391 application security jobs at 172 companies in Texas

PromotedHiringCafe
Founding Backend / Infra Engineer
Cupertino, CA, US
$160k-$300k/yr On-SiteFull Time
HiringCafe
HiringCafe: Building a 100× better job search engine to take on Indeed and LinkedIn.
Own the crawlers, pipelines, and infrastructure powering a real-time job search engine. Strong Node.js and Python fundamentals; bonus points for security and reverse-engineering chops.
Node.js, Python, Elasticsearch, Redis
3mo
Save
Mark Applied
Hide
Application Security Engineer
Coral Gables or Florida or Texas or South Carolina or Pennsylvania or Massachusetts or Illinois or Georgia or North Carolina or Florida
$110k-$130k/yr HybridFull Time
Ryder
RyderNYSE: R: Provides commercial vehicle leasing, logistics, and supply chain solutions.
5+ YOE5+ years OWASP, SAST, DAST, SCA, RASP; 7+ years in application security or related field; strong web security knowledge; secure SDLC; Bachelor's in CS; CISSP/OSCP/CASE preferred.
SAST, DAST, OWASP, SCA, RASP, WAF, CI/CD, Azure DevOps, Terraform, Python, JavaScript, .NET
4d
Save
Mark Applied
Hide
Senior Application Security Engineer
Austin, Texas, United States
$95k/yr HybridFull Time
University of Texas at Austin
University of Texas at Austin: Provides public higher education and conducts academic research.
Experience in application security, secure code review, SAST/DAST/SCA, cloud security (Azure), and application vulnerability management; bachelor\u0002s degree or equivalent.
Microsoft Azure, Adobe Experience Cloud, Burp Suite, OWASP ZAP, Metasploit, Checkmarx, Veracode, SonarQube
2mo
Save
Mark Applied
Hide
Application Security Analyst
Plano, Texas, United States
OnsiteFull Time
Toyota
ToyotaNYSE: TM: Designs and manufactures vehicles and provides automotive financial services.
3+ YOE3-6 years in application security; experience with SAST/DAST/SCA; code review; CI/CD; cloud security; IaC; strong QA of web, APIs, and mobile apps.
SAST, DAST, SCA, Jenkins, Harness, GitHub Actions, Docker, Kubernetes, AWS, Azure, GCP, Terraform, Ansible, OWASP, Java, Python, Bash/Shell Scripting, PHP, JavaScript
3w
Save
Mark Applied
Hide
Application Security Engineer - Cyber Security
Dallas, Texas, United States
HybridFull Time
Las Vegas Sands
Las Vegas SandsNYSE: LVS: Operates integrated resorts featuring casinos, hotels, and convention centers.
3+ YOE3+ years cyber security/IT experience or Bachelor’s in CS; strong CI/CD and application security experience; hands-on AI-assisted development and GitHub Copilot experience; threat modeling, security tooling integration, incident response, and system/network administration skills.
GitHub, GitHub Copilot, Claude Code, Microsoft, IBM, Linux, SIEM
2w
Save
Mark Applied
Hide
Senior Application Security Architect
Quincy or Princeton or Berwyn or Clifton or Austin
$120k-$203k/yr HybridFull Time
State Street
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
14+ YOEDesign and review secure architectures for applications, APIs, cloud-native and AI systems; conduct threat modeling and risk assessments; embed secure-by-design, DevSecOps, and AI security practices.
Large Language Models (LLMs), Retrieval-Augmented Generation (RAG), Kubernetes, CI/CD, DevSecOps, Infrastructure as Code (IaC), SAST, DAST, IAST, software composition analysis (SCA), OWASP Top 10
5d
Save
Mark Applied
Hide
Manager, Application Security, DevSecOps
Dallas, Texas, United States
$127k-$247k/yr OnsiteFull Time
KPMG
KPMG: Global professional services network providing audit, tax, and advisory.
6+ YOE6+ years in application security/DevSecOps, strong appsec and AI-related risk knowledge, experience with SDLC/CI-CD and cloud (preferably Azure), bachelor's preferred, relevant certs preferred.
Azure, OWASP Top 10, CI/CD
3mo
Save
Mark Applied
Hide
Senior Application Security Engineer
Spring or Durham or Alpharetta or Fort Collins
$106k-$243k/yr HybridFull Time
Hewlett Packard Enterprise
Hewlett Packard EnterpriseNYSE: HPE: Providing global edge-to-cloud infrastructure and IT solutions for businesses.
5+ YOE5–8+ years in application security; CI/CD security; SBOM/NIST/SSDF knowledge; secrets management; WAF and API security; SAST/DAST/SCA; cloud security; programming in Python/Java/Go/Node.js.
GitHub, GitLab, Jenkins, Sigstore, Cosign, WAF, SAST, DAST, SCA, container scanning, AWS, Azure, GCP, Python, Java, Go, JavaScript
3mo
Save
Mark Applied
Hide
Senior Application Security Engineer
Spring or Durham or Alpharetta or Fort Collins
$112k-$212k/yr HybridFull Time
Hewlett Packard Enterprise
Hewlett Packard EnterpriseNYSE: HPE: Provides edge-to-cloud IT infrastructure and platform services.
5+ YOE5–8+ years in application security; secure CI/CD pipelines; SLSA/NIST SSDF; secrets management; WAF; API security; SAST/DAST/SCA; cloud security; programming languages (Python/Java/Go/Node.js).
GitHub, GitLab, Jenkins, Sigstore, Cosign, SAST, DAST, SCA, WAF, OWASP, MITRE ATLAS, Cloud security (AWS/Azure/GCP)
3mo
Save
Mark Applied
Hide
Senior Application Security Engineer
Spring or Durham or Alpharetta or Fort Collins
$112k-$243k/yr HybridFull Time
Hewlett Packard Enterprise
Hewlett Packard EnterpriseNYSE: HPE: Provides global edge-to-cloud technology solutions and IT infrastructure services.
5+ YOE5–8+ years in Application Security; hands-on pipeline security; SLSA/NIST SSDF; secrets management; WAF and API security; multiple programming languages; cloud security; OWASP Top 10; SBOM/CI-CD tooling.
GitHub, GitLab, Jenkins, Sigstore, Cosign, SAST, DAST, SCA, Container scanning, WAF, SBOM tooling, IaC scanning
4d
Save
Mark Applied
Hide
Senior Manager, Application Security
Irving or Chicago or Boston
$113k-$210k/yr OnsiteFull Time
Publicis Groupe
Publicis GroupeEuronext Paris: PUB: Global advertising and digital transformation agency holding.
10+ YOE10+ years experience in software security, BS/MS in CS, hands-on software development, CI/CD and application testing (SAST/DAST/IAST), vulnerability management, OWASP/CWE knowledge, cloud and cryptography expertise.
CI/CD, SAST, DAST, MAST, RAST, IAST, OWASP Top 10, WAF
1mo
Save
Mark Applied
Hide
Application Security Pentester, Specialist
Malvern or Charlotte or Dallas or Fort Worth
HybridFull Time
Vanguard
Vanguard: Provides mutual funds, ETFs, and investment management services.
5+ YOE5+ years related experience (including 3 years in IT security or application development), undergraduate degree or equivalent, hands-on web/API/network pentesting, SAST/DAST tooling preferred, Python or Java proficiency, preferred pentesting certifications.
DAST, SAST, MITRE ATT&CK, OWASP Top 10, OWASP Top 10 API, SANS Top 25, Python, Java
4w
Save
Mark Applied
Hide
Application & Platform Security Architect
Austin or North Chicago
$142k-$269k/yr RemoteFull Time
AbbVie
AbbVieNYSE: ABBV: Develops and sells innovative pharmaceutical and biopharmaceutical medicines.
4+ YOEDegree (BS/MS/PhD) with relevant years of experience, strong application security expertise (OWASP, secure coding), cloud and container knowledge (AWS/Azure/GCP, Docker, Kubernetes), experience with code analysis and vulnerability scanning tools.
OWASP Top 10, SANS/CWE Top 25, OAuth, SAML, OpenID Connect, PKI, Docker, Kubernetes, AWS, Azure, GCP, SonarQube, Veracode, Burp Suite, Nessus, CI/CD, DevSecOps, ISO, NIST, Windows, Unix/Linux
2w
Save
Mark Applied
Hide
Senior Manager - Application Security Engineering
New York or Connecticut or Texas or Rhode Island or Massachusetts
$118k-$261k/yr RemoteFull Time
CVS Health
CVS HealthNYSE: CVS: Provides retail pharmacy, health insurance, and pharmacy benefit management services.
7+ YOE2+ Mgmt7+ years in enterprise security and security program leadership; experience with cloud-native architectures, application security, vulnerability management, SAST/SCA/SBOM, developer enablement, and security automation.
AWS, Azure, GCP, Kubernetes, SAST, SCA, CVA, SBOM, CI/CD, Infrastructure-as-Code (IaC), JFrog, Snyk, Veracode, Wiz, GitGuardian, Prisma Cloud, Claude, Claude Code, GitHub Copilot, Microsoft Copilot
1mo
Save
Mark Applied
Hide
Application Security Engineer
Irving or Minneapolis or Charlotte
$105k-$124k/yr HybridFull Time
U.S. Bank
U.S. BankNYSE: USB: Provider of personal, business, and institutional financial services.
5+ YOE5+ years AppSec experience with SAST/SCA, CI/CD tool integration (Jenkins), Java experience (2+ years), Docker/cloud familiarity, vulnerability triage using ServiceNow, and development of security automation and AI-driven AppSec capabilities.
CI/CD, Jenkins, SAST, SCA, DAST, ServiceNow, AI, LLM, Java, Docker, Linux, Fortify, Black Duck, FOSSA
4d
Save
Mark Applied
Hide
Security Specialist - Application Security
Pittsburgh or Phoenix or Lakewood or Birmingham or Strongsville or Farmers Branch
$91k-$186k/yr OnsiteFull Time
PNC Financial Services
PNC Financial ServicesNYSE: PNC: Provides banking, lending, and investment services to customers.
5+ YOEHands-on application security experience including threat modeling, remediation guidance for OWASP/API vulnerabilities, secure design/authentication, SAST/DAST/RASP and CI/CD knowledge; 5+ years' experience typically expected; strong communication skills.
OWASP, API Security, SAST, DAST, RASP, CI/CD, SD Elements, BSIMM, SAMM, AWS, Azure, GCP, Scrum, Kanban
1w
Save
Mark Applied
Hide
Senior AI Application Security Engineer
Plano, Texas, United States
$94k-$156k/yr OnsiteFull Time
PepsiCo
PepsiCoNASDAQ: PEP: Global manufacturer and distributor of snacks and beverages.
Advanced expertise in AI and application security, threat modeling (STRIDE/PASTA), OWASP, cloud-native security (AWS/Azure/GCP), Python/Go, CI/CD integration, and mitigation of AI-specific threats; strong communication and analytical skills.
STRIDE, PASTA, OWASP Top 10, OWASP Top 10 for LLM Applications, AWS, Azure, GCP, Python, Go, CI/CD, Promptfoo, NVIDIA Garak, Protect AI, Lakera, HiddenLayer, Microsoft AI Security, LangChain, LangGraph, Semantic Kernel, MCP, OpenAI SDK, Azure AI Foundry, Amazon Bedrock, RAG
1w
Save
Mark Applied
Hide
Senior AI Application Security Engineer
Plano, Texas, United States
$94k-$156k/yr OnsiteFull Time
PepsiCo
PepsiCoNASDAQ: PEP: Global food and beverage manufacturer and distributor.
Expertise in AI application security, threat modeling, cloud-native architectures, Python/Go, CI/CD integration, and mentoring; familiarity with LLMs, RAG, MCP, and AI threat mitigation.
STRIDE, PASTA, OWASP Top 10, OWASP Top 10 for LLM Applications, AWS, Azure, GCP, Python, Go, Promptfoo, NVIDIA Garak, Protect AI, Lakera, HiddenLayer, Microsoft AI Security, LangChain, LangGraph, Semantic Kernel, MCP, OpenAI SDK, Azure AI Foundry, Amazon Bedrock
2mo
Save
Mark Applied
Hide
SkillBridge, Application Security Engineer - Trainee
Dallas, Texas, United States
HybridFull Time
Equinix
EquinixNASDAQ: EQIX: Provides global data center colocation and digital interconnection services.
8+ YOETrainee role under the SkillBridge program; familiarity with security concepts; experience with CI/CD security tooling and cloud environments preferred.
SAST, SCA, DAST, Secrets Scanning, GitHub Actions, Terraform, Ansible, Python
1w
Save
Mark Applied
Hide
Senior AI Application Security Engineer
Plano, Texas, United States
$94k-$156k/yr OnsiteFull Time
PepsiCo
PepsiCoNASDAQ: PEP: Produces and distributes global snack and beverage products.
Advanced expertise in AI and application security, threat modeling, cloud-native architectures (AWS preferred), Python or Go, CI/CD/DevSecOps integration, and experience mitigating AI-specific threats.
STRIDE, PASTA, OWASP Top 10, OWASP Top 10 for LLM Applications, AWS, Azure, GCP, Python, Go, Promptfoo, NVIDIA Garak, Protect AI, Lakera, HiddenLayer, Microsoft AI Security, LangChain, LangGraph, Semantic Kernel, MCP, OpenAI SDK, Azure AI Foundry, Amazon Bedrock
1w
Save
Mark Applied
Hide
Sr. Application Security Testing Engineer
Austin, Texas, United States
$165k-$201k/yr OnsiteFull Time
3M
3MNYSE: MMM: Manufacturers diversified industrial, safety, consumer, and electronics products.
3+ YOEBachelor's in cybersecurity/computer science/technology, 3+ years application security experience, hands-on SAST/DAST/SCA and CI/CD integration, threat modeling knowledge, strong communication; must be authorized to work without sponsorship.
SAST, DAST, SCA, GitHub, Azure DevOps, CI/CD