Application Security Engineer

IBM

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Dallas, TX
Salary
$116,452–$160,000 / yr
Posted
2 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $177k
This role $138k
$105k most similar roles pay here $227k

This role pays less than 82% of similar roles. Most pay $145,700–$208,800 — the shaded band above. At the midpoint, this role pays about $138k versus about $177k for comparable roles.

Based on 240 similar postings.

Employer

About IBM

IBM is a US-based global technology company providing hybrid cloud, AI, consulting, enterprise software, and IT infrastructure products and services.

IBM currently has 506 open roles on FindRole.

Listed pay typically runs $174,632–$197,165 across 5 roles with salary data.

Most-posted roles

View all roles at IBM

At a glance

TL;DR · Application Security Engineer

Application Security Engineer The Application Security Engineer joins the team to manage security for the in-house Twistlock service. This role involves conducting regular vulnerability scans on both vendor third-party and custom-built code, while analyzing findings to ensure system integrity. The engineer will create and maintain a Globalization Privacy Assessment to ensure compliance with global data privacy laws. Daily responsibilities include onboarding internal teams, providing guidance on resolving vulnerabilities, maintaining documentation, and troubleshooting customer queries. Additionally, the role involves implementing disaster recovery plans, monitoring infrastructure resource usage, performing data backups, and making code enhancements for bug fixes and feature requests. The required technical toolkit includes Cloud platforms, programming scripting, CI/CD automation, and tools such as Jenkins, Docker, Kubernetes, and Sysdig. The candidate must also possess expertise in compliance standards including NIST, CIS, and ISO.

What you'll do

  • Conduct regular vulnerability scans on vendor third-party and in-house custom code.
  • Analyze scan findings and take necessary actions to remediate vulnerabilities.
  • Maintain a Globalization Privacy Assessment (GPA) to ensure compliance with global data privacy laws.
  • Provide guidance to internal teams on resolving security issues and maintain technical documentation.
  • Troubleshoot and resolve customer queries regarding the Twistlock service.
  • Implement and test disaster recovery plans to ensure rapid restoration during outages.
  • Monitor infrastructure resource usage and perform regular data backups.
  • Modify in-house code to implement bug fixes and new customer features.

What we're looking for

  • Bachelor's degree or equivalent in Computer Science or a related field.
  • Two years of experience as a Software Developer, Cloud Software Developer, Security/Compliance Specialist, DevSecOps Engineer, or related role.
  • Two years of experience utilizing Cloud platforms and programming scripting.
  • Two years of experience with CI/CD automation and tools like Jenkins, Docker, and Kubernetes.
  • Two years of experience with security tools such as Sysdig and compliance standards including NIST, CIS, and ISO.
  • Experience conducting vulnerability scans on vendor third-party and in-house custom built code.
  • Ability to create and maintain a Globalization Privacy Assessment (GPA) for compliance with global data privacy laws.
  • Ability to troubleshoot customer queries, perform data backups, and implement disaster recovery plans.

More like this

Similar roles

Application Security Engineer

Opendoor

Toronto, Canada 85 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Application Security Engineer

Opendoor

Miami, FL 85 days ago
Go Python TypeScript Ruby Terraform AWS GCP Azure Kubernetes GraphQL Apollo GitHub Advanced Security CodeQL Semgrep HackerOne Burp Suite Cloudflare WAF Claude OpenAI REST gRPC Threat Modeling
5+ yrs exp Hybrid

Application Security Engineer

Leidos

Ashburn, VA 60 days ago $107,900$195,050
Application Security SAST DAST SCA SDLC Machine Learning Artificial Intelligence Container Security Anchore Kubernetes Rancher Cloudera Salt Ansible CI/CD Elasticsearch GitLab
8+ yrs exp

Junior Application Security Engineer

AbbVie

Chicago, IL 9 days ago $84,500$162,000
Application Security SAST DAST IAST SCA ASPM CI/CD DevSecOps Java Node.js Python Snyk Endor Labs CSPM OWASP Top 10 CWE Containerization
5+ yrs exp

Application Security Engineer

Booz Allen Hamilton

Fort Meade, MD +4 16 days ago $99,000$225,000
F5 BIG-IP TLS mTLS PKI Cryptography Linux UNIX RDP SSH CLI Office 365 NIST 800-53 FIPS DoD STIG FedRAMP Networking Protocols

Application Security Engineer

Booz Allen Hamilton

Fort Meade, MD +4 16 days ago $99,000$225,000
F5 BIG-IP AWS TLS mTLS PKI Cryptography Linux UNIX RDP SSH CLI NIST 800-53 FIPS DoD STIG FedRAMP Office 365 Networking Protocols