Overcome gaps in legacy GRC by bridging security, risk, and compliance via our Continuous Controls Monitoring platform.
Senior Application Security Engineer
Location
United States
Posted
82 days ago
Salary
0
Seniority
Senior
Job Description
Senior Application Security Engineer
RegScale
• Own the application security program end to end, identifying risks, setting priorities, building strategy, aligning stakeholders, driving implementation across engineering teams, and measuring outcomes. • Conduct threat modeling and security design reviews early in the development process, embedding security thinking into architecture and feature design before code is written. • Partner with developers across all engineering teams to shift security left, coaching on secure coding practices, reviewing code for vulnerabilities, and building security awareness as a shared engineering capability rather than a specialized handoff. • Integrate security tooling and automated security checks into CI/CD pipelines including static analysis, dependency scanning, and secrets detection, ensuring actionable security signals. • Own vulnerability management across the platform, triaging findings from internal testing, external assessments, and tooling, prioritizing remediation based on risk, and driving resolution to completion. • Lead and coordinate penetration testing and security assessments, working with internal and external resources to scope, execute, and translate findings into engineering action. • Define and maintain secure development standards and patterns that engineering teams can adopt, covering areas such as authentication, authorization, API security, and data-handling. • Bridge engineering and the external security team, translating security requirements into engineering priorities and engineering constraints into security strategy, ensuring both sides operate with shared context and mutual accountability. • Support compliance and regulatory requirements including FedRAMP, NIST, and enterprise customer security obligations, working with the Compliance as Code team to ensure security controls are implemented and evidenced effectively. • Assess and address security risks introduced by AI features and integrations, including prompt injection, data exposure through AI interfaces, and third-party model risks, working closely with the Platform and AI team to ensure AI capabilities are built and deployed securely. • Build visibility into the security posture of the platform through metrics, dashboards, and reporting that inform engineering leadership and support customer and auditor conversations.
Job Requirements
- 10 or more years of application security experience with a demonstrated track record of owning security programs and driving initiatives end to end across complex engineering organizations.
- Deep expertise across the application security domain including threat modeling, secure design review, vulnerability assessment, penetration testing, and secure development practices.
- Proven ability to operate as a solo practitioner or small team lead, setting priorities independently, managing competing demands, and delivering outcomes without close supervision.
- Strong experience influencing engineering teams without direct authority, building credibility through technical depth, clear communication, and practical solutions that fit the realities of product delivery.
- Experience integrating security into CI/CD pipelines and modern software delivery practices, with a shift left mindset that prioritizes prevention over detection.
- Solid understanding of cloud security principles and how application security intersects with infrastructure security in a cloud native environment.
- Strong written and verbal communication skills, able to articulate security risk, strategy, and tradeoffs clearly to engineering teams, leadership, and stakeholders including customers and auditors.
Benefits
- RegScale is only able to hire US Citizens
- Health insurance
- 401(k) matching
- Flexible work hours
- Paid time off
- Remote work options
Related Guides
Related Categories
Related Job Pages
More Application Engineer Jobs
Cash Application Specialist
Ethos Risk ServicesEthos Risk Services is a leading insurance claims investigation and medical management company committed to providing better data that translates into better decision-making for our clients. We are at the forefront of innovation in our space, and our success is driven by a dynamic team passionate about delivering exceptional services to our customers.
Role Description Our dynamic Ethos team is seeking a full-time Cash Application Specialist to join our Finance team. This role is responsible for strengthening cash flow by ensuring timely and accurate posting of payments in a high-volume, service-based, multi-entity environment. You will work closely with Billing, Collections, and other Finance team members to quickly resolve issues, reduce Days Sales Outstanding (DSO), and maintain a clean and current A/R subledger. Key Responsibilities - Payment Posting: Accurately post daily cash (checks, ACH, wires, credit cards) in Microsoft Dynamics 365 Business Central with correct customer, invoice, and dimension coding. - Remittance Reconciliation: Retrieve and reconcile remittances (lockbox files, customer portals, emailed advices) and resolve unapplied cash quickly. - Dispute Resolution: Research and clear deductions, chargebacks, and short-pays; prepare supporting documentation for approvals or write-offs. - Document Management: Maintain finance documents on the shared drive for accuracy and accessibility. - Finance Support: Assist with other finance duties as needed. - Daily Reporting: Use Excel (lookups) to verify and produce cash application files. - Audit Trail: Maintain copies of remittances and proper receipt documentation for bank deposits. - Master Data Maintenance: Keep customer master data current (contacts, remit info, terms, portals). - Process Improvement: Follow and improve SOPs and internal controls around cash handling, application, and write-offs. - Month-End Close: Support cash cut-off, reconciliations, and assist with external audits. Qualifications - Education: High school diploma or equivalent required; Associate's or Bachelor's degree in Accounting, Finance, or related field preferred. - Experience: 1+ years of hands-on cash application or accounts receivable experience (required). Experience with Microsoft Dynamics 365 Business Central (or a similar ERP system) is highly desirable. - Skills: - Proficiency with Microsoft Excel (lookups, reconciliations, reporting). - Strong attention to detail with the ability to manage a high volume of accounts and meet deadlines. - Excellent customer service and communication skills, with clear written documentation and professional follow-through. - Ability to work independently while collaborating effectively with cross-functional teams. Working Conditions - This role is eligible for work-from-home/remote or in office environment in our Broussard, LA office. - Constant operation of a computer and other office productivity machinery, such as a calculator, copy machine/printer. - Frequent communication via telephone and in person with clients, customers and co-workers.
