×
Register Here to Apply for Jobs or Post Jobs. X

Application Security Engineer

Job in Austin, Travis County, Texas, 78716, USA
Listing for: Social Solutions Global
Full Time position
Listed on 2026-03-03
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 76000 - 95000 USD Yearly USD 76000.00 95000.00 YEAR
Job Description & How to Apply Below

US base salary range: $76,000 - $95,000 DOE

About Us

Bonterra exists to propel every doer of good to their peak impact. We measure that impact against our vision to increase the giving rate as a percentage of GDP from 2% to 3% by 2033. We know that this goal is lofty, but we are confident that the right technology and expertise will strengthen trust in the sector, allowing the social good industry to accelerate growth and reach peak impact.

Bonterra's differentiated, end-to-end solutions collectively support a unique network of over 20,000 customers, including over 16,000 nonprofit organizations and over 50 percent of Fortune 100 companies. Learn more at

About the Role

As an Application Security Engineer at Bonterra, you will help support the security of our web applications and APIs by working closely with engineering, Dev Ops, and security teams. In this role, you'll focus on identifying and helping remediate application security risks, supporting secure development practices, and contributing to application security tooling and processes that enable teams to ship software safely and efficiently.

This role is well suited for an application security engineer with a few years of hands‑on experience who is comfortable executing security testing activities, analyzing findings, and collaborating with development teams, while continuing to grow depth in areas such as cloud security, automation, and secure design.

This role is scoped as a mid‑level Application Security Engineer position with opportunities to grow into senior application or product security roles over time.

What You’ll Do
  • Work with engineering teams to help integrate application security best practices into the software development lifecycle (SDLC), including secure coding guidance.
  • Support secure CI/CD pipelines by collaborating with Dev Ops and cloud teams on existing security controls and workflows.
  • Identify, assess, and help prioritize vulnerabilities in web and API‑based applications, providing guidance to engineering teams on remediation.
  • Perform manual web application penetration tests using established methodologies and tools.
  • Assist with proof‑of‑concept demonstrations for select security findings to help teams understand impact and remediation.
  • Perform application code reviews as needed.
  • Review and triage SAST, SCA and DAST scan results.
  • Track and manage application security findings, supporting remediation efforts and verification of fixes.
  • Support incident response efforts related to application security issues.
  • Provide guidance to engineering teams on common web application vulnerabilities such as OWASP Top 10.
  • Develop and implement scripts and workflows to streamline operations and reduce manual effort.
  • Automating security processes and developing methods for analyzing and responding to security findings.
  • Assist with documenting secure coding standards and common remediation patterns.
  • Stay current on emerging threats, vulnerabilities, and application security trends.
Requirements
  • 3+ years of experience in application security, product security, or secure software development.
  • Experience with manual web application penetration testing.
  • Experience securing modern web applications and APIs.
  • Strong understanding of web application vulnerabilities, their root causes, and common remediation approaches.
  • Ability to review application source code as needed to support vulnerability triage and testing activities.
  • Proficiency in at least one programming language (e.g., Java, Python, JavaScript/Type Script, C#, or Go).
  • Experience working with CI/CD pipelines and modern development workflows.
  • Familiarity with security testing tools such as SAST, DAST, and SCA.
  • Strong communication skills and ability to work collaboratively with engineering teams.
What sets you apart
  • Exposure to threat modeling concepts and secure design practices.
  • Previous software development or application design experience.
  • Familiarity with cloud environments and basic AWS security concepts.
  • Basic knowledge of identity and access management concepts (OAuth, OIDC, JWT)
  • Exposure to PCI DSS or regulated environments.

At Bonterra, we’re building AI‑powered tools to solve real human challenges—and we…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary