
Jr Applications Security (Appsec) Engineer
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.1
Reclaim your time by letting our AI handle the grunt work of job searching.
We continuously scan millions of openings to find your top matches.

Job Description
Atlas is seeking a Jr. Application Security (AppSec) Engineer/Specialist to support application security and DevSecOps initiatives by helping teams integrate security best practices into day-to-day development and deployment workflows. This role will work closely with DevOps and engineering teams to assist with security automation, vulnerability validation, and secure CI/CD practices while building strong foundational expertise in modern application security tools and standards.
This is an execution-focused role ideal for a security professional who is hands-on, curious, and eager to grow in a fast-paced environment.
Key Responsibilities
Support the adoption of application security and DevSecOps automation across development teams.
Assist with educating engineering teams on core security standards and concepts (e.g., OWASP Top 10, OWASP ASVS).
Participate in threat modeling sessions and design/security reviews for new code deployments under guidance of senior security resources.
Help run and interpret results from security scanning tools, including:
SAST
SCA
Secrets Scanning
DAST
Infrastructure-as-Code (IaC) scanning
Triage and validate security findings by reviewing code and identifying true/false positives (primarily Python/JavaScript).
Support engineering teams by documenting findings and providing clear, actionable remediation guidance aligned to security best practices.
Assist with building, maintaining, and improving secure CI/CD workflows and DevSecOps processes.
Stay up to date on evolving application security trends, tools, and techniques and share insights with the broader team.
Contribute to internal documentation and support presentations or knowledge-sharing sessions related to security tools and industry trends.
Required Skills & Experience
Foundational knowledge of application security and secure development concepts.
Experience with standards and frameworks such as:
OWASP Top 10
OWASP ASVS (nice to have)
Experience with application security scanning tools (hands-on experience preferred), including:
SAST, SCA, DAST, secrets scanning, and/or IaC scanning
Coding knowledge with the ability to review and validate findings in:
Python
JavaScript
DevOps and CI/CD concepts and tools such as:
GitHub or GitLab
Docker
Terraform (nice to have)
Understanding of cloud deployment environments such as:
AWS and/or Azure
Preferred Qualifications
Experience using Python scripting to automate simple workflows or security checks.
Knowledge of Infrastructure as Code (Terraform) and common cloud deployment patterns.
Knowledge of cybersecurity and privacy regulations and their impact on IT and software delivery.
Professional Skills
Strong communication skills and the ability to collaborate across technical teams.
Strong attention to detail and willingness to learn through hands-on work.
Organized, proactive, and comfortable working in a team-based environment.
Ability to explain security findings clearly to developers and non-security stakeholders.
Automate your job search with Sonara.
Submit 10x as many applications with less effort than one manual application.
