Energy Solutions logo

Senior Application Security Engineer Hybrid - US

Energy Solutions
Location not specified
Full Time
Posted October 20, 2025
$119k - $147k
Apply Now

Application opens on company website

Job Description

A Senior Application Security Engineer responsible for managing and improving the security of internal applications through risk assessment, security controls, code reviews, and compliance, primarily focusing on Django Python development within a collaborative, remote-friendly environment.

Key Responsibilities

  • Manage security and risk for internally developed applications.
  • Contribute to and prioritize the application security roadmap.
  • Review pull requests for security issues and guide secure coding practices.
  • Conduct static code analysis, triage findings, and drive remediation.
  • Develop reference security implementations in Django Python.
  • Translate security standards and requirements into technical stories and controls.
  • Perform threat modeling and document secure architecture patterns.
  • Oversee security tasks throughout the Software Delivery Life Cycle (SDLC).
  • Collaborate with development teams to ensure security compliance and best practices.
  • Review architecture and code changes for security impact and compliance.

Requirements

  • Minimum of 5 years experience in application security experience.
  • Practice and implementation with Django Python with a clear application-security focus, including production experience and impact, not just theory.
  • Engineering background in software or DevOps SRE with the ability to read, modify code, review pull requests, and build proof of concepts (PoCs).
  • Experience with GitHub security, including reviewing static code scans, triaging findings, eliminating noise, and driving remediation with owners.
  • Experience embedding secure Software Development Life Cycle (SDLC) into Git-based workflows and CI/CD pipelines, including pre-commit hooks, pipeline gates, and policy-as-code.
  • Practical knowledge of SOC 2 and familiarity with NIST 800-53 to translate requirements into technical tasks and evidence.
  • Ability to operate across code, application, and DevOps containers, including Infrastructure as Code (IaC) basics, secrets management, logging, and monitoring.
  • Ability to read, review, and make recommendations on secure Django Python patterns, including authentication, input validation, secrets handling, rate limiting, and geo-based access.
  • Serve as a steward for static application security testing (SAST) scanning review, triage findings, eliminate noise, and drive remediation with owners.
  • Map SOC 2 NIST requirements to engineering work, translate requirements into stories, controls, and automated evidence in CI/CD.
  • Oversee security-related tasks in the Software Delivery Life Cycle (SDLC) to ensure software development activities remain in compliance.
  • Collaborate with software developers and code base leads to ensure security best practices are followed.
  • Act as a liaison between technical requirements from the business (security, privacy, compliance) and development teams.
  • Participate as a subject matter expert in security architecture, including new designs and design reviews.
  • Recommend application security improvements based on best practices, OWASP standards, and other web application security frameworks.
  • Review architecture and code changes for security impact and ensure compliance with all company security policies and standards.
  • Manage and maintain all security-related tickets, including recommendations, testing, and validation.
  • Clear, persuasive verbal and written communication skills, with the ability to prioritize tasks effectively.
  • Excellent time management skills with a proven ability to meet deadlines.
  • Excellent interpersonal and negotiation skills.

Benefits & Perks

Salary range of 119,100 - 147,400 USD annually
Target compensation of 119,000 to 131,600 USD based on experience
Generous retirement package
Medical, dental, and vision insurance
Pre-tax contribution plans
Employee Stock Ownership Plan (ESOP)

Ready to Apply?

Join Energy Solutions and make an impact in renewable energy

Stay Updated on Sustainability Jobs

Get the latest renewable energy jobs and career tips delivered to your inbox.

More jobs at Energy Solutions

Energy Solutions logo

Director, Software Engineering Hybrid - Boston, MA

Energy Solutions
Boston
Full Time
Jan 1
$145k-170k
Energy Solutions logo

Director, Software Engineering Hybrid - New York, NY

Energy Solutions
New York
Full Time
Jan 1
$145k-170k
Energy Solutions logo

Workday Developer Hybrid Oakland, CA - US

Energy Solutions
Oakland
Full Time
Dec 25
$100k-115k

More jobs in Location not specified

Planet logo

Account Executive APJ

Planet
NEW
Remote
Full Time
14h
Planet logo

Account Executive NATO

Planet
NEW
Remote
Full Time
14h
Planet logo

Account Executive NATO

Planet
NEW
Remote
Full Time
14h