Peer Consulting Resources Inc. logo
Peer Consulting Resources Inc. Verified
IT Consulting, Professional Services

Application Security Engineer

Brooklyn, New York, United StatesHybridContractPosted 2 months agoVisa sponsorship available

Is this role right for you?

Upload your resume and get a skill-by-skill breakdown — see exactly where you match, where you're close, and what to highlight. Not a mystery percentage.

Get a tailored resume highlighting what this role needs.

Role summary

The Application Security Engineer will be embedded within the Application Development team to ensure security is integrated throughout the software development lifecycle. This role focuses on designing and building secure web, mobile, API, GIS, and cloud-based applications for public safety operations. Responsibilities include establishing secure coding practices, defining standards for languages like Java, .NET, Python, and JavaScript, and conducting architecture reviews. The engineer will also implement secure authentication/authorization using SAML2, OIDC, and OAuth2, and analyze results from SAST, DAST, and SCA tools. A minimum of 4 years in secure application development and prior hands-on software development experience are required, along with familiarity with security tools and NIST controls.

Contact Details:

Poonam Khandelwal

Email: poonam.khandelwal@peer-consulting.com

Cell: (732) 797-9766

Job Title: Application Security Engineer

Location: Brooklyn NY (The position will be 3-day onsite hybrid)

Duration: 12 months+

Years of Experience: 10+ Years

Required Hours/Week: 35Hours/Week

Note:

  • Local candidates only.

Job Overview:

  • The Application Security Engineer is embedded within the Application Development team and ensures security is integrated into all stages of software development. The role focuses on designing and building secure applications while working closely with application administrators who manage security tools and CI/CD pipelines.
  • This position is responsible for enabling developers to produce secure, resilient, and compliant software for web, mobile, API, GIS, and cloud-based systems supporting Fire, EMS, and administrative operations.

Responsibilities:

1. Secure Software Development

  • Establish and apply secure coding practices within the development team.
  • Define and enforce secure coding standards for Java, .NET, Python, and JavaScript applications.
  • Conduct secure design and architecture reviews for new and legacy systems.
  • Educate developers on secure coding practices, authentication/authorization best practices, and common application vulnerabilities.

Apply protections aligned with:

  • OWASP Top 10
  • OWASP API Security Top 10

2. Application & API Security

  • Design and implement secure REST APIs and web services.

Implement secure authentication/authorization using:

  • SAML2
  • OIDC
  • OAuth2

Secure Java and JavaScript applications, including:

  • Spring Boot
  • React
  • Ensure secure handling of tokens, sessions, and secrets.
  • Collaborate with App Admins and Security team to integrate applications into WAFs, load balancers, and other security monitoring tools.

Mandatory Qualifications:

  • Minimum 4+ years in secure application development.
  • Prior hands-on software development experience.

Strong Understanding:

  • Web and mobile application architecture
  • Internet protocols (HTTP, HTTPS, WebSockets)
  • REST API security
  • Expertise in SAST, DAST, and SCA concepts (understanding results and remediation), in collaboration with App Admins.
  • Familiarity with security tools such as Veracode, Burp Suite, Zimperium, Prisma, Rapid7.
  • Experience applying NIST 800-53 and 800-171 controls at the application design level.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to work independently within a development-focused team.

Preferred Qualifications:

  • Experience with containerized applications (Docker, Kubernetes).

Knowledge:

  • Core Java, J2EE, Spring Boot
  • React, AngularJS, HTML5, CSS, JavaScript
  • Experience designing secure GIS systems.
  • Familiarity with public safety or emergency response systems.
Ready to apply?
You'll be redirected to Peer Consulting Resources Inc.'s application page.

Similar roles