Senior Application Security Engineer

Xpt Software — Australia · Posted ~2 days ago

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Description

Job description: Senior Application Security Engineer – Secure Code Scanning Implementation Lead the implementation and onboarding of Secure Code Scanning platforms such as Snyk, Fortify, Checkmarx, or Veracode across the software development lifecycle. Design and implement integrations with GitHub, GitLab and CI/CD pipelines to enable automated security scanning and policy enforcement. Collaborate with development, DevOps, and security teams to define scanning strategies, remediation workflows, quality gates, and secure coding controls. Proactively identify implementation challenges, integration dependencies, developer adoption issues, and performance impacts, and provide practical solutions to mitigate risks. Establish vulnerability management processes, including triage, risk prioritization, exception handling, SLA definition, and remediation tracking. Develop technical standards, deployment procedures, operational runbooks, and governance processes to support long-term platform adoption. Provide hands-on support during implementation, testing, rollout, and post-go-live stabilization activities while mentoring development teams on secure coding practices. Demonstrated experience implementing similar Application Security and Secure Coding solutions in large enterprise environments, with strong knowledge of SAST, vulnerability management, SDLC, and DevSecOps practices.