Application Security Engineer

💰 $120k-$135k
🇺🇸 United States - Remote
🔒 Cybersecurity🔵 Mid-level

Job description

RxSense is a leading healthcare technology company delivering innovative solutions for pharmacy benefits and prescription savings. Our enterprise platform brings transparency, flexibility, and efficiency to pharmacy benefit management, helping clients streamline operations and enabling consumers to save on prescriptions. By integrating intelligence across the pharmacy ecosystem, RxSense makes cost-effective healthcare more accessible. Whether for PBMs, pharmacies, or individuals, our solutions help modernize operations, reduce costs, and improve outcomes.

RxSense also owns and operates SingleCare, a free prescription savings service that offers consumers access to consistently low prices on prescription drugs. Through its partnerships with the country’s largest pharmacies and grocers, including CVS, Walgreens, Walmart, Kroger and Albertsons, SingleCare improves access and adherence to affordable medications and has helped millions of Americans save over $11 billion on their medications.

RxSense is a great place to work! Our company has earned several prestigious awards, including Fast Company’s Most Innovative Companies, Forbes’ Top Startup Employers, Modern Healthcare’s Best Places to Work in Healthcare, and Inc’s Best in Business and Best Workplaces.

Position Summary:

The Application Security Engineer position is a mid-tier role in the RxSense Information Security team that will focus on assessing and managing risks in the application security domain. In this role you will act as an application security SME on project teams and be responsible for performing various security touchpoints throughout the RxSense Software Development Lifecycle.

Must be aware of and comply with all aspects of the RxSense Information Security Program and the policies contained therein. Must always understand the importance of maintaining Information Security in all Business Operations.

Job Responsibilities:

  • Work with development and product teams to define security requirements and ensure they are followed
  • Partner with development and product teams to drive remediation of security gaps
  • Coordinate 3rd party penetration tests and work with internal teams to remediate findings
  • Perform architecture and design reviews on company applications
  • Monitor and analyze application security logs and events to detect and respond to security threats
  • Perform monitoring and management of Web Application Firewall
  • Interpret and manually validate Static Application Security Testing (SAST) results
  • Manage SAST, SCA and DAST tools to ensure comprehensive testing and remediation of findings
  • Analyze and report on risks discovered through application security testing
  • Participate on project teams as InfoSec representative
  • Ability to quickly adapt to changing priorities as business needs change
  • Excellent interpersonal and communication skills a must

Strengths:

  • Knowledge and experience with techniques, tools and practices pertaining to securing the SDLC (Software Development Lifecycle).
  • Experience with software development, programing, scripting.
  • Experience with OWASP ZAP or Burp Proxy
  • Experience with static application security testing tools
  • Knowledge and experience with implementing and managing web application firewalls
  • High level understanding of securing Cloud Platforms, AWS and GCP, cloud architecture
  • Although the position is in application security domain, a broad interest/experience across the whole security domain would be an advantage

Requirements:

  • BS in Information Systems preferred but appropriate experience is acceptable
  • 3+ years of experience in application security is required.
  • Must have the ability to identify, analyze and solve security risks pragmatically
  • Familiarity with web application architecture, APIs, and cloud environments
  • Experience with security standards and frameworks, such as OWASP, NIST, or CIS
  • Practical understanding of common application security vulnerabilities
  • Excellent problem-solving and analytical skills with demonstrated ability to investigate and solve complex problems
  • Excellent communication skills are needed with demonstrated ability to work with multiple organizational functions and levels
  • Certifications a plus; GWAPT, GWEB, CISSP, etc.

Salary Range: $120,000 - $135,000

RxSense believes that a diverse workforce is a more talented and productive workforce. As such, we are an Equal Opportunity and Affirmative Action employer. Our recruitment process is free from discriminatory hiring practices and all qualified applicants are considered for employment without regard to race, color, religion, sex, gender, sexual orientation, gender identity, ancestry, age, or national origin.  Neither will qualified applicants be discriminated against on the basis of disability or protected veteran status.  We believe in the strength of the collaboration, creativity and sense of community a diverse workforce brings.

Share this job:
Please let RxSense know you found this job on Remote First Jobs 🙏

Similar Remote Jobs

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply