> Markdown version of [/jobs/ext/551816-advisor-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/551816-advisor-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Advisor, Application Security Engineer - **Company:** Epsilon, Inc. - **Location:** Chicago, IL, United States - **Experience:** Expert - **Salary:** $100,000.0 - $185,600.0 - **Contract:** Temporary contract - **Skills:** Software Applications, Application Testing, User Authentication, Cloud Computing Security, Static Program Analysis, Cyber Security, Continuous Integration, Integrated Development Environments, Network Security, Network Segmentation, Open Web Application Security, Secure Coding, Software Engineering, Web Applications, Scripting, Software Security, Information Technology, Static Application Security Testing, Programming Languages, Dynamic Application Security Testing - **Published:** June 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c13d6031a55ae716 ## About the Role Do you have a Bachelor's degree?, + BS / MS in Computer Science or similar degree + Minimum of 10 years of experience in related fields + Direct experience in software development + Direct experience with at least one or more CI/CD platforms + Direct experience with application testing (e.g., SAST, DAST, MAST, RAST, IAST) + Direct experience in application vulnerability management processes + Working knowledge of current software development methodologies + Working knowledge of OWASP Top 10 and CWE 25 + Working knowledge of programming languages and scripting + Working knowledge of software design lifecycle + Working knowledge of web and app security stack (e.g., API security) + Working knowledge of cloud security concepts and technologies + Working knowledge of authentication and authorization flows in web applications + Strong understanding of threat modeling + Strong understanding of network security (e.g , WAF, Micro-segmentation) + Strong understanding of cryptography topics * Why you might stand out from other talent * + Strong collaboration + Interpersonal, collaborative, written and verbal communication skills + Excellent problem solving, critical thinking skills + Ability to work independently and self-motivate ## Description You will help to ensure the secure delivery of Epsilon's software applications by designing and implementing secure coding practices, conducting advanced security testing through application security platforms, and collaborating with development teams to ensure security is integrated throughout the development lifecycle. You will be a core member of the application security team as a contributor in the areas of secure software architecture and design, web application vulnerability and remediation, and a variety of tools used in secure development and testing. You will provide support, guiding and advising multiple development teams to develop secure applications and services in accordance with the established application security policies and standards. Finally, you will be responsible for recommending and guiding the implementation of modifications and enhancements to ensure the organization is evolving with the threat landscape. By continuously improving and expanding our security platforms and fostering strong collaborative relationships, you will create a more secure, efficient, and proactive development environment, ultimately ensuring the integrity and safety of Epsilon's software applications. Responsibilities What you'll Achieve * Perform code analysis of applications, manually and through application security testing solutions, to identify vulnerabilities. * Provide context and rationalization for identified vulnerabilities. * Review and recommend remediation actions for identified vulnerabilities. * Drive and support security architecture design reviews and threat modeling of our products. * Improve the accessibility of security through automation, vulnerability exception processing, embedding secure practices within continuous integration pipelines, and other related activities. * Build trust relationships with teams to effectively achieve security goals. * Drive cross-disciplinary initiatives to improve the security of our engineering ecosystem and products. * Contribute to relevant security standards, processes, and other formal documentation. * Collaborate with teams to ensure understanding and compliance with relevant security policies, standards, and best practices. * Assist in onboarding new teams and applications to security platforms. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Building Security Champions](https://www.wearedevelopers.com/videos/193-building-security-champions) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)