Jobs Companies Verisign Senior Application Security Engineer

Über diese Senior Application Security Engineer Stelle bei Verisign

Verisign · Hybrid · Reston,Virginia,United States

Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services. 

We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet.  We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career.

The Senior Application Security Engineer will play a lead role in securing all software built and/or used by Verisign. The engineer will work with application development teams as well as 3rd party organizations to ensure that security, privacy, and compliance are built into applications from design through production. The engineer should be a technical leader helping determine the future of the application security program and actively participating in a broad spectrum of activities by leading assessments, following security research and best practices, and helping set the standards of the program. The individual should possess strong interpersonal skills, be highly motivated, results oriented, have excellent communication and presentation skills, and be a strong team player.

Responsibilities:

  • Serve as the application security subject matter expert for development teams during requirement, design, and architecture phases, including application threat modeling for new and significantly changed applications
  • Perform and lead deep dive manual and automated application vulnerability assessments, documenting findings, and provide clear remediation guidance to the responsible engineering teams
  • Own the application security vulnerability management lifecycle across the security toolchain, including software composition analysis, static and dynamic testing, interactive testing, secrets scanning
  • Review and provide remediation guidance for submissions from Verisign’s public Bug Bounty program
  • Track open issues against defined SLAs, follow up with development teams, and escalate overdue items to engineering and InfoSec leadership
  • Provide guidance to support integration of security testing into CI/CD pipelines
  • Review third party and vendor supplied applications against internal security requirements
  • Mentor junior engineers and analysts, review peer work, and provide constructive feedback
  • Contribute to Information Security standards, secure coding guidance, and be an active participant in the broader Verisign technical community

AI and Application Security:

  • Assess applications that embed large language models or other AI services for risks such as prompt injection, sensitive data exposure, insecure output handling, and over permissioned agents and integrations
  • Develop and maintain internal guidance for developers using AI coding assistants, including expectations for review, testing, and scanning of AI generated code
  • Evaluate and pilot AI assisted capabilities within the application security workflow such as finding triage, false positive reduction, and remediation guidance
  • Track developments in AI security guidance and standards and translate them into practical internal requirements and guidance

Key skills and experience:

  • 10+ years’ experience in Information Technology, including hands on application development experience
  • 6+ years’ experience conducting application security assessments using COTS and open-source tooling (Burp Suite, Fortify, or equivalent)
  • Hands-on experience with software composition analysis, dynamic application security testing, and secrets scanning platforms
  • Experience running a vulnerability management program through ticketing and workflow systems, including SLA definition and executive level reporting
  • Strong working knowledge of the OWASP Testing Framework and OWASP Top 10
  • Proficiency in currently accepted software development life cycles and associated standards and procedures
  • Knowledge of current application architectures (Single Page Application, 3 tier, microservices, containerized workloads)
  • Practical familiarity with AI and LLM application security risks and current industry guidance in that area
  • Methodical and organized, able to manage multiple opportunities, projects, and partners concurrently
  • Able to multitask and work independently with minimum supervision to meet firm deadlines
  • Excellent communication, presentation, and leadership skills, including the ability to present to senior technical and non-technical audiences

Preferred skills and experience:

  • 6+ years software development using Java, C++, Rust, Go and/or scripting languages such as Python or Perl
  • Experience implementing security assessments within a Continuous Integration pipeline
  • Advanced experience with Linux operating systems, high comfort level with working at the command line
  • Understanding of Agile methodologies (Kanban, Scrum, pair programming, etc.)
  • Understanding of DevOps and security integration
  • Experience with API security testing
  • Experience running or supporting a public or private bug bounty program

This position is based in our Reston, VA office and offers a hybrid work schedule.

The pay range is $164,300 - $222,300.

The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards.

Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law.

Additional Information:
Our Careers Page
Our Benefits Summary
Verisign in the Community
Our EEO Statement
Our Privacy Notice for Job Applicants/Candidates
Reasonable Accommodations

Staffing agency policy: No fees will be paid for unsolicited resumes submitted to Verisign or our employees by third parties.

Bereit, sich bei Verisign zu bewerben?
Bei Verisign bewerben

Wie sich dieses Gehalt für Application Security vergleicht

Diese Stelle zahlt $193,300/yrim Einklang mit der üblichen Spanne für Application Security Stellen.

$115,495 dem Median $180,000 $261,920

Übliche Spanne $145,750–$228,000/yr, aus 253 vergleichbaren Application Security Anzeigen auf JobsRadar (Vergütung auf USD hochgerechnet). Gehaltseinblicke für Application Security ansehen →

Ähnliche Jobs

Binti
Staff/Principal Application Security Engineer
Binti
⚡ Früh bewerben Remote · standortgebunden $240,000–$330,000
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
TraceLink, Inc
Product Security Engineer, Senior
TraceLink, Inc
⚡ Früh bewerben APAC - India - Pune Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 4 Std.
Samsara
Staff Application Security Engineer
Samsara
⚡ Früh bewerben San Francisco, CA, United Stat... Hybrid $165,200–$295,000
● Neu 👁 Gesehen ✓ Beworben vor 8 Std.
Samsara
Staff Application Security Engineer
Samsara
⚡ Früh bewerben Remote - Seattle Hybrid $165,200–$295,000
● Neu 👁 Gesehen ✓ Beworben vor 8 Std.
Samsara
Staff Application Security Engineer
Samsara
⚡ Früh bewerben United Kingdom Hybrid
● Neu 👁 Gesehen ✓ Beworben vor 8 Std.
AlphaSense
Senior Product Security Engineer
AlphaSense
⚡ Früh bewerben Remote - Canada · standortgebunden CA$159,000–CA$219,000
● Neu 👁 Gesehen ✓ Beworben vor 9 Std.
AlphaSense
Senior Product Security Engineer
AlphaSense
⚡ Früh bewerben Remote - United Kingdom · standortgebunden £90,000–£122,000
● Neu 👁 Gesehen ✓ Beworben vor 9 Std.
AlphaSense
Senior Product Security Engineer
AlphaSense
⚡ Früh bewerben Remote - Ireland · standortgebunden €103,000–€141,000
● Neu 👁 Gesehen ✓ Beworben vor 9 Std.
Tessera Labs
Senior Product Security Engineer
Tessera Labs
⚡ Früh bewerben Brazil · standortgebunden $50,000–$60,000
● Neu 👁 Gesehen ✓ Beworben vor 10 Std.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Verisign

Alle Jobs bei Verisign ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos