Application Security Engineer
Job Description
Application Security Engineering at Motion Recruitment focuses on embedding practical security into the software lifecycle. This onsite role in Chandler, AZ supports developers with secure coding guidance, automated protections in CI/CD, and hands-on testing, while also helping teams meet regulatory and corporate security standards. You’ll work in an environment that values measurable progress through assessments, remediation tracking, and clear training for engineering.
What you’ll be responsible for
- Analyze application code to identify security issues and partner with teams to fix vulnerabilities.
- Review design patterns and perform code reviews to uncover potential vulnerabilities.
- Define and refine security policies, standards, and procedures that align with the development process.
- Implement and monitor automated security checks within CI/CD environments.
- Manage static and dynamic analysis tools, including SAST and DAST workflows.
- Conduct hands-on penetration testing and red team exercises.
- Deliver training and awareness sessions for developers focused on best security practices.
- Provide developers with actionable, secure coding recommendations.
- Collaborate with product and engineering teams to define application security requirements.
- Validate remediation efforts and maintain records of assessments, reporting, and remediation tracking.
- Implement secure deployment pipelines and automate repetitive security tasks.
- Ensure compliance with regulatory and corporate security standards.
What you’ll need
- In-depth knowledge of application security fundamentals and familiarity with modern threat landscapes.
- Hands-on experience with code analysis (SAST/DAST), vulnerability scanning solutions, and penetration testing techniques.
- Strong secure coding practices across multiple languages, such as Java, Python, C#, or JavaScript.
- Experience designing and automating CI/CD pipelines with integrated security controls.
- Ability to work with teams to triage, remediate, and document vulnerabilities.
- Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
Cloud, frameworks, and tools
You’ll work with SAST, DAST, CI/CD, and cloud platforms including AWS, Azure, and GCP. The role also involves supporting security practices aligned with OWASP Top Ten and SANS CWE, plus compliance frameworks such as SOC 2, PCI, and HIPAA.
Desired background
- Knowledge of cloud-native application security with AWS, Azure, or GCP.
- Experience conducting threat modeling sessions and architecture risk reviews.
- Familiarity with compliance frameworks (SOC 2, PCI, HIPAA, etc.).
- Security certifications such as CSSLP, CEH, OSCP, or similar.
Benefits and compensation
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k) with company match (where applicable)
- Eligible for bonus or commission
Comprehensive benefits offered: