See all roles

Application Security Engineer – Java / Node.js

Work from home Full-time role Hiring

Overview

Seeking a Java / Node.js Engineer focused on application security remediation, technical debt reduction, and automated vulnerability fixes across multiple platforms. This role partners closely with InfoSec, QA, DevOps, and engineering teams to improve security posture using automation and GenAI-driven solutions.

Key Responsibilities

  • Triage and remediate vulnerabilities from SAST, DAST, and SCA tools
  • Secure Java, Node.js, Ruby on Rails, and WordPress applications against common OWASP risks
  • Patch and upgrade third-party dependencies and harden application configurations
  • Validate fixes through regression testing and user flow checks
  • Integrate automated security and remediation into CI/CD pipelines
  • Build GenAI-assisted remediation workflows using AWS Bedrock or similar tools
  • Reduce technical debt, modernize legacy components, and harden cloud, container, and OS environments
  • Collaborate with InfoSec and QA teams to close security findings and rescans

Required Skills & Experience

  • Strong hands-on experience with Java, Spring Boot, REST APIs, and secure coding
  • Proficiency in Node.js, Express.js, JavaScript/TypeScript
  • Working knowledge of Ruby on Rails and WordPress security
  • Experience with Veracode, Checkmarx, SonarQube, Snyk, or similar tools
  • Strong understanding of OWASP vulnerabilities and mitigation techniques
  • Experience with OAuth2/JWT, API security, Docker, Kubernetes, Linux, and AWS
  • Hands-on experience integrating security into CI/CD pipelines
  • Exposure to GenAI tools such as AWS Bedrock or CodeWhisperer

Preferred Qualifications

  • Experience with microservices, cloud-native security, and DevSecOps
  • Familiarity with OWASP ASVS and threat modeling
  • Security certifications (CEH, CSSLP, OSCP) a plus

Apply tot his job Apply To this Job

You might like

Application Security Engineer - Cloud Engineering job at The Vanguard Group in Dallas, TX, Fort Worth, TX, Charlotte, NC

Work from home Full-time role

Cyber Security Fusion Center Engineer

Work from home Full-time role

Network Security Engineer - Contract -

Work from home Full-time role

[Remote] DoW Cloud Security Engineer (GCP Security Engineering / SecOps Enablement)

Work from home Full-time role

Security Engineer – Research & Test

Work from home Full-time role

AI Security Tester

Work from home Full-time role

Lead Security Engineer

Work from home Full-time role

Staff Informaiton Security Engineer - Threat Defense & Automation

Work from home Full-time role

CMMC Security Engineer/T3/CCA/CCP

Work from home Full-time role

Network Security Engineer – Zscaler

Work from home Full-time role

Experienced Remote Data Entry Specialist – Confidentiality, Integrity, and Attention to Detail

Work from home Full-time role

Experienced Customer Support Representative – Remote Delta Airlines Customer Service

Work from home Full-time role

Experienced Customer Service Specialist – Remote Opportunity at arenaflex

Work from home Full-time role

Chronic Care Manager ( Medical Assistant, Other Certified Healthcare Professional)

Work from home Full-time role

Product Manager, Commercial Insurance

Work from home Full-time role

Senior P&C Actuarial Specialist (Hybrid)

Work from home Full-time role

Virtual Customer Service Representative – Work-from-Home Opportunity with arenaflex

Work from home Full-time role

Compensation & Benefits Consultant (all genders) auf den kanarischen Inseln

Work from home Full-time role

Project/Program Manager with Logistics

Work from home Full-time role

Experienced Customer Service Representative – Delivering Exceptional Experiences for arenaflex Clients

Work from home Full-time role