Application Security Engineer
Role summary
Buildertrend is seeking an Application Security Engineer to enhance the security of their construction technology platform. This role involves performing vulnerability and penetration testing, automating security workflows, and partnering with various teams to ensure secure design and response. The engineer will also develop security test plans, monitor security issues, and support compliance requirements related to GLBA, PCI, SOX, and privacy. The position requires a Bachelor's degree or equivalent experience, 5+ years of application security experience, and proficiency in development languages and security tools.
Compensation:
$130,000-$170,000
Location:
Omaha, NE - Hybrid or United States - Remote
The Job
As an Application Security Engineer at Buildertrend, you will strengthen the security of the tools builders rely on every day. Your work ensures our platform stays trusted, resilient, and ready for the demands of modern construction technology. You will guide teams toward secure design, identify risks early, and help engineers ship safer code with confidence.
What You Will Do
- Perform vulnerability and penetration testing and document findings with clear, actionable recommendations
- Automate testing and remediation workflows to increase efficiency and consistency
- Partner with architects, SOC analysts, incident responders, and developers to support secure design and response
- Monitor public security issues and apply new tactics to internal testing practices
- Execute and refine a repeatable security review process using static and dynamic analysis
- Develop security test plans that identify risks early without disrupting production
- Support compliance needs related to GLBA, PCI, SOX, and privacy requirements
Who You Are And What You Need
- Bachelor’s degree in computer science or related field, or equivalent experience required.
- 5+ years of application security experience, including compliance and risk management with software engineering and/or network security engineering background.
- Experience with vulnerability testing, threat modeling, and secure programming.
- Proficiency in one or more development languages (.NET/C# preferred) and understanding of network and web protocols.
- Experience with APIs, static and dynamic analysis tools, and cloud environments such as GCP, AWS, or Azure
- Knowledge of frameworks such as ISO 27001, NIST, PCI DSS, GDPR, CIS, or SOC 2.
- Familiarity with Windows, Linux, and Unix systems.
- Ability to work on-call to respond to application security incidents.
We Are Giving You
- Exceptional health packages, including medical, dental, and vision coverage, plus life insurance and short- and long-term disability benefits
- A 401(k) plan with Buildertrend matching contributions to help you plan for the future
- Generous paid time off, 11 paid holidays, plus personal days to make sure you have time to recharge
- Parental leave and paid sabbaticals to support you during life’s big moments
- Volunteer time off – because giving back matters
- Wellness program and onsite fitness center to keep you feeling your best
- Opportunities for hybrid or remote work to give you the flexibility you need
- Technology reimbursement to help cover costs for the tech you need to do your job from home
- Free daily lunches when you're at our HQ office, plus monthly events to connect with your team
Who We Are
Buildertrend is cutting-edge, cloud-based project management software. With nearly 1 million users across the globe, we know what builders need: To work simpler, see more growth and calm the chaos in their business. That’s why we believe in providing an all-in-one solution to solve real problems, deliver real results, and change the way the world builds. If you want to learn more about us, check out: https://buildertrend.com/about/
Working At Buildertrend
At Buildertrend, we fully recognize that we all work so we can live better lives—we appreciate and respect that this is a job and not your whole life. What makes Buildertrend so special is a commitment to ensuring you can have the best job, work with the best people, and live your best life outside of work. Our goal is to create a culture where everyone can make an impact on our customers, communities, and each other. In short: We want you to be who you are, love what you do, and build your best life.
*Buildertrend Solutions, Inc. is committed to a policy of Equal Employment Opportunity and will not discriminate against an applicant or employee based on race, including natural or protective hairstyle, color, religion, creed, national origin or ancestry, ethnicity, sex (including gender, pregnancy and pregnancy-related conditions, childbirth, breastfeeding, sexual orientation, gender identity, gender expression, sexual orientation, reproductive decision-making), age, physical or mental disability, veteran or military status, genetic information, citizenship, marital status, or any other legally recognized protected basis under federal, state, or local law. The information collected by this application is solely to determine suitability for employment, verify identity, and maintain employment statistics on applicants.*
*Applicants with disabilities may be entitled to reasonable accommodation under the Americans with Disabilities Act and certain state or local laws. A “reasonable accommodation” is a change in the way things are normally done which will ensure an equal employment opportunity without imposing undue hardship on Buildertrend Solutions, Inc. Please inform the company's personnel representative if you need assistance completing this application or to otherwise participate in the application process. To see the complete list of Essential Job Functions, visit*
*https://buildertrend.com/essential-job-functions-notice/*
Similar roles
Sr. Application Security EngineervCluster · United States · Remote
Application Security EngineerRyder System · Massachusetts, United States · Onsite- Application Security EngineerGreenbrier Government Solutions, Inc · Virginia, United States · Hybrid
- Application Security EngineerMeridianLink · United States · Onsite
- Application Security EngineerRemoteHunter · United States · Remote