> Markdown version of [/jobs/ext/2864442-senior-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/2864442-senior-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Application Security Engineer - **Company:** TekStream Solutions - **Location:** Pacific, MO, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** .NET Framework, Software System Penetration Testing, Automation of Tests, C Sharp (Programming Language), Cloud Computing, Cyber Security, Software Engineering, SonarQube, Cloud Platform System, Software Security, Veracode, Codebase, Devsecops, Qualys, Static Application Security Testing, Dynamic Application Security Testing - **Published:** September 12, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=f7938c82b6744747 ## About the Role TekStream, a Digital Resilience Consulting company, is seeking a skilled and collaborative Application Security Engineer to bridge the gap between our Information Security (InfoSec) team and development personnel. In this role, you will act as a security ambassador, helping developers understand vulnerabilities, automating security into our CI/CD pipelines, and driving remediation efforts to ensure our software is secure by design. The ideal candidate has consulting experience and is open to working west coast hours for our client., * Cybersecurity Knowledge: Solid understanding of cybersecurity principles, including common threats and vulnerabilities. * Development Experience: Proficiency in software development, preferably within a Microsoft .NET/C# code base. * Cloud & On-Premises Familiarity: Familiarity with testing tools and techniques for both on-premises and cloud environments is highly valued. * Tooling Proficiency: Experience with or knowledge of the following tools: + SAST/DAST/Secrets: GitGuardian, Veracode, SonarQube, Qualys DAST, Wiz + Languages: .NET, C# Core Competencies * Analytical Skills: Ability to analyze risks associated with vulnerabilities and recommend appropriate resolutions or risk reduction strategies. * Communication Skills: Excellent oral and written communication skills, with the ability to effectively translate technical details to both technical and non-technical stakeholders in a consulting capacity. * Coordination & Collaboration: Proven ability to collaborate with various resources across IT and vendor populations to achieve security objectives while acting as a supportive team member. * Documentation & Compliance: Proficient in collecting and synthesizing information into an accurate format suitable for audits. High attention to detail is essential. ## Description Technical Liaison & Developer Support * Guide and assist development personnel in understanding security vulnerabilities and implementing remediation options. * Collaborate with developers to ensure adherence to security best practices during development cycles. * Utilize SAST and DAST tools for thorough security testing and validation of remediation efforts. * Recommend efficient solutions for fixes to streamline the overall remediation process. DevSecOps Integration * Build out capabilities of the DevSecOps Team, actively contributing to integrating security practices into CI/CD pipelines. * Automate manual processes to improve the efficiency and speed of development workflows. Vulnerability & Penetration Test Remediation * Analyze findings from penetration tests and propose concrete remediation tasks. * Support assigned teams with the technical aspects of the remediation process. * Monitor and track progress on remediation tasks to ensure timely completion. Security Reviews & Assessments * Review False Positive (FP) submissions, providing clear guidance on resolution and ensuring proper justification and documentation. * Evaluate Risk Acceptance Requests (RARs), providing mitigation recommendations and identifying cases requiring further review. * Participate in architecture reviews of security products and architectures to identify potential improvements. * Support security assessments, including scoping, report reviews, and remediation planning. Process Improvement * Research and recommend optimization opportunities related to the team's organization, processes, procedures, and tools to improve efficiency and maturity. ## Related Videos - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Getting to Know Your Legacy (System) with AI-Driven Software Archeology](https://www.wearedevelopers.com/videos/1437-getting-to-know-your-legacy-system-with-ai-driven-software-archeology) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Why your codebase lies to AI?](https://www.wearedevelopers.com/videos/100281-why-your-codebase-lies-to-ai) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Refactoring in the Age of AI](https://www.wearedevelopers.com/videos/100223-refactoring-in-the-age-of-ai) ## Related Articles - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)