Mechanical Orchard

Mechanical Orchard combines software development and managed cloud operations in one offering.

Information Security Engineer – Application Security Focus

Security EngineerSecurity EngineerFull TimeRemoteTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

44 days ago

Salary

Not specified

Bachelor Degree5 yrs expEnglishAWSAzureCloudDockerGoogle Cloud PlatformJavaJava ScriptKubernetesPythonSDLCVaultGo

Job Description

• Build Security into Development: Work alongside engineering teams to integrate security throughout the SDLC; from design reviews and threat modeling to secure coding practices. Conduct security assessments of applications, APIs, and cloud infrastructure. Guide developers on secure authentication, authorization, cryptography, and data protection. Champion security best practices while maintaining developer velocity and trust. • Implement Security Tooling & Automation: Deploy and manage application security tools including SAST, DAST, SCA, and container scanning. Build automation for security testing in CI/CD pipelines. Implement and improve secrets management solutions. Create dashboards and metrics to track security posture. • Drive Security Initiatives: Lead application vulnerability management programs including triage, prioritization, and driving remediation. Support security compliance efforts (SOC 2, ISO 27001, or similar frameworks). Contribute to incident response and security event investigation. Develop security training and documentation for engineering teams. • Collaborate Across Teams: Partner with infrastructure and DevOps teams on cloud security controls. Perform risk assessments for new features, technologies, and third-party integrations. Participate in architecture reviews and provide security guidance.

Job Requirements

  • Bachelor’s degree in Computer Science, Software Engineering, Information Security, or a related technical field, or equivalent practical experience.
  • Strong written and verbal communication skills in English.
  • 5+ years of professional experience in information security, with a significant focus on application and cloud security.
  • Professional software development experience, with hands-on responsibility for designing, building, and maintaining production systems in a language like Python, Go, Java, JavaScript, or similar.
  • Strong understanding of application security principles: OWASP Top 10, secure authentication/authorization, encryption, API security.
  • Experience with cloud platforms (AWS, GCP, or Azure) and cloud-native security.
  • Hands-on experience with CI/CD systems and DevOps practices.
  • Knowledge of container security and orchestration platforms (Docker, Kubernetes).
  • Experience implementing security tools like SAST/DAST scanners, dependency checkers, or secrets detection.
  • Experience with security tools such as Aikido, Snyk, Semgrep, Trivy, Wiz, HashiCorp Vault, or similar.
  • Collaborative mindset—you build security solutions with engineers, not against them.

Benefits

  • Equal Opportunity Employer
  • Prohibits Discrimination and Harassment of Any Kind
  • Reasonable accommodations for employees with protected disabilities

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 5,001-10,000Since 2011H1B Sponsor

Senior Technical Marketing Manager shaping CrowdStrike's cloud security strategies

AWSAzureCloudCyber SecurityGoogle Cloud PlatformKubernetesMicroservices
United States
$125K - $180K / year

Account Executive, National Security

Slingshot Aerospace

We build space simulation and analytics solutions to bring clarity to complex environments and create a safer world.

Security Engineer44 days ago
Full TimeRemoteTeam 51-200Since 2020H1B No Sponsor

Account Executive managing a portfolio of National Security customers at Slingshot Aerospace

Arizona + 28 moreAll locations: Arizona, California, Colorado, District of Columbia, Florida, Hawaii, Illinois, Kansas, Montana, Nevada, New Jersey, New Mexico, New York, North Carolina, Oregon, Maryland, Massachusetts, Michigan, Minnesota, Missouri, Rhode Island, Tennessee, Texas, Utah, Vermont, Virginia, Washington, West Virginia, Wisconsin

AI Security Architect – Contract

66degrees

At 66degrees, we specialize in helping businesses across all industries modernize through cloud adoption to achieve data-driven transformation. As a pure play Google Cloud partner, our team of experts leverages the latest Google Cloud technologies and best practices to create customized solutions for each client. We offer comprehensive advisory, implementation, and managed services to support our clients throughout their cloud journey. Our commitment to excellence is reflected in our partnership with our clients. We prioritize staying up-to-date with the latest cloud technologies and trends through training and certification. By enabling businesses to harness the power of data, we help them make informed decisions, enhance customer experiences, and drive growth.

Security Engineer45 days ago
ContractRemoteTeam 501-1,000H1B Sponsor

AI Security Architect specializing in secure AI deployment frameworks

AWSAzureCloudCyber SecurityFirewallsGoogle Cloud Platform
United States

Security Engineer

OpenRouter

LLM router and marketplace

Security Engineer45 days ago
Full TimeRemoteTeam 1-10Since 2023H1B No Sponsor

Security Engineer responsible for safeguarding AI gateway platform's security operations

CloudSplunk
United States