Hampton North · 11 hours ago
Application Security Engineer
Hampton North is partnered with an international brand to find a senior-level Application Security Engineer focusing on safeguarding the confidentiality, integrity, and accessibility of enterprise data through secure application development practices with emphasis on cloud infrastructure. The role centers on managing information security risk while protecting brand reputation, organizational assets, team members, and customer data.
Responsibilities
Design and establish the organization's Secure Development Lifecycle framework for Azure environments
Support PCI compliance activities including web application security assessments
Create and enforce secure coding standards, governance frameworks, and operational procedures
Deliver training and guidance to technical and business teams on application security best practices
Ensure secure implementation of both commercial off-the-shelf and proprietary software solutions
Map and analyze data flows across application ecosystems to identify implementation-related security risks
Deploy and manage security technologies supporting application development including static analysis, dynamic testing, API protection, web application firewalls, cloud-native application protection, secret management, workload protection, bot mitigation, content distribution networks, and certificate infrastructure
Maintain a proactive, service-oriented approach to security partnerships
Deliver high-quality support to internal teams and external partners
Propose improvements to applications and infrastructure to strengthen security posture
Stay current with emerging security technologies, solutions, and industry trends
Work effectively both independently and as part of cross-functional teams
Qualification
Required
5+ years of experience in software engineering, application security, and/or cloud security
Demonstrate proficiency with Azure and Microsoft 365 ecosystems including CI/CD pipelines, infrastructure automation, container technologies, and system integrations
Bachelor's degree in Computer Science, Engineering, Information Systems, or related technical field, and/or relevant professional certifications
Practical hands-on experience with: Python, JavaScript, .NET/C#, Microsoft Azure, application performance monitoring tools, e-commerce platforms, content delivery networks, collaboration platforms, and public key infrastructure
Experience with Agile methodologies including sprint planning, backlog refinement, and requirements engineering
Advanced understanding of designing and deploying secure applications across hybrid cloud architectures
Current knowledge of application-layer threats and attack vectors (such as OWASP Top 10 vulnerabilities)
Proven ability to assess and rank application vulnerabilities and guide remediation efforts
Experience mentoring both technical and non-technical personnel
Demonstrated ability to rapidly acquire new technical knowledge and understanding of contemporary application security tools and practices
Excellent verbal and written communication abilities with proven experience influencing stakeholders across organizational boundaries
Self-motivated with demonstrated ability to deliver results and take full ownership of challenges and their solutions
Must be authorized to work in the United States