Web Application Systems Analyst II - Computing and Technology Services Salary: Commensurate with experience Benefits: The University offers generous benefits including paid time off (holidays, holy days and vacation), employer matching contributions to the retirement plan, and tuition benefits for employees and their eligible dependents. Learn more and explore benefits at www.duq.edu/benefits Location: Computing and Technology Services Position Status: Full-time (35 hours per week) Hours: Varied Position Number: 435707/ 10-1148 FLSA Status: Exempt POSITION SUMMARY: Duquesne University's Computing and Technology Services (CTS) department is looking for a driven Web Application Systems Analyst who is passionate about modern web technology and eager to make a meaningful impact in higher education. As a member of our Web Services team, you'll partner with colleagues from across the University to help power Duquesne's digital transformation — supporting critical services like the University portal and mobile app, content management system, and innovative custom web applications that solve unique and complex challenges for our campus community. This hands‑on technical role involves both operational support and project‑based development. You will configure, maintain, and optimize web‑based systems; monitor performance and security; review vendor releases; and support in‑house applications. You’ll also work closely with stakeholders to gather requirements, translate them into functional specifications, and deliver secure, scalable web solutions through all phases of the application lifecycle. The successful candidate will be a motivated self-starter that approaches work with a sense of urgency, drive, and passion to solve problems. After successful completion of the on-campus onboarding training period, candidates may choose a remote or on‑campus work arrangement to best fit their needs. The candidate in this position should expect to come to campus a minimum of two times per year and as operational needs require. Duties and Responsibilities: Manage and optimize web applications, including configuration, performance monitoring, testing, deployments, upgrades, and UI customization for the University portal, mobile app, and other web solutions. Participate in web application projects to gather end user requirements and assist in formulating solutions that best achieve desired technical and business needs. Build and enhance custom web applications and integrations using low‑code/no‑code tools, iPaaS platforms, and object‑oriented programming when needed, ensuring secure SSO/SAML connectivity. Perform quality assurance to ensure browser compatibility, responsiveness, performance, and compliance with Section 508/ADA accessibility standards. Troubleshoot system issues and work with team members or vendors to resolve bugs and performance problems. Assist in implementation of security and data protection settings, enforcing security procedures and helping to identify and investigate security risks. Support data collection and create performance metrics to identify opportunities for system and web application improvement. Produce technical documentation such as use cases, data flow diagrams, and architecture diagrams. Qualifications: Minimum qualifications: Bachelor’s degree in Computer Science, IT, or related field from an accredited educational institution. Minimum 3 years of web site and/or application development and web application technical administration. Alternatively the successful candidate will possess any equivalent combination or training and experience which provides the knowledge, skills and abilities required to perform the essential job functions. This includes, but is not limited to, the following: Strong analytical, problem solving, and organizational skills with attention to detail. Experience or knowledge with HTML, CSS, Javascript, React and responsive & modern UX design knowledge and abilities. Familiar with JAVA and/or other object-oriented programming languages. Experience building solutions with low‑code/no‑code development tools. Knowledge of the Software Development Lifecycle (system design, development, testing, release and maintenance), including requirements solicitation Basic understanding of data-driven applications; familiarity with querying Active Directory and databases (Oracle or similar) preferred Experience using and consuming RESTful APIs. Experience with using AI/LLMs to enhance productivity. Comfortable with Linux server administration via command line. Strong written and verbal communication skills. Ability to initiate and follow through with work responsibilities and to meet deadlines. Familiarity with version control (Git) a plus. Foundational understanding of SSL, DNS, and networking principles - including ports, hosts, and redirects – preferred. Some mobile app development experience is a plus Sensitivity to the need of each individual to be treated with dignity and respect as it relates to the Mission of the University specifically. Ability and willingness to contribute actively to the mission and to respect the Spiritan Catholic identity of Duquesne University. The mission is implemented through a commitment to academic excellence, a spirit of service, moral and spiritual values, sensitivity to world concerns and an ecumenical campus community. APPLICATION INSTRUCTIONS: Applicants are asked to submit a cover letter, resume, and contact information for three professional references. Duquesne University was founded in 1878 by its sponsoring religious community, the Congregation of the Holy Spirit. Duquesne University is Catholic in mission and ecumenical in spirit. Motivated by its Catholic identity, Duquesne values equality of opportunity both as an educational institution and as an employer.
