Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
GameChanger

Security Engineer, Application Security

GameChanger

Application Security Engineer securing GameChanger’s youth-sports technology platform. Embedding secure design, DevSecOps, and vulnerability management across engineering.

Posted 8/19/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSenior💰 $120,000 - $140,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in application security engineering, focusing on secure design practices, DevSecOps, and the integration of security tooling within CI/CD pipelines. Proficient in securing AWS infrastructure and implementing security standards across various platforms and APIs.

Highest-signal resume keywords
Application Security EngineeringDevSecOps PracticesAWS Security with Terraform and KubernetesSecure Coding in TypeScript, Swift, and KotlinSecurity Tooling Integration in CI/CD

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Application SecuritySecure Code ReviewThreat ModelingOWASP Top 10Container SecurityInfrastructure as Code (IaC)API Security StandardsSecurity Quality GatesVulnerability ManagementSecurity KPIs Tracking
Soft Skills
Communication of Security RisksCross-Functional Collaboration
Tools & Technologies
GitHub ActionsNowSecureWizBugCrowdCI/CD PipelinesAI/ML Security Tools
Certifications & Qualifications
AWS Certified Security SpecialtyCKSGWEBGMOB
Industry Keywords
DevSecOpsSecurity-by-DesignApplication Vulnerability ManagementSecure REST and GraphQL APIsAI Security Workflows

Tech Stack

Tools & technologies
AndroidAWSGraphQLiOSKotlinKubernetesSDLCSwiftTerraformTypeScript

About the role

Key responsibilities & impact
  • Serve as the primary security partner for the software engineering organization
  • Operate application security across the SDLC
  • Champion secure design and development practices and DevSecOps discipline
  • Define security requirements for responsible and secure integration of Gen AI and agentic AI tools
  • Conduct security-by-design engagements for features, APIs, platform initiatives, and infrastructure changes
  • Perform secure code reviews and provide actionable findings and remediation guidance
  • Establish secure REST and GraphQL API patterns with architecture and platform teams
  • Maintain secure coding guidelines, API security standards, and security architectural patterns
  • Write documentation and run engineering workshops or lunch-and-learns
  • Integrate and maintain security tooling across CI/CD pipelines
  • Enforce security quality gates and harden GitHub Actions and runner environments
  • Identify AI opportunities for engineering productivity and agentic security workflows
  • Partner with DevOps to secure AWS infrastructure through Terraform, Kubernetes, and IaC
  • Implement and validate controls for containerized workloads
  • Support WAF and CDN security controls protecting application endpoints
  • Operate the application vulnerability management lifecycle
  • Triage and prioritize findings from GHAS, NowSecure, Wiz, BugCrowd, and penetration tests
  • Identify systemic risks and facilitate cross-functional root-cause initiatives
  • Track security KPIs including MTTR, vulnerability density, and CI/CD security coverage
  • Communicate security risks to engineering and business leaders
  • Participate in the weekly on-call rotation
  • Report to the Security Engineering Manager

Requirements

What you’ll need
  • 3+ years in application security engineering
  • Experience building and operating internal security developer platforms or tooling that reduces developer friction
  • Ability to use AI/ML-driven tools to enhance security effectiveness and scalability
  • Experience leading threat modeling engagements and designing paved roads
  • Experience integrating security tooling into CI/CD pipelines
  • Working knowledge of OWASP Top 10s for web, mobile, API, and LLM
  • Hands-on experience securing AWS deployments with container and Kubernetes security, IaC scanning, and policy-as-code approaches
  • Expertise in security-by-design in TypeScript, Swift, and/or Kotlin
  • Track record implementing secure primitives in iOS/Android ecosystems
  • Beneficial certifications: AWS Certified Security Specialty, CKS, GWEB, GMOB, or equivalent
  • Must be based in the United States, excluding AK, DE, HI, IA, LA, MS, MT, OK, and SC
  • Must be legally authorized to work in the United States
  • Must be 18 years of age or older

Benefits

Comp & perks
  • Work remotely throughout the US or from the modern office in Manhattan, NY
  • Unlimited vacation policy
  • Paid volunteer opportunities
  • Technology stipend — $4,000 every 2 years
  • WFH stipend — $500 annually
  • Monthly physical, mental, wellness & learning stipend through Holisticly
  • Monthly lifestyle stipend through Fringe
  • Full health benefits: medical, dental, vision, prescription, FSA, HRA, HSA, and family/dependent coverage
  • Traditional and Roth 401K plans through Vanguard, with immediate company match
  • Basic, supplemental, and dependent life insurance
  • Short-term and long-term disability
  • Company-paid parental leave — up to 20 weeks for birthing parents and up to 12 weeks for non-birthing parents
  • Family building benefits through Progyny
  • DICK'S Sporting Goods and family-of-brands teammate discount
  • Incentive and equity included in the total compensation package for eligible roles