Application Security Engineer
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Overview
Job Description
Job Title: Application Security EngineerLocation: Hybrid hub position requiring 3 days in office. NC, TX, MN GA would be the preference but open to other hub locations as well. No remote optionDuration: 3 months on contract with possible extensionThis Application Security Engineer will implement, and support solutions/technologies used for Static code analysis (SCA) & Static Application security testing (SAST) using industry leading tools. AppSec for AI using LLM based scanning of source code, update of AI skills, frameworks, security testing and application threat modeling. Lead initiatives to improve application security detection program by fine tuning tools, automating processes and improving integration of SAST, SCA and DAST tools in GitLab & Jenkins CI/CD pipeline. Manage and support docker containers, HELM charts, Rancher, cloud and automation with Java, Groovy and Python scripts. Look for ways to optimize security processes and recommend opportunities and solutions for improvement and automation. Support and participate in incident response and technical investigations as needed. Ensure adherence to compliance regulations and policies.Project mortar – Application Security Scanning with LLM / AIEssential Skills:AppSec detection with SAST, SCA, DAST, Gitlab & Jenkins integrationAI LLM Scanning, AI Skills & Agent securityDocker Container, HEML charts & cloud managementAutomation with Java, Python & GroovyNice to have:Experience triaging application security vulnerabilities, assessing severity level, false positive and establishing risk associated with the vulnerability based on environment. Experience working with development team on vulnerability remediation and establishing best practices for developer efficiency and security Top 5-10 responsibilities for this position
- AI based LLM scanning
- Vulnerability detection using SAST & SCA
- Vulnerability triage and false positive detection
- Threat assessment
- Cloud, container, and process automation
- Application Secuiry SAST, SCA, DAST - 7 Years
- Vulnerability triage – 3 years Java – 3 years
- DevOps, CI/CD – 5 years
- AI Security – 2 years
- Docker Container, HEML charts & cloud management
What does the interview process look like?o How many rounds? 2o Video, phone, or in person? Videoo How technical will the interviews be? Tech panel with 2-3 engineers Please include the answers to these questions on resumes submitted :If selected, can the contractor start in 2 weeks?If selected, can the contractor work from US Bank hub location?For contractor, could you provide the years of experience next to each skill listed below?Application Secuiry - vulnerability triageSAST, SCA, DASTDevOps, CI/CD, Docker, HELM charts
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.
