Wrike logo
Wrike

Do the best work of your life.

Application Security Engineer

Application EngineerApplication EngineerFull TimeRemoteSeniorTeam 1,001-5,000Since 2006H1B SponsorCompany SiteLinkedIn

Location

Estonia

Posted

2 days ago

Salary

0

Seniority

Senior

Bachelor DegreeEnglishCloudJavaPHPTypeScript

Job Description

Application Security Engineer

Wrike

• Own recurring Application Security activities for multiple product teams, including secure design reviews, threat modeling, code review, testing validation, and remediation guidance. • Assess vulnerabilities and findings from scanners, testing, bug reports, and internal reviews; distinguish meaningful risk from noise and help teams focus on the most important issues. • Validate security fixes and recommend compensating controls or practical alternatives when ideal remediation is not immediately possible. • Improve day-to-day AppSec workflows by tuning checks, refining rules, improving triage quality, and integrating security more effectively into developer workflows and CI/CD pipelines. • Help engineers understand security findings in practical product terms by providing clear prioritization and actionable remediation guidance. • Contribute to secure-by-default development practices by reinforcing standards, reference patterns, and review expectations. • Use structured AI workflows to support complex AppSec analysis, such as broader codebase review, design decomposition, review preparation, and documentation synthesis, while maintaining clear guardrails around prompt and context hygiene, human oversight, and output quality.

Job Requirements

  • Strong hands-on knowledge of common web and API security issues, authentication and session management concepts, secrets handling, and secure coding fundamentals.
  • Proven experience conducting secure code reviews in modern engineering environments, especially in Java, TypeScript, and PHP, with the ability to clearly explain security flaws and collaborate on effective remediation.
  • Experience leading or facilitating routine threat modeling for product features or services and translating outcomes into actionable security requirements.
  • Experience managing Application Security tools such as SAST, SCA, DAST, and secrets scanning solutions, as well as bug bounty platforms, with a focus on CI/CD integration, false positive reduction, and signal quality improvement.
  • Working knowledge of OAuth/OIDC, service-to-service authentication, secrets management, and foundational cloud or container security concepts.
  • Ability to prioritize findings based on exploitability, exposure, business impact, and remediation effort rather than relying on severity labels alone.
  • Strong written and verbal communication skills, with the ability to work effectively with engineers, technical leads, and product stakeholders.
  • Sound judgment when using AI-assisted workflows, treating AI as a copilot rather than an authority and validating correctness, exploitability, and business context before taking action.

Benefits

  • 28 calendar days of paid vacation
  • Sick Leave Compensation (5 Paid Uncertified Sick Days)
  • Parental Leave: 18 Weeks Maternity / 4 Week Paternity
  • 2 Volunteer Days
  • Health Insurance (Employees + Dependents)
  • Life Insurance Plan
  • Utility Allowance (30 EUR/month, subject to taxation)
  • Fitness Plan (800 EUR/year)
  • Full-remote & On-demand access to Co-working space

Related Categories

Related Job Pages

More Application Engineer Jobs

Umdasch Group logo

Senior Project Engineer – Special Scaffolding Applications

Umdasch Group

Welcome to the Umdasch Group – your future partner along the entire life cycle of a building object.

Full TimeRemoteTeam 10,001+H1B No Sponsor

• Strongly support the implementation and execution of specialized and customized Scaffolding applications within the sector of Infrastructure, Power Plants and Highrise projects globally. • Develop special Scaffolding designs and solutions from quotation to order processing projects. • Provide technical advice for projects with a focus on cross-functional collaboration to advance business performance, productivity, and customer satisfaction, ensuring the engineering solutions are safe and economical. • Act as the contact point in terms of Special Scaffolding Applications, technical knowledge, and product expertise. • Be in close contact with Product Management and other stakeholders, to support the implementation of corporate set standards and product development. • Ensure knowledge transfer of Special Scaffolding solutions to different country or area organizations by mentoring, training, and guiding the teams through the different stages of the design.

Austria
€46.3K / year
AUTO1 Group logo

Senior Java Engineer

AUTO1 Group

AUTO1 Group is Europe’s leading digital automotive platform.

Full TimeRemoteTeam 5,001-10,000Since 2012H1B No Sponsor

Role Description As a Senior Java Engineer at AUTO1’s you will play a pivotal role in revolutionizing the automotive industry by developing cutting-edge tools and applications. In this role, you will primarily focus on the consumer financing area of our retail website, Autohero. You will take ownership of our applications, ensuring they meet the highest quality standards and deliver exceptional value to our clients. As part of a remote-first team, you’ll have the opportunity to propose and lead innovative solutions and lead impactful changes that solve both technical and business challenges. - Join a diverse Retail Team of skilled engineers and hands-on technical managers based in Berlin and Kyiv. - Share ownership of the full development lifecycle, from investigation and architecture to quality assurance, deployment, monitoring, and maintenance of critical services. - Tackle complex problems with a practical, hands-on approach, driving platform innovation. - Collaborate closely, lead PoCs and refactoring initiatives, and promote best practices while maintaining a balanced and open-minded perspective. - Actively contribute to enhancing the tech stack, which primarily includes Spring 5, Java 11+, AWS ECS, and Lambdas. - Foster a culture of innovation by challenging the status quo and implementing cutting-edge technologies as part of daily work. Qualifications - Proficient in Java, Spring, and the JVM ecosystem, comfortably working in cloud and microservice environments. - Skilled in Docker and CI/CD flows as a core part of daily work. - Experienced with monitoring and tracing tools to ensure quality and operational excellence. - Committed to self-reflection and continuous self-improvement, actively rounding up your professional profile. - Advanced skills with JDK11+, AWS, PostgreSQL, Jenkins Job DSL, Terraform, and Spring Framework (preferred), plus experience with TypeScript and React is a plus. - Well-versed in software design patterns and principles (chain of responsibility, DI/IoC, strategy, builder patterns), balancing design complexity with data and business flow; role is 80% backend, 20% frontend. Benefits - Your work-life balance and working from home are part of our culture, so we offer you working from home options and flexible working hours. - Colleagues who strive for excellence while using the latest technologies. - Team and company events like Hackathons, Company Party. - Join more than 100 different nationalities in a truly international and diverse working environment. Contact Marija Dimitrova At AUTO1 Group we live an open culture, believe in direct communication, and value diversity. We welcome every applicant; regardless of gender, ethnic origin, religion, age, sexual identity, disability, or any other non-merit factor.

Europe
GovCIO logo

Pharmacy Applications Release Verifier

GovCIO

GovCIO is a service-disabled-veteran-owned small business (SDVOSB) that offers technology services to improve business performance for government organizations.

Title: VistA Pharmacy Applications Release Verifier (Remote) Location: United States Job Description: Information Technology Suitability/Public Trust Fully remote GovCIO is seeking a candidate (remote) for a VistA Pharmacy Applications Release Verifier position to join our Patient Care Services Product line, in the Office of Information Technology at the Department of Veterans Affairs. The candidate will support the release management and package verification of VistA‑related patches using the National Patch Module (NPM) on FORUM. This position will be a fully remote within the United States with core hours of operation from Monday to Friday 8 AM to 5PM ET. Responsibilities This role collaborates closely with development teams, Health Infrastructure and Systems Management (HISM) VistA Applications teams, Software Quality Assurance (SQA), and VHA Initial Operating Capability (IOC) test sites throughout the full patch lifecycle. The environment is highly structured and process‑driven, requiring exceptional attention to detail, strong communication skills, and the ability to manage documentation, testing steps, and release governance with precision. As the Verifier, the candidate ensures all requirements, validations, and release steps are executed according to VistA Patch Release standards. - Coordinate end-to‑-‑end VistA patch testing and release activities using the National Patch Module (NPM). - Collaborate effectively with development teams, SQA, HISM VistA Applications teams, and IOC test sites throughout the patch lifecycle. - Perform Verifier responsibilities, including checklist execution, review validation, compliance date alignment, and patch status updates. - Manage release artifacts by moving builds, executables, and documentation to the National File Server as required. - Analyze defect incidents, reproduce issues, conduct assessments, and document findings for defect resolution. - Maintain Problem Incident updates throughout development, testing, and verification phases. - Evaluate enhancement requirements by reviewing user stories and validating expected functionality. - Create Patch Stubs following VistA Patch Template standards, including Packman and Host File formats. - Develop complete Patch Descriptions with accurate installation steps and required supporting documentation. - Upload KIDS Builds to NPM on FORUM and document progress in Problem Incidents. - Coordinate with other Verifiers or Functional Analysts when development overlaps across product areas. - Conduct technical preparation activities such as checksum verification and routine backups. - Update routines using approved VistA tools (KIDS Utilities, ^XINDEX) and submit Data Dictionary changes to the DBA. - Validate ICR usage, submit new or updated ICR requests, and coordinate HL7 messaging reviews for impacted components. - Support FDA impact reviews and assess external system impacts, engaging stakeholders as needed. - Assist developer unit testing, coordinate peer code reviews, and support SQA using the VistA SQA Checklist. - Prepare all required SQA and UAT distribution materials, including developer checklists, documentation, and versioned Host File Builds. Qualifications Required Skills and Experience - Master's with 10 years (or commensurate experience) - Strong understanding of software development lifecycles (SDLC), Agile/SAFe, and CI/CD pipelines. - Proven experience coordinating complex, multiteam releases in enterprise or mission critical environments. - Exceptional communication, facilitation, and stakeholder management skills. - Ability to manage multiple releases simultaneously with tight deadlines. - Strong analytical, organizational, and problem solving skills. Clearance Required: Ability to obtain and maintain a Suitability/Public Trust clearance Preferred Skills and Experience - Experience working within the Department of Veterans Affairs (VA) or other federal healthcare environments. - Familiarity with NPM, KIDS Builds, HL7 messaging, Data Dictionary structures, and VistA architecture. - Experience with incident/problem management and structured testing methodologies. SAFe ITIL, PMP, or Agile certification(s). - Experience with automated testing, monitoring, and deployment tooling. - Strong understanding of risk, compliance, and audit requirements for production systems. Posted Salary Range USD $130,000.00 - USD $135,000.00 /Yr. Company Overview GovCIO is a team of transformers--people who are passionate about transforming government IT. Every day, we make a positive impact by delivering innovative IT services and solutions that improve how government agencies operate and serve our citizens. But we can't do it alone. We need great people to help us do great things - for our customers, our culture, and our ability to attract other great people. We are changing the face of government IT and building a workforce that fuels this mission. Are you ready to be a transformer? Employee Perks At GovCIO, we consistently hear that meaningful work and a collaborative team environment are two of the top reasons our employees enjoy working here. In addition, our employees have access to a range of perks and benefits to support their personal and professional well-being, beyond the standard company offered health benefits, including: - Employee Assistance Program (EAP) - Corporate Discounts - Learning & Development platform, to include certification preparation content - Training, Education and Certification Assistance* - Referral Bonus Program - Internal Mobility Program - Pet Insurance - Flexible Work Environment *Available to full-time employees Our employees’ unique talents and contributions are the driving force behind our success in supporting our customers, which ultimately fuels the success of our company. Join us and be a part of a culture that invests in its people and prioritizes continuous enhancement of the employee experience. We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, or status as a protected veteran. EOE, including disability/vets. Posted Pay Range The posted pay range, if referenced, reflects the range expected for this position at the commencement of employment, however, base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, education, experience, and internal equity. The total compensation package for this position may also include other compensation elements, to be discussed during the hiring process. If hired, employee will be in an “at-will position” and the GovCIO reserves the right to modify base salary (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, GovCIO or individual department/team performance, and market factors.

United States
$130K - $135K / year
Full TimeRemoteTeam 10,001+Since 1921H1B Sponsor

• Swift response to technical queries from customers. • Work closely with distributors, contractors and OEMs to provide suitable solutions for their project requirements. • Assist customers in using product selection software. • Assist customers in using heat load calculation software. • Assist customers in refrigerant line components selection, selection of suitable electrical switch gears, refrigerant line sizing etc. • Maintain a technical library, support the creation of catalogs, application engineering bulletins, and user manuals. • Develop cross reference documents with competition. • Engage with customers on alternate refrigerants. • Explore new applications in the region. • Support semi-hermetic compressor to scroll transition. • Lead NBO for refrigeration products in MEA working together with the Sales organization. • Develop and manage a training calendar and create technical training materials. • Deliver training sessions including hands-on training on controllers and protections used in condensing units and compressors. • Coordinate the tools and resources needed for the training center. • Manage warranty claims and provide troubleshooting support for both production and field failures. • Conduct root cause analysis (RCA) through data logging, field visits, and compressor teardown analysis. • Collaborate with manufacturing plants, providing feedback to improve product performance. • Analyze and maintain warranty data to support continuous improvement initiatives.

South Africa