> Markdown version of [/jobs/ext/1899084-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/1899084-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** PepsiCo, Inc. - **Location:** Plano, TX, United States - **Experience:** Expert - **Salary:** $93,500.0 - $156,450.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Application Programming Interfaces (APIs), Agile Methodology, Amazon Web Services, Microsoft Azure, C Sharp (Programming Language), C++ (Programming Language), Cloud Database, Cyber Security, Computer Programming, Computer Engineering, Continuous Integration, Information Leak Prevention, Data Security, Identity and Access Management, Python (Programming Language), Object-Oriented Software Development, Software Engineering, Data Streaming, Enterprise Data Management, Google Cloud, Enterprise Software Applications, Data Classification, Software Security, Git, GWAPT, Containerization, Docker - **Published:** August 1, 2026 - **Apply:** https://www.careerjet.com/jobad/usb183505815b8f524b5c386bbeb85e982 ## About the Role 4+ years of experience in cybersecurity, software development, or computer engineering Strong programming skills in Python and JavaScript Experience with DLP, CASB, SASE, DSPM, PAM, or related data security platforms Experience with endpoint security technologies and security-focused development Hands-on experience with Java, C++, or C# Experience with cloud platforms such as AWS, Azure, or GCP Familiarity with Git, CI/CD pipelines, automation tools, and Docker/containerization Solid understanding of core security concepts: encryption vs. hashing, authentication vs. authorization, secure secrets management/vaults, salting and weak hashing algorithms Skills & Experience Exposure to agile software development methodologies Security certifications a plus: Security+, CEH, CISSP, OSCP, CISM, CISA, GPEN, or GWAPT Cybersecurity ## Description The team needs a hands-on engineer who thrives in a fast-paced environment, enjoys solving complex security problems through code, and can work closely with cross-functional security and engineering teams., Develop and maintain automation, tooling, and scalable software solutions supporting enterprise data security initiatives Build security-focused applications using Python, JavaScript, and object-oriented languages such as Java, C++, or C# Support Data Loss Prevention (DLP), cloud data protection, data classification, encryption, access governance, and related cybersecurity initiatives Integrate APIs and automation tools to collect KPIs/KRIs and improve operational efficiency Work within CI/CD pipelines and modern cloud environments (AWS, Azure, GCP) Collaborate with Security Operations, Enterprise Architecture, Legal, Privacy, and Platform teams on enterprise-wide initiatives Create technical documentation, including system design docs, architecture diagrams, and data flows Identify vulnerabilities and implement security improvements across enterprise applications and platforms ## Related Videos - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)