Robotics Application Engineer
Bedrock RoboticsBedrock Robotics is committed to transforming the construction industry by equipping traditional equipment with AI and machine learning systems that allow conti
• Lead the onsite deployment of autonomous excavators. • Run evaluations on site data to predict autonomous performance and validate release readiness before the buckets start digging. • Debug complex issues across the entire stack—from hydraulic sensors and compute hardware to high-level behavior. • Collaborate closely with Partnerships to identify new customer sites that align with our product roadmap and provide technical feedback. • Translate "robot-speak" into value.
Technical Development Engineer, Film - M. Holland
Ravago AmericasThis job description is not an exhaustive list of areas of responsibility or tasks that an incumbent in this position may be asked to perform. All Employees are required to deliver the desired results intended for their role, at the designated level of knowledge, skill, and ability commensurate with their job title and level within the organization.
Purpose The Technical Development Engineer (TDE) Film Segment is responsible for providing proactive and reactive technical processing and application support associated with M. Holland’s market presence distributing resins to Film converters. This is a home office based role and preferably living in the eastern half of the USA. Areas of Responsibility / Tasks Performance must reflect appropriate level of expertise and achievement of the desired results for the items listed below. - Subject matter expertise in resin selection and evaluations, process optimization, and application development. - Provide technical and application support to M. Holland commercial employees, Clients, and Suppliers at all stages of concept to commercialization. - Experience in various processing techniques and equipment requirements with an emphasis on Extrustion (Film). - Collaborate closely with MH Commercial team to promote new and existing grades which support our strategic Supplier Partners. - Create and present training content to M. Holland employees. - Collaborate closely with M. Holland Suppliers to increase technical awareness and participate in knowledge sharing with internal and external partners. Competencies; Knowledge, Skills, Abilities (KSA) To perform this role successfully, an individual must have experience achieving desired result(s) in their areas of responsibility. The requirements listed below are representative of observable behaviors and essential knowledge, skill, and abilities required of a successful incumbent within our culture. - Prior customer facing experience required; ideal candidate will possess 5+ years of customer facing technical responsibilities with Resin Supplier, Extrusion Processor or Distribution organization. - Exposure working within a matrix organization comprised of Market Development, Sales and technical resources working together to provide solutions. - Ability to identify and present product solutions for applications at the processor or OEM level. - Ability to work independently out of a home office while collaborating with Commercial teams to grow new business. - Proficient in polymer testing and failure analysis. - High level of proficiency using Microsoft Office: Excel, PowerPoint, Word, & TEAMS. - Four-year technical degree preferred, but not required; customer facing technical roles such as Process Engineer, TDE and/or Application Development Engineer a plus. - Ability to travel overnight within the USA, Canada, and Mexico(region specific). - Highly developed interpersonal skills related to customer interaction and internal support of Sales, Product Management, Lab, and Marketing. - Well-developed presentation and planning skills with a passion for teaching others. Work Environment / Conditions The work environment/conditions described herein are representative of those that an incumbent may experience, and therefore - Must be adaptable to work in a shared space, with constant noise, with/or without the use of a private office. - This is a remote role. Physical Requirements / Demands The physical demands described herein are representative of those that must be met by an incumbent to successfully perform the essential functions of this job. *Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions & physical demands of this role. - While performing the duties of this job, the incumbent is regularly required to communicate verbally, read, and comprehend information, type on a consistent and daily basis. - While performing the duties of this job, the incumbent is regularly required to travel by foot, car, bus, airplane, or other means of transportation which require sitting, waiting, and standing for long and short periods of time. The physical demands described herein are representative of those that must be met by an incumbent to successfully perform the essential functions of this job. *Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions & physical demands of this role. - While performing the duties of this job, the incumbent is regularly required to communicate verbally, read, and comprehend information, type on a consistent and daily basis. - Push, pull, and lift to 40lbs on a weekly basis. - While performing the duties of this job, the incumbent is regularly required to travel by foot, car, bus, airplane, or other means of transportation which require sitting, waiting, and standing for long and short periods of time. - Ability to setup desk equipment including setting up equipment on top of desks and connecting cables and power cords under desk (requiring lifting, bending, pushing, pulling). Annual Base Salary: - $100,000 - $135,000 per year (DOE) + Bonus Benefits: - Health, Dental, Vision Insurance - Life Insurance - Paid Short-Term and Long-Term Disability Insurance - Paid Time Off (PTO) - 401(k) Matching Program - Paid Parental Leave - Pet Insurance - Tuition Reimbursement - Wellness Perks - And More Acknowledgement: This job description is not an exhaustive list of areas of responsibility or tasks that an incumbent in this position may be asked to perform. All Employees are required to deliver the desired results intended for their role, at the designated level of knowledge, skill, and ability commensurate with their job title and level within the organization. My signature below confirms my acknowledgment that I have read and understand this job description and understand that the company reserves the right to amend this job description, and/or terms and conditions of employment at any time with or without notice. NOTICE TO APPLICANTS: Ravago Americas is an equal employment opportunity employer. We adhere to a policy of making employment decisions without regard to race, color, age, sex, religion, national origin, disability, veteran status, citizenship status, or marital status. We assure you that your opportunity for employment with this employer depends solely upon your qualifications.
