Lead Application Security Engineer (5169) jobs in United States
cer-icon
Apply on Employer Site
company-logo

NextPath Career Partners · 10 hours ago

Lead Application Security Engineer (5169)

NextPath Career Partners is currently seeking a Lead Application Security Engineer to join their client’s team in Atlanta, GA. The role involves focusing on application and product security within a hybrid work environment, requiring hands-on experience with modern SDLC/DevSecOps practices, and the ability to communicate complex security risks effectively.

Professional ServicesRecruitingStaffing Agency
check
Growth Opportunities
badNo H1Bnote

Responsibilities

2 years in Application / Product security or software engineering with a strong security focus
Hands on depth with modern SDLC/DevSecOps in cloud-native environments: microservices, APIs, containers/Kubernetes, serverless, IaC (Terraform/CloudFormation/ARM/Bicep), and CI/CD integration
Practical expertise operating and tuning SAST, DAST, SCA, API testing, IaC/container scanners, plus CNAPP for multi cloud
Scripting/automation proficiency (Python preferred; PowerShell/Bash nice) and REST API integration skills; able to create quick utilities and pipeline jobs to reduce manual effort
Strong knowledge of OWASP Top 10, ASVS, SAMM, NIST SSDF, CSA CCM, secure design patterns, cryptography fundamentals, authN/Z (OAuth2/OIDC/JWT), and common web/API vulns and mitigations
Experience triaging responsible disclosure or bug bounty reports and driving coordinated remediation with product teams
Excellent communicator who can simplify complex risk for engineers and leaders; bias to action and measurable outcomes

Qualification

Application SecurityDevSecOpsSAST/DAST/SCAOWASP Top 10Scripting/AutomationCloud-native environmentsCommunicatorBias to action

Required

2 years in Application / Product security or software engineering with a strong security focus
Hands on depth with modern SDLC/DevSecOps in cloud-native environments: microservices, APIs, containers/Kubernetes, serverless, IaC (Terraform/CloudFormation/ARM/Bicep), and CI/CD integration
Practical expertise operating and tuning SAST, DAST, SCA, API testing, IaC/container scanners, plus CNAPP for multi cloud
Scripting/automation proficiency (Python preferred; PowerShell/Bash nice) and REST API integration skills; able to create quick utilities and pipeline jobs to reduce manual effort
Strong knowledge of OWASP Top 10, ASVS, SAMM, NIST SSDF, CSA CCM, secure design patterns, cryptography fundamentals, authN/Z (OAuth2/OIDC/JWT), and common web/API vulns and mitigations
Experience triaging responsible disclosure or bug bounty reports and driving coordinated remediation with product teams
Excellent communicator who can simplify complex risk for engineers and leaders; bias to action and measurable outcomes

Preferred

Python proficiency
PowerShell/Bash scripting skills

Company

NextPath Career Partners

twittertwittertwitter
company-logo
NextPath Career Partners is a recruitment firm that provides targeted hiring solutions for companies.

Funding

Current Stage
Early Stage

Leadership Team

leader-logo
Gina Macaluso Curry
CEO
linkedin
Company data provided by crunchbase