> Markdown version of [/jobs/ext/290207-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/290207-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Engineer - **Company:** Suncoast Credit Union - **Location:** Tampa, FL, United States (Remote available) - **Experience:** Experienced - **Salary:** $95,000.0 - $145,000.0 - **Contract:** Permanent contract - **Skills:** .NET Framework, Software System Penetration Testing, Automation of Tests, C Sharp (Programming Language), C++ (Programming Language), Code Review, Cyber Security, Computer Programming, Information Systems Security Architecture Professional, Secure Coding, Software Engineering, Web Applications, Software Security, GWAPT, Information Technology, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** May 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2cebdfa84251624d ## About the Role Do you have a Bachelor's degree?, * Bachelor's degree in computer science, cyber security, or related field (A comparable combination of education, work experience, and training may be substituted for education requirements) * 3+ years of secure development experience * Experience programming and developing in .net * Strong knowledge of secure development and secure architecture * Familiar with C++ and C Sharp preferred * Proficient with cyber security, conducting penetration tests to assess vulnerabilities in applications (Blue Test or ethical hacker) * CSSLP, CISSP, GWAPT, CEH, or other applicable certifications preferred * Strong knowledge of web application vulnerabilities, exploits, and remediation techniques * Competent with dynamic and static testing tools or techniques * Experienced with secure coding principles and architecture * Ability to work as part of a larger team to find solutions * Ability to prioritize tasks by effectively managing competing and changing priorities to meet deadlines * Accurate, detail-oriented, and organized with task management * Ability to analyze and resolve complex problems * Excellent written, verbal, and interpersonal communication skills to interact effectively with members, staff, vendors, and government regulators * Ability to influence others regarding policies, practices, and procedures ## Description The Application Security Analyst collaborates closely with the enterprise agility, application development staff, information security and IT teams to implement a DevSecOps program. This role ensures security is built into web applications developed at Suncoast Credit Union. The individual is responsible for maintaining secure development standards, performing application penetration tests, and documenting remediation steps for the organization's applications. This position will maintain products assigned to application security and provide appropriate hands-on training to development staff. Responsibilities: * Identify, exploit, and remediate common application vulnerabilities using tools and code review * Collaborate with the application development team to remediate vulnerabilities * Utilize penetration testing skills, tools, and methodology to assess new applications or services * Enforce secure development standards and requirements * Contribute to application security development projects and discussions * Utilize SAST/DAST and other products to identify security vulnerabilities * Develop and conduct security-focused training for the Suncoast Credit Union development team * Perform research on new security trends, tools, and techniques to improve existing processes * Prioritize and track assigned security issues * Maintain a professional working relationship with other departments through clear communication * Assist new team members with acclimating to new job roles and responsibilities * Respond to emergency situations in a proactive manner * Maintains knowledge and understanding of current trends, laws, and issues affecting area of expertise * Attends educational events to increase professional knowledge and benefit the organization ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools)