×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Application Security; AppSec Engineer

Job in North Logan, Cache County, Utah, USA
Listing for: Space Dynamics Laboratory
Full Time position
Listed on 2026-03-07
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 120000 - 175000 USD Yearly USD 120000.00 175000.00 YEAR
Job Description & How to Apply Below
Position: Application Security (AppSec) Engineer

Space Dynamics Laboratory (SDL) is seeking an experienced Application Security (App Sec) Engineer with 10+ years of hands‑on cybersecurity experience to join our dynamic Cybersecurity Architecture and Engineering team. This role spans mid‑level to senior responsibilities, focusing on software (commercial, open‑source, and internally developed) security, third‑party risk management, and contributing to the enhancement of our overall security posture. The position involves a mix of high‑level operational execution, independent analysis, and contributions to process improvements.

The ideal candidate brings practical experience in enterprise security environments, strong analytical skills, and a proactive approach to identifying and mitigating risks.

Key Responsibilities
  • Influences secure API development standards and implementations across multiple platforms
  • Adopts security standards for the API lifecycle and disseminates them across development and security teams
  • Develops authentication and authorization security requirements to adhere to credential storage, privilege management and authenticity standards; supports role‑ and attribute‑based access control
  • Regularly monitors the security community for public‑facing security issues as well as to learn new tactics for securing data transmissions and reducing attack exposure
  • Attends and participates in application projects and change management committee meetings, including interacting with business units and technical teams to understand what is coming and how projects can be more secure from the beginning
  • Focuses on application security that complies with NIST SP 800‑171, NIST Risk Management Framework (RMF), and other applicable regulatory or industry standard requirements and privacy laws
  • Supervises testing and validation in application security controls across projects
  • Builds services and tools to enable developers and Dev Sec Ops  Engineers to easily use security components produced by application security team members
  • Supports the ability to “shift left” and incorporates security early on and throughout the development lifecycle
  • Leverages vulnerability database sources to understand the weakness, probability, and remediation options supplied by vendors as well as workarounds
  • Enriches Dev Sec Ops  architecture with security standards and best practices
  • Partners with teams to define key performance indicators (KPIs) and metrics across business units
  • Produces engineering artifacts, building blocks, and deliverables in compliance with SDL Information Systems Engineering Procedure
Ideal Candidate Experience
  • Established experience with Agile and software development lifecycle (SDLC) practices
  • Skillful in single sign‑on (SSO), OAuth 2.0, OpenID Connect and SAML
  • Proven excellence in communicating business risk from cybersecurity topics
  • Extensive understanding of software development (Python, C++, C#, Java, Ruby, etc.)
  • Experienced with securing intra‑company and third‑party APIs
  • Experienced with REST and SOAP development and security controls
  • Experience with cryptography controls and measures to secure applications and data
  • Understanding of containers (e.g., Docker) and container orchestration (e.g., Docker Swarm, Kubernetes)
  • Experience with operations and security across Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP)
  • Understanding of OWASP, CVSS, the MITRE ATT&CK framework, and the software development lifecycle (SLDC)
  • Experience with in a highly regulated industry (DoD/DoW, Healthcare, Finance)
  • Experience with the Secure Software Development Framework (SSDF) and NIST SP 800‑218
Required Qualifications
  • Bachelor's Degree in cybersecurity or a related field
  • 10+ years of professional experience in Application/Software Security, Dev Sec Ops , third‑party risk management, or closely related cybersecurity discipline
  • Must possess CISSP or equivalent certification
  • Understanding of NIST 800‑171 and CMMC requirements, or strong understanding of security and compliance concepts related to another framework (RMF, CSF)
  • Willingness to respond to incidents outside of regular business hours as needed
  • Excellent analytical, problem‑solving, and communication skills
  • Abil…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary