Back to Jobs

Application Security Engineer – Java / Node.js

Remote, USA Full-time Posted 2026-06-15

Overview

Seeking a Java / Node.js Engineer focused on application security remediation, technical debt reduction, and automated vulnerability fixes across multiple platforms. This role partners closely with InfoSec, QA, DevOps, and engineering teams to improve security posture using automation and GenAI-driven solutions.

Key Responsibilities

  • Triage and remediate vulnerabilities from SAST, DAST, and SCA tools
  • Secure Java, Node.js, Ruby on Rails, and WordPress applications against common OWASP risks
  • Patch and upgrade third-party dependencies and harden application configurations
  • Validate fixes through regression testing and user flow checks
  • Integrate automated security and remediation into CI/CD pipelines
  • Build GenAI-assisted remediation workflows using AWS Bedrock or similar tools
  • Reduce technical debt, modernize legacy components, and harden cloud, container, and OS environments
  • Collaborate with InfoSec and QA teams to close security findings and rescans

Required Skills & Experience

  • Strong hands-on experience with Java, Spring Boot, REST APIs, and secure coding
  • Proficiency in Node.js, Express.js, JavaScript/TypeScript
  • Working knowledge of Ruby on Rails and WordPress security
  • Experience with Veracode, Checkmarx, SonarQube, Snyk, or similar tools
  • Strong understanding of OWASP vulnerabilities and mitigation techniques
  • Experience with OAuth2/JWT, API security, Docker, Kubernetes, Linux, and AWS
  • Hands-on experience integrating security into CI/CD pipelines
  • Exposure to GenAI tools such as AWS Bedrock or CodeWhisperer

Preferred Qualifications

  • Experience with microservices, cloud-native security, and DevSecOps
  • Familiarity with OWASP ASVS and threat modeling
  • Security certifications (CEH, CSSLP, OSCP) a plus

Apply tot his job Apply To this Job

Similar Jobs

Application Security Engineer - Cloud Engineering job at The Vanguard Group in Dallas, TX, Fort Worth, TX, Charlotte, NC

Remote, USA Full-time

Cyber Security Fusion Center Engineer

Remote, USA Full-time

Network Security Engineer - Contract -

Remote, USA Full-time

[Remote] DoW Cloud Security Engineer (GCP Security Engineering / SecOps Enablement)

Remote, USA Full-time

Security Engineer – Research & Test

Remote, USA Full-time

AI Security Tester

Remote, USA Full-time

Lead Security Engineer

Remote, USA Full-time

Staff Informaiton Security Engineer - Threat Defense & Automation

Remote, USA Full-time

CMMC Security Engineer/T3/CCA/CCP

Remote, USA Full-time

Network Security Engineer – Zscaler

Remote, USA Full-time

Sr Workforce & Inventory Management - LH

Remote, USA Full-time

Experienced Remote Data Entry Operator – Flexible Work from Home Opportunity in the USA

Remote, USA Full-time

Chief of Staff

Remote, USA Full-time

Director of HR-Talent Acquisition and Compensation (Primarily Remote, North Carolina Based)

Remote, USA Full-time

Part-Time Remote Data Entry & E-Commerce Product Specialist – Flexible Hours, Growth Opportunities, No Experience Required

Remote, USA Full-time

Supervisory Archivist (Assistant Head, Preparation Section, Manuscript Division)

Remote, USA Full-time

Professional Engineer (PE) Structural (1099 Contractor) (56415)

Remote, USA Full-time

Experienced Customer Service Representative – Work From Home Opportunity at arenaflex

Remote, USA Full-time

Experienced Part-Time Remote Data Entry Specialist – Join arenaflex in Empowering Communities Across the Nation

Remote, USA Full-time

Product Owner

Remote, USA Full-time