Ardentmc
Ardentmc

Application Security Engineer

engineeringfull-timeRemote
SALARY
Not listed
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
general
Apply for this position
✦ AutoApply Let us apply to roles like this on your behalf.
Learn more

About the role

Position Description

Ardent is seeking an Application Security Engineer to join the team. The Application Security Engineer supports application security assessment, vulnerability management, DevSecOps enablement, and secure reference implementation activities across USCIS systems and delivery environments. This role works closely with development, security, platform, and operations teams to identify application security risks, support remediation, validate fixes, improve security automation, and maintain consistent security practices throughout the application lifecycle. The position also supports the development of proof-of-concept reference implementations and utility applications that demonstrate secure design patterns, integrate with DevSecOps tools, and help bridge process and technology gaps between development and security teams.

This is a remote position.

Responsibilities and Duties

  • Perform application security testing and vulnerability assessments
    • Conduct application security testing using approved tools, processes, and techniques.
    • Assess web applications, APIs, services, containers, dependencies, and delivery environments for security weaknesses.
  • Support automated security scanning
    • Support automated scanning of applications, APIs, services, software dependencies, containers, and CI/CD pipelines.
    • Assist with configuring and maintaining security scanning tools used during development, build, test, release, and runtime activities.
  • Document, track, and validate vulnerabilities
    • Document, triage, track, and validate vulnerabilities and security findings through remediation and closure.
    • Maintain accurate vulnerability status, remediation evidence, and closure documentation.
  • Assist development teams with secure coding and remediation
    • Provide technical guidance to development teams on secure coding practices and remediation of identified weaknesses.
    • Help teams understand scan results, vulnerable dependency reports, policy violations, and recommended fixes.
  • Support DevSecOps tool integration and automation
    • Support integration and operation of security tools and controls within CI/CD pipelines.
    • Help implement automated security gates, policy enforcement, and reporting workflows.
    • Integrate DevSecOps tools through APIs to improve visibility, automation, and operations.
✦ Let us apply for you
We find roles like this and apply on your behalf. Cover letter written for each one. Plans from $15/mo. Cancel anytime.
Get AutoApply
Apply now
Application Security Engineer at Ardentmc — Remote