> Markdown version of [/jobs/ext/2074105-application-security-engineers](https://www.wearedevelopers.com/jobs/ext/2074105-application-security-engineers). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineers - **Company:** Stellar IT Solutions - **Location:** Saint Louis, United States (Remote available) - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Code Review, Open Web Application Security, Systems Development Life Cycle, Secure Coding, Software Security, Static Application Security Testing, Vulnerability Analysis - **Published:** August 15, 2026 - **Apply:** https://www.dice.com/job-detail/de848cf4-84c7-4052-bad8-eb3c3172f398 ## About the Role * Strong background in Application Security / Product Security. * Handson experience with OWASP Top 10, SAST, vulnerability assessment, secure SDLC, threat modeling, code review, API security. * Ability to validate findings, assess severity, and trace vulnerabilities to root cause. * Experience working directly with developers to remediate vulnerabilities. * Strong communication skills to bridge security and engineering teams., * A software engineer turned AppSec professional someone who understands both the security problem and how developers actually fix it. * Proven ability to work across multiple product teams, enabling secure development practices. * Experience with modern CI/CD pipelines and integrating security tooling into developer workflows. CONTRACTOR, FULL_TIME, PART_TIME ## Description * Validate AIgenerated vulnerability findings (e.g., from Anthropic s Mythos) and assess exploitability, severity, and business impact. * Trace vulnerabilities to their technical root cause at the code level. * Collaborate with development teams to design and implement secure remediation strategies. * Conduct secure code reviews, threat modeling, and vulnerability assessments. * Define and enforce secure SDLC practices across product teams. * Provide guidance on API security, OWASP Top 10 risks, and secure design principles. * Partner with product owners and engineering teams to ensure vulnerabilities are remediated effectively and deployed safely. * Document findings, remediation steps, and best practices to strengthen organizational security posture. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) - [How GitHub secures open source](https://www.wearedevelopers.com/videos/1450-how-github-secures-open-source) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)