Staff Application Security Engineer

UniUni

Remote, United States
Remote
8+ years building and securing production software
Hands-on aws workload security experience
Modern appsec tooling sast dast sca secrets scanning
UniUni is seeking a Staff Application Security Engineer to lead and enhance their application and platform security efforts within a cloud-native environment. The ideal candidate will have extensive experience in application security, product security, and DevSecOps, and will be responsible for integrating security into engineering practices while mentoring team members

Job Summary

  • This role serves as the senior technical anchor for product and platform security at a late-stage last-mile logistics company.
  • You will embed security into engineering pipelines, run secure code reviews, and operate the AppSec tooling stack across SAST, DAST, and SCA.
  • The position requires hands-on engineering to harden AWS workloads, implement identity standards, and lead incident response efforts.

Matching Summary

Match Score: 85

UniUni is seeking a Staff Application Security Engineer to lead and enhance their application and platform security efforts within a cloud-native environment. The ideal candidate will have extensive experience in application security, product security, and DevSecOps, and will be responsible for integrating security into engineering practices while mentoring team members.

Skills & Requirements

Must-have

  • 8+ years building and securing production software
  • Hands-on AWS workload security experience
  • Modern AppSec tooling SAST DAST SCA secrets scanning
  • Strong threat modeling skills turning models into controls
  • Practical SAML 2.0 and OpenID Connect implementation
  • Leading technical response to security incidents

Nice-to-have

  • Experience in logistics or high-volume transactional businesses
  • Background contributing to open source security tooling
  • Offensive security background from CTFs or bug bounties
  • Experience hardening LLM-integrated or AI-powered features
  • Prior ISO 27001 or SOC 2 control design support

Key Requirements

  • 8+ years of relevant software engineering and security experience
  • Deep demonstrable software engineering ability with fluency in multiple languages
  • Working command of modern AppSec tooling deployment in CI/CD

Work Rights

Not specified

Tailored Resume

Cover Letter