> Markdown version of [/jobs/ext/245594-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/245594-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** Manpower - **Location:** Raleigh, NC, United States - **Experience:** Expert - **Salary:** $135,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), .NET Framework, Amazon Web Services, Microsoft Azure, Burp Suite, Cloud Computing Security, Cyber Security, DevOps, Python (Programming Language), Open Web Application Security, PCI Data Security Standards, Secure Coding, Software Vulnerability Management, Scripting, Software Security, Veracode, Information Technology, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** May 17, 2026 - **Apply:** https://www.juju.com/job/00000000g04hkk ## About the Role + 5+ years in application security, secure development, and vulnerability management. + Hands-on experience with Veracode, Burp Suite, and other DAST/SAST tools. + Strong coding/scripting skills in Java, Python, and familiarity with CI/CD pipelines. + Knowledge of OWASP Top 10, SANS 25, and cloud security (AWS, Azure). + Bachelor's degree in Computer Science, Cybersecurity, or equivalent experience. ## Description We are seeking a talented **Application Security Engineer** to join our client, a leading **financial services organization** . You will be part of their Cybersecurity department supporting Application Security and DevSecOps teams., + Conduct application security testing (SAST, SCA, DAST) using tools like Veracode and Burp Suite. + Integrate security testing into CI/CD pipelines and collaborate with DevOps teams. + Remediate vulnerabilities in Java, .NET, and Python codebases following secure coding practices. + Maintain compliance with frameworks such as NIST, PCI-DSS, SOX, and CIS. + Support incident response and design security alerts to detect threats. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)