> Markdown version of [/jobs/ext/2104466-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/2104466-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** InnoCore Solutions, Inc. - **Location:** Dallas, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** User Authentication, Cyber Security, Continuous Integration, DevOps, Github, Information Systems Security Architecture Professional, Systems Development Life Cycle, Secure Coding, Security Software, Software Engineering, SonarQube, Software Vulnerability Management, Software Security, Information Technology, Software Version Control, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** August 18, 2026 - **Apply:** https://www.dice.com/job-detail/7e034ae0-7848-4150-accd-8315b98668b2 ## About the Role * 3+ years of experience in Cybersecurity engineering * Hands-on experience with application security testing tools such as SAST, SCA, DAST, secret scanning, API security, and vulnerability management platforms. * Experience with Coverity, Black Duck, SonarQube, and GitHub Advanced Security (GHAS) or similar application security tools. * Experience defining and implementing application and API security requirements, including authentication, authorization, encryption, data protection, and secure API design. * Experience working with software development and engineering teams to identify, prioritize, remediate, and track security vulnerabilities. * Strong understanding of CI/CD, source code management, DevSecOps practices, and automated security testing. * Strong communication and collaboration skills with developers, architects, DevOps, security, and technology teams. Education: * Bachelor s degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related field. ## Description * Design, implement, and maintain application security standards, secure coding requirements, and security controls across the Software Development Lifecycle (SDLC). * Define and implement application and API security requirements, including secure architecture, authentication, authorization, and data protection controls. * Establish and operationalize application security best practices, including threat modeling, secure design reviews, and vulnerability management processes. * Configure, maintain, and optimize application security platforms and tools, including SAST, SCA, DAST, secret scanning, API security, and vulnerability management solutions. * Translate application security policies, standards, and architectural requirements into scalable security controls, governance processes, automation, and developer-focused security solutions. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)