineering staff to evaluate interface between hardware and software.\nDevelop threat model based on customer interviews and requirements and consult with customers about software system design and maintenance.\nEffectively communicate security threats to non-technical stakeholders.\nApply secure code documentation while improving practices and maintenance.\nQualifications include:\nUnderstanding of different compliance frameworks and their implications in building secure software.\nAbility to identify solutions for common security problems while participating in a broader agile Application Security team.\nEffective understanding of security industry best practices such as protocols, cryptography, authentication, authorization, and secure application programming.\nComprehensive understanding of software development lifecycle models as well as secure coding techniques.\nProficiency in the use of application security testing tools (e.g., SAST, DAST, SCA, IAST, WAF).\nStrong written and verbal communication skills to both technical and non-technical personnel.\nA mix of relevant certifications in key areas would be helpful (but not required): CSSLP, CISSP, CASE.\nBenefits\nSalary commensurate with years’ of experience, technical expertise and geographic location.\nSalary range: $100,000 to $175,000.\nPerformance bonuses.\nBenefits package that includes 100% paid medical, dental and vision for the employee.\n401(k) with employer match.\nStrong company culture.\nFlexible PTO policy.\nFlexible working arrangements.\nAnnual company overnight retreat (employee + significant other)\nJob Type: Full-time\nPay: $100,000.00 - $175,000.00 per year\nBenefits:\n401(k)\nDental insurance\nFlexible schedule\nHealth insurance\nPaid time off\nVision insurance\nCompensation Package:\nPerformance bonus\nSchedule:\nMonday to Friday\nWork Location: Remote","company":"Evotek","rawCompany":"evotek","isRemote":true,"isActive":false,"createdAt":"2026-08-15T12:27:31.629Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Application Security Engineer - Remote","description":"EVOTEK is North America's premier enabler of secure digital business focused on innovation. With an integrated set of technical domains, including data center, network, security, cloud, and communications, EVOTEK provides a cohesive approach to digital initiatives while driving business impact. In addition to technical solutions, EVOTEK offers advisory services and strategic sourcing to help bridge the gap between IT and business, reducing functional silos and facilitating alignment. EVOTEK was named Inc. Magazine's \"Best Places to Work\" in 2018, 2020, and 2022. In addition, for seven consecutive years, EVOTEK was listed in The San Diego Business Journal's \"Best Places to Work\" and recognized in CRN's \"Solution Provider 500\" list, CRN's \"Next-Generation 250\" list, CRN's \"Triple Crown\" and highlighted as CRN's \"Top 150 Growth Companies\".\nThe Application Security Engineer ensures that company applications and services are secured and implemented with the best security practices. The main goal of AppSec Engineer is to protect applications from security attacks by developing, inserting, and testing security components that make the application more secure. The ideal candidate will support application security reviews, threat modeling, and perform application security vulnerability management.\nRequirements\nPerform secure program testing, review, and/or assessment to identify potential flaws in codes and mitigate vulnerabilities.\nCoordinate with product, engineering, and other departments to support secure outcomes, while building out the product security knowledge base.\nPerform risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.\nExposure to various application security testing tools and common offerings for application security testing and analysis.\nExperience with Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools.\nResponsible for designing and evaluating application security in all phases of the application life cycle.\nApply coding and testing standards, apply security testing tools and conduct code reviews.\nDetermine and document software patches or the extent of releases that would leave software vulnerable.\nAbility to triage, reproduce, and recommend remediations for vulnerabilities.\nTranslate security requirements into application design elements including documenting the elements of the software attack surfaces, conducting threat modeling, and defining any specific security criteria.\nIdentify basic common coding flaws at an elevated level while consulting with engineering staff to evaluate interface between hardware and software.\nDevelop threat model based on customer interviews and requirements and consult with customers about software system design and maintenance.\nEffectively communicate security threats to non-technical stakeholders.\nApply secure code documentation while improving practices and maintenance.\nQualifications include:\nUnderstanding of different compliance frameworks and their implications in building secure software.\nAbility to identify solutions for common security problems while participating in a broader agile Application Security team.\nEffective understanding of security industry best practices such as protocols, cryptography, authentication, authorization, and secure application programming.\nComprehensive understanding of software development lifecycle models as well as secure coding techniques.\nProficiency in the use of application security testing tools (e.g., SAST, DAST, SCA, IAST, WAF).\nStrong written and verbal communication skills to both technical and non-technical personnel.\nA mix of relevant certifications in key areas would be helpful (but not required): CSSLP, CISSP, CASE.\nBenefits\nSalary commensurate with years’ of experience, technical expertise and geographic location.\nSalary range: $100,000 to $175,000.\nPerformance bonuses.\nBenefits package that includes 100% paid medical, dental and vision for the employee.\n401(k) with employer match.\nStrong company culture.\nFlexible PTO policy.\nFlexible working arrangements.\nAnnual company overnight retreat (employee + significant other)\nJob Type: Full-time\nPay: $100,000.00 - $175,000.00 per year\nBenefits:\n401(k)\nDental insurance\nFlexible schedule\nHealth insurance\nPaid time off\nVision insurance\nCompensation Package:\nPerformance bonus\nSchedule:\nMonday to Friday\nWork Location: Remote","datePosted":"2026-08-15T12:27:31.629Z","dateModified":"2026-08-15T12:27:31.629Z","hiringOrganization":{"@type":"Organization","name":"Evotek","sameAs":"https://jobsearcher.com"},"jobLocationType":"TELECOMMUTE","applicantLocationRequirements":{"@type":"Country","name":"US"},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"e547331bf12dfed81e269db4"},"url":"https://jobsearcher.com/jobs/e547331bf12dfed81e269db4"}}