Application Security Engineer
Application Security
Application Security Engineering
Cloud Platforms
DevSecOps
Dynamic Application Security Testing
Information Security
InfoSec
Offensive Security
Security
Security As Code
Security Automation
Security Compliance
Security Engineering
Security Standards
Security Testing
Software Security
Static Application Security Testing
Job Description
Motion Recruitment is hiring an Application Security (App Sec) Engineer to embed security practices across the software development lifecycle. This role focuses on identifying and remediating vulnerabilities, strengthening CI/CD security controls, conducting penetration testing, and supporting developer training and compliance activities.
Key Responsibilities
- Review application code to identify security issues, then collaborate with engineering teams to remediate vulnerabilities
- Develop and refine security policies, standards, and procedures used in the development process
- Implement and oversee automated security checks within CI/CD pipelines
- Perform hands-on penetration testing and red team exercises
- Support design pattern reviews and conduct code reviews for potential vulnerabilities
- Provide developers with actionable, security-focused recommendations for secure coding
- Manage static and dynamic analysis tooling and related security workflows
- Work with product and engineering teams to define application security requirements
- Validate that remediation efforts address identified issues
- Implement secure deployment pipelines and automate repetitive security tasks
- Maintain accurate records of assessments, reporting, and remediation tracking
- Deliver training and awareness sessions to improve developer security best practices
- Ensure alignment with regulatory requirements and corporate security standards
Required Qualifications
- In-depth knowledge of application security fundamentals and familiarity with modern threat landscapes
- Hands-on experience with code analysis using SAST/DAST, vulnerability scanning solutions, and penetration testing methods
- Secure coding experience across multiple languages, such as Java, Python, C#, or JavaScript
- Experience designing and automating CI/CD pipelines with integrated security controls
- Ability to collaborate with teams to triage, remediate, and document vulnerabilities
- Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience
Preferred Skills & Experience
- Knowledge of cloud-native application security with AWS, Azure, or GCP
- Familiarity with OWASP Top Ten, SANS CWE, and compliance frameworks such as SOC 2, PCI, and HIPAA
- Experience conducting threat modeling sessions and architecture risk reviews
- Security certifications such as CSSLP, CEH, OSCP, or similar
Security & Engineering Technologies
- SAST, DAST
- Java, Python, C#, JavaScript
- CI/CD
- AWS, Azure, GCP
Work Location
Chandler, AZ (Onsite)
Compensation & Benefits
- Eligible for bonus or commission
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k) with company match (where applicable)
- Comprehensive benefits offered: