Back to all roles

[Remote] Application Security Engineer

Remote-first Full-time Now hiring

Note: The job is a remote job and is open to candidates in USA. CivicPlus is a company focused on innovation and collaboration to impact local government and the residents they serve. The Application Security Engineer is responsible for embedding security throughout the software development lifecycle, leading application security testing, and driving vulnerability remediation efforts.

Responsibilities

  • Perform security code reviews, threat modeling, and architecture reviews across all development projects as part of secure Software Development Lifecycle (SDLC)
  • Collaborate with development teams to integrate secure design, secure coding standards, and security controls across the SDLC
  • Identify, track, and validate vulnerabilities and security defects from security testing and scanning, collaborating with development teams to inform and prioritize remediation within compliance timeline requirements
  • Coordinate external, independent penetration testing of production environments
  • Lead application security testing, including static, dynamic, and interactive application security testing (SAST, DAST, IAST)
  • Serve as a subject matter expert on application security vulnerabilities (such as the OWASP Top 10) and emerging threats
  • Partner closely with organizational functions and key stakeholders to provide guidance, tooling, and training to development teams and ensure secure design principles are applied, risks are mitigated, and applications are resilient against modern threats

Skills

  • 3 – 7 Years of experience in application security, secure development, penetration testing, or related field
  • Strong understanding of Secure Software Development Lifecycle (SSDLC), application security controls, and vulnerability management
  • Familiarity with secure coding practices across multiple development languages (such as C#, Go, Java, JavaScript, or Python)
  • Knowledge of cloud-native and SaaS application environments
  • Security+, GSEC, GSSP or equivalent
  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, Information Systems, or a related field

Benefits

  • Comprehensive health insurance
  • Dental insurance
  • Vision insurance
  • Flexible Time Off
  • 401(k) plan

Company Overview

  • CivicPlus is the only government technology company exclusively committed to powering and empowering governments to efficiently operate, serve, and govern through the use of our innovative and integrated technology solutions purpose-built and supported by former municipal leaders and award-winning support teams. It was founded in 1998, and is headquartered in Manhattan, Kansas, USA, with a workforce of 501-1000 employees. Its website is http://www.civicplus.com.
  • Apply To This Job

    More remote roles

    [Remote] Sales Operations & CRM Manager

    Remote-first Full-time

    [Remote] Healthcare Supply Chain Lawyer

    Remote-first Full-time

    [Remote] Senior Software Engineer, Security Infrastructure

    Remote-first Full-time

    [Remote] Senior Salesforce Billing Administrator

    Remote-first Full-time

    [Remote] Staff Full Stack Engineer

    Remote-first Full-time

    [Remote] Applied AI Engineer

    Remote-first Full-time

    [Remote] Data Scientist (Enterprise AI) | Remote

    Remote-first Full-time

    [Remote] Product Data Analyst

    Remote-first Full-time

    [Remote] Head of Social Media

    Remote-first Full-time

    [Remote] Business Operations Intern

    Remote-first Full-time

    Experienced Remote Data Entry Clerk – Accurate and Efficient Data Management for arenaflex

    Remote-first Full-time

    Teacher: Online Instructor 2026/2027 - PACT Charter School- Ramsey,MN

    Remote-first Full-time

    Product Engineer / SME (Source-to-Pay Ivalua)

    Remote-first Full-time

    Software Engineer I

    Remote-first Full-time

    Experienced Remote Customer Service Expert – Delivering Exceptional Support and Experiences at arenaflex

    Remote-first Full-time

    Experienced Remote Apple Products Online Chat Support Specialist – Flexible Work From Home Customer Service & Technical Assistance Role at arenaflex

    Remote-first Full-time

    Regional Director of Event Fundraising - California Bay Area

    Remote-first Full-time

    Experienced Customer Service Representative – Remote Opportunity with arenaflex

    Remote-first Full-time

    Virtual Biology Educator

    Remote-first Full-time

    Looking for Credit/Debit Card Owners in the United Kingdom!

    Remote-first Full-time