> Markdown version of [/jobs/ext/2661732-sr-engineer-application-security-usa-remote](https://www.wearedevelopers.com/jobs/ext/2661732-sr-engineer-application-security-usa-remote). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Engineer, Application Security - USA Remote - **Company:** Danaher Corporation - **Location:** New York, NY, United States - **Experience:** Expert - **Salary:** $150,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Cloud Computing Security, Cloud Engineering, Code Review, Encodings, Cyber Security, Software Design Patterns, Github, Systems Development Life Cycle, Software Engineering, Large Language Models, Sonatype, Software Security, Veracode, GWAPT, Information Technology, Checkmarx, Static Application Security Testing, Dynamic Application Security Testing - **Published:** August 29, 2026 - **Apply:** https://dejobs.org/x/x/8061DD1D5A854B5FB9DF948E7ED17048/job/ ## About the Role * 9+ years of experience in application/product security or security-focused software engineering. * Hands-on experience embedding security into the SDLC: secure design review, threat modeling, code review, and application security testing (SAST, DAST, SCA, IaC and secret scanning). * Experience with application security tooling (such as Snyk, Veracode, Checkmarx, Semgrep, or GitHub Advanced Security) integrated into CI/CD pipelines. * Experience working independently with product engineering teams to remediate vulnerabilities and adopt secure-by-design patterns and guardrails. Travel, Motor Vehicle Record & Physical/Environment Requirements: * Ability to travel around 15%, overnight, within territory or other Danaher locations. It would be a plus if you also possess previous experience in: * Bachelor's degree in Cybersecurity, Computer Science, Software Engineering, or related field. * Experience with cloud-native/Kubernetes security, API security, or software supply chain/SBOM. * CSSLP, GWAPT, GWEB, OSWE, OSCP, or a cloud security certification. * Exposure to AI/LLM application security. ## Related Videos - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)