Application Security Engineer
easypost-2
| Company | easypost-2 |
| Category | Engineering |
| Location | US |
| Remote | Remote |
| Employment | Not stated |
| Level | Not stated |
| Salary | Not stated by the employer |
| Posted | 27 May 2026 |
| Last verified | 12 Aug 2026 |
| Source | The employer's own careers page (company_site) |
Description
This role focuses on securing applications and infrastructure through security engineering practices. The Application Security Engineer will identify vulnerabilities, implement security controls, and work to reduce security risks across the organization's software and systems.
What You'll Do
• Conduct application and infrastructure security assessments and penetration testing
• Design and implement security controls and hardening measures
• Review code and architecture for security vulnerabilities and compliance issues
• Collaborate with development and operations teams to remediate security findings
• Develop and maintain security policies, standards, and best practices documentation
What You Need
• 5+ years of application security or infrastructure security experience
• Strong understanding of common vulnerabilities and attack vectors (OWASP Top 10, etc.)
• Experience with security testing tools and methodologies
• Knowledge of security controls, threat modeling, and risk assessment
• Excellent communication skills to explain security concepts to technical and non-technical stakeholders
Nice to Have
• CISSP, CEH, or similar security certification
• Experience with penetration testing and vulnerability assessment frameworks
• Familiarity with Linux and Unix-based systems administration
• Background in secure software development lifecycle (SDLC) practices