Lumin Digital Logo

Application Security Engineer

💰 $120k-$140k
🇺🇸 United States - Remote
🔒 Cybersecurity🔵 Mid-level

Job Description

Job Description

Basic Function

The Application Security Engineer ensures robust security practices within a highly regulated SaaS environment. Collaborating closely with Product and Development teams, this role embeds security throughout the Software Development Life Cycle (SDLC), from design to deployment and ongoing maintenance. The engineer manages automated vulnerability scanning tools, coordinates penetration tests, advises on secure architecture, and supports compliance, risk management, and incident response initiatives.

Essential Functions and Responsibilities:Monitor and analyze security alerts and vulnerability reports, prioritizing and validating vulnerabilities for timely remediation.

Maintain and optimize automated vulnerability scanning systems (SAST/DAST), ensuring comprehensive application security assessments.

Own the design, implementation, and evolution of ASPM capabilities, integrating signals from SAST, DAST, SCA to manage runtime and production telemetry and define risk scoring models that balance exploitability, data sensitivity, and business impact.

Own and operate the company’s bug bounty program end-to-end, including program strategy, scope definition, and maturity evolution, triage, validation, and severity assessment of submissions and engagement with external security researchersCoordinate and manage third-party penetration tests, bug bounty programs, and vulnerability assessments, responding effectively to findings.

Collaborate cross-functionally to perform architectural and code reviews, delivering actionable recommendations for enhanced application security.

Develop and maintain application threat models to inform proactive risk management and security posture improvements.

Assist internal teams in vulnerability remediation using industry-standard tools (e.g., Veracode, Qualys, Rapid7, Burp).Support incident response activities, enabling rapid identification, containment, and resolution of application security incidents.

Stay current on emerging security threats, vulnerabilities, and industry best practices, translating insights into practical guidance.

Provide security expertise in risk management, compliance audits, and client communications to enhance the overall security posture.

Perform other duties as assigned

Position Specifications

Education: Bachelor’s degree in Computer Science, Management Information Systems, Cybersecurity, or a related field is required, or equivalent combination of education and experience

Experience: 4 years of experience in application security engineering, software engineering, with security focused roles3 years of hands-on experience identifying and qualifying application security vulnerabilities, preferably within web, financial services, or mobile application environments required. Experience with AWS, Git, and industry-standard application vulnerability platforms required.

Knowledge, Skills, & Abilities: Proficiency analyzing application source code (e.g., TypeScript, JavaScript, C#, Java, Swift) to identify security vulnerabilities. Strong technical knowledge of security vulnerabilities and standards (OWASP Top 10, CWE, CVSS scoring).Deep familiarity with authentication and authorization protocols (e.g., SAML, OAuth 2.0, JWT).Applied knowledge of cryptographic practices, including encryption standards, hashing algorithms, and authentication lifecycle management. Excellent analytical, communication, and coordination skills, with the ability to effectively manage and communicate security remediation tasks. Ability to maintain productivity and professionalism in remote or distributed team environments. Demonstrated passion for continuous security learning and staying updated on industry threats and trends.

Travel: Minimal, generally 12 days or less per year

$120,000 - $140,000 a year

LIFE AT LUMIN DIGITAL

Lumin Digital is a trailblazer in digital banking solutions, driven by a unique approach to technology, service, and people. We empower credit unions and banks by creating cutting-edge digital experiences that continuously serve, engage, and grow their membership base. Lumin is 100% cloud-native, purpose-built to unlock the full advantages of the cloud for financial institutions and their users.

At Lumin, we thrive on curiosity and innovation. Our culture fosters trust - in our expertise and decisions, respect - for diverse perspectives and talents, and boldness - in pursuing innovative paths. These values guide us, shaping a workplace where collaboration thrives, ideas flourish, and new possibilities are discovered. Focused on continuous improvement and innovation, we encourage our team to explore, experiment, and put new ideas into action, challenging the usual way of doing things.

Lumin Digital is an equal opportunity employer. We consider all qualified applicants without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender identity, or any other legally protected basis, in accordance with applicable law.

For more information, visit lumindigital.com.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Share this job:
Please let Lumin Digital know you found this job on Remote First Jobs 🙏

9057 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Lumin Digital

Find your next opportunity with companies that specialize in Credit Unions, Digital Banking, Member Engagement, and Advanced Security. Explore remote-first companies like Lumin Digital that prioritize flexible work and home-office freedom.

Access Softek Logo

Access Softek

Provides digital banking platforms and financial software solutions for credit unions and banks.

3 open positions →
Polly Logo

Polly

Cloud-native product, pricing, and capital markets technology for banks, credit unions, and mortgage lenders

1 open positions →
HSO Logo

HSO

1001-5000 www.hso.com

Helps companies modernize business operations and accelerate digital transformation using Microsoft technology.

View company profile →
interface.ai Logo

interface.ai

Agentic AI solutions for community banks and credit unions across voice, digital, and employee channels.

11 open positions →
Galileo Financial Technologies Logo

Galileo Financial Technologies

Provides a platform for core banking, card issuing, and payment processing, serving fintechs, banks, and brands.

4 open positions →
Palo Alto Networks Logo

Palo Alto Networks

Protecting organizations across clouds, networks, and mobile devices

View company profile →

Project: Career Search

Rev. 2026.2

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply