The Engineering Lead Analyst – SonarQube & Code Quality Engineering is a senior-level engineering role responsible for leading static code analysis, automated code quality governance, security vulnerability remediation, and AI-augmented developer enablement across enterprise software delivery pipelines. In this role, you will champion software reliability, maintainability, clean-coding standards, and automated quality gates. You will partner with development teams, system architects, and platform engineering to integrate and manage enterprise-scale code quality platforms (such as SonarQube) both on-premises and in cloud/SaaS environments. Additionally, you will drive modern engineering practices by embedding Behavior-Driven Development (BDD) within your own software delivery and leveraging Agentic AI workers and Model Context Protocol (MCP) architectures to optimize developer experience, streamline code governance, and boost engineering velocity. Key Responsibilities 1. Code Quality & Static Analysis Platform Ownership Lead the architecture, deployment, administration, and continuous enhancement of enterprise Static Application Security Testing (SAST) and Code Quality platforms (e.g., SonarQube , DeepSource, Codacy, Semgrep). Configure, calibrate, and enforce automated Quality Gates, code rulesets, technical debt calculation models, and code-coverage baselines across multi-language enterprise repositories. Oversee version upgrades, patching, high availability, and operational maintenance for on-premises and SaaS/cloud-hosted code quality infrastructure. 2. CI/CD & Pipeline Integration <li style=
Jobiba hiring network
Application Security Engineer Jobs
4,781 active opportunities · Updated for October 2026
Fresh results
15 shown
Explore current application security engineer jobs. Use filters to narrow by work mode, employment type, experience and date posted.
ROLE: SOFTWARE ENGINEER TEAM: MEDIA LOCATION: TORONTO (HYBRID) COMPANY OVERVIEW Salt is a North American marketing agency that creates connected experiences through creative, digital & media innovation. Our mission is to “Earn The World’s Attention” and Salt is built to find, develop, execute, and amplify the ideas that are worthy of our clients’ audiences. We’ve structured our agency to do what’s right for our clients – to connect different perspectives, to work across mediums, and to focus on delivering meaningful, effective results. We’re committed to living up to the values in our name. “Salt of The Earth” means we value collaborative, humble, hard-working people here. We’re looking for people who are as smart as they are kind because we believe the right talent and the right culture help us do what’s right for our clients. ROLE OVERVIEW Join us as a Software Engineer building the next generation of AI products. This hands-on engineering role combines Platform Engineering, Security, and Software Development to create the cloud platform that powers our applications at scale. You'll spend approximately 50% of your time building secure, automated, and reliable infrastructure, and the other 50% developing innovative product features - working with the latest cloud, AI, and developer technologies to deliver solutions used across the organization. You will build, secure, and operate modern cloud-based applications and AI platforms, developing new product features while helping ensure our infrastructure is secure, scalable, and reliable. Working closely with product and engineering, you will develop new product features while managing cloud infrastructure, CI/CD pipelines, application security, and production operations across our AI platforms. CORE RESPONSIBILITIES Infrastructure & Data Platform Engineering Maintain efficient cloud Infrastructure, and development environments. Develop i
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. About the Role At Okta, identity is at the heart of everything we build. As an Associate Solutions Engineer for Okta, you are a builder, owner, and collaborator who serves as a key technical and business advisor to developer personas across the Australian commercial customers/businesses and the APJ timezone (mostly ANZ). Anchored by Okta’s core values— Love our customers , Build and own it , Always secure. Always on. , and Drive what’s next —you will craft, position, and demonstrate how Auth0 solves critical security challenges throughout the sales cycle. Key Responsibilities Love Our Customers: Partner closely with sales teams as the go-to identity authority, aligning Auth0 solutions directly with developer pain points and business goals through tailored, value-driven product demonstrations. Build and Own It: Architect and execute hands-on Proof of Concepts (POCs) for complex customer use cases, taking full accountability for technical validation alongside cross-functional engineering teams. Always Secure. Always On.: Confidently address in-depth technical, application security, and identity infrastructure inquiries from developers, architects, and CTOs to ensure reliable, high-trust deployments. Drive What’s Next: Serve as the strategic voice of the customer, bringing critical market insights and developer feedback back to Product Management to continuously evolve our platform. Innovate & Share Knowledge: Champion scalable best practices, build reusab
At Lyft, our purpose is to serve and connect. We aim to achieve this by cultivating a work environment where all team members belong and have the opportunity to thrive. Lyft connects people to transportation to change the way we live and get around our communities. Lyft’s engineering team is growing rapidly, and we are looking for Technical Program Managers to help us scale. Come be part of a new team at Lyft focused on enabling and empowering engineering teams to deliver at scale. Our drivers and passengers entrust Lyft with their personal information and travel details to get where they're going and expect us to keep that data safe. Lyft's security team leads efforts across the company to ensure our systems are secure and worthy of our users' trust. The security team designs and builds Lyft's security architecture, consult with other teams as they build and launch new products and features, proactively plans for the unexpected, and responds to incidents that occur. Our work affects the entire company and takes place at all levels of the stack, from infrastructure to web application security, as well as mobile apps, IT, and autonomous vehicles. We try to approach security from a software engineering standpoint. We believe in scaling security through automation and tooling and we ship frequently. Check out our blog posts at https://eng.lyft.com/tagged/security to learn more about some of the things we’ve built. We’re looking for the right person to join our team to perform service and application security review, and move us along our maturity journey. In order to be scalable, each secure product quality gate must be automated and integrated into our software release pipeline. Our grand vision is a fully automated series of quality controls that constantly validate that our
XO Health believes healthcare is fixable. Become part of the community changing the face of the industry. XO Health is the first health plan designed by and for self-insured employers that delivers a more unified health experience for everyone – from those who receive care, to those who deliver it, to those who pay for it. We are growing a multi-disciplinary team of diverse and digitally empowered employees ready to rebuild trust in healthcare through comprehensive and unified transformation. Senior Full Stack Engineer - India (Remote) About the Role : XO Health is seeking a Senior Software Engineer for building applications that enable a Provider’s experience. This position will be responsible for the full stack design, development, testing, documentation, and analysis of features utilizing .Net, Angular, GraphQL, implementing a serverless architecture in AWS. The ideal candidate will be instrumental in designing and implementing solutions that are scalable, performance-optimized and maintainable. Responsibilities: Design, develop, and maintain scalable full-stack applications for a healthcare insurance platform Engage with cross-functional teams to define and implement new features that meet the complex demands of the healthcare sector Ensure application security and compliance with HIPAA and other regulations, focusing on performance and scalability Implement serverless architectures on cloud platforms (Azure, AWS) to optimize backend functionality Utilize modern front-end frameworks (React, Angular, Vue) to create responsive user interfaces Integrate and customize rules engines for automated decision-making and efficiency Employ microservices architecture to enhance application scalability, resilience, and deployment efficiency Utilize GraphQL for efficient and flexible data retrieval, improving the application's data interaction layer Mentor junior developers, f
About the Team OpenAI’s Cyber team works to make frontier AI safe, trusted, and transformative for developers and enterprises. This team is building the security foundation for Codex: the native controls that govern what Codex can access and do, and the interfaces that allow customers and security partners to inspect, constrain, approve, and respond to Codex activity. Our goal is to make Codex secure by default, governable by enterprises, and interoperable with the security products customers already trust . This extends the existing product direction around tenant-scoped tools, guarded actions, approval systems, and scalable partner interfaces. About the Role We are looking for a deeply technical Product Manager to help build Codex security controls and the partner ecosystem around them. This role focuses on securing Codex itself : how identity, permissions, tools, MCP servers, repositories, secrets, networks, and high-impact actions are governed across Codex products. You will also help define standard interfaces through which authorized customer and partner systems can provide security context, inspect activity, return policy decisions, receive telemetry, and initiate bounded responses. You will work closely with Codex product and engineering, OpenAI Security and Safety, enterprise customers, and partners across application security, identity, cloud security, data security, infrastructure, and security operations. In this Role you Will Build native security controls for Codex Partner with engineering, design, security, and safety teams to develop controls for: Identity, roles, permissions, and tenant isolation. Access to repositories, files, tools, MCP servers, secrets, networks, and infrastructure. Read, write, execute, and deployment authority. Human and policy-based approvals. Prompt-injection and untrusted-content defenses. Audit trails, provenance, stop conditions, revocation, and rollback. Help establish a graduated authority model in which local, read-only
Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title and Summary Data Scientist What is the opportunity? We are seeking a highly skilled and motivated Data Scientist to join our Cyber Analytics team within the Security Solutions Data Science organization. This role is critical to driving advanced analytics initiatives, improving fraud detection capabilities, and supporting strategic decision-making across cybersecurity and payment fraud domains. What will you do? • Gain subject matter knowledge on web application security, commonly exploited cyber vulnerabilities, and methods of online and payment card fraud including the common points of purchase for compromised cards. • Build, develop, and maintain innovative data-driven analytical solutions, including predictive models and machine learning algorithms, on large volumes of data to support analytics and reporting needs across products, markets, and services. • Competently handle large datasets, sifting for patterns and trends and translating those insights into technical rules and solutions. • Combine cybersecurity and transaction data into new and insightful views of fraud and vulnerability across the Mastercard network. • Collaborate with cross-functional teams including product, engineering, and operations to understand product, usage, and data pipelines as well as delivering scalable solutions. • T
About the Team We are a small and fast-moving partnerships team that shapes and executes OpenAI’s most important collaborations. Your mission is to build and grow partnerships across the cybersecurity ecosystem. Reporting to the Cybersecurity Partnerships Lead, you will own a portfolio of cybersecurity technology partners and help them validate, launch, and scale solutions powered by OpenAI models and platforms. About the Role You are an experienced partnerships operator who combines business development, partner management, technical curiosity, and strong execution. You can manage external relationships while driving detailed cross-functional work across product, engineering, technical success, sales, marketing, legal, security, and operations. You move with urgency, follow through consistently, and are comfortable managing a portfolio in a fast-changing market. In this role, you will: Source, close and manage a portfolio of cybersecurity technology partners. Identify high-value use cases across security operations, identity, cloud security, application security, threat intelligence, governance, risk, and compliance. Develop partner plans covering integration, launch, enablement, co-marketing, co-sell, and growth. Support partnership structuring and coordinate product, technical, commercial, legal, and security workstreams. Help partners move from concept and technical validation to production launch and scaled customer adoption. Run regular partner reviews, track commitments, resolve blockers, and identify expansion opportunities. Coordinate closely with product, engineering, technical success, sales, marketing, legal, security, and operations. Measure partner pipeline, launches, model adoption, consumption, customer outcomes, and partner health. You might thrive in this role if you have: 8+ years of experience in partnerships, business development, alliances, partner success, or ecosystem roles. Experience in cybersecurity, enterprise software, cloud platforms, o
About Datadog We're on a mission to build the best platform in the world for engineers to understand and scale their systems, applications, and teams. We operate at a high scale - trillions of data points per day — providing always-on alerting, metrics visualization, logs, and application tracing for tens of thousands of companies. Our engineering culture values pragmatism, honesty, and simplicity to solve hard problems the right way. The Opportunity We are looking for an experienced software engineer to join our CI/CD Security Team within our SDLC Security organization. We work at the intersection of security and engineering infrastructure to secure Datadog's continuous integration and continuous delivery systems. Our responsibilities include hardening pipelines, protecting credentials, and enforcing tightly scoped access controls. We also develop authorization and verification mechanisms to ensure that only trusted code and approved processes can reach production. In this role, you will shape and build a new security layer for our CI/CD infrastructure and drive its adoption across the engineering organization. You will solve challenging systems problems around trusted build provenance, secure secret delivery, and real-time policy enforcement at high throughput. The work sits directly in the critical path of software delivery, where strong security guarantees have to coexist with low latency, high reliability, and a seamless developer experience. You’ll join at an ideal time to make a big impact, as the need for robust software supply chain security is higher than ever. Datadog is growing rapidly, and AI-assisted development is increasing both the pace of software delivery and the amount of activity flowing through our CI/CD systems. Securing that scale without slowing engineers down requires strong software engineering fundamentals, thoughtful automation, and security controls designed to operate reliably at high throughput. At Datadog, we pla
CAPCO POLAND *We are looking for Poland based candidate. Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliver business consulting, digital transformation and technology services to Finance and Energy markets. Our collaborative and efficient approach helps clients reduce costs and manage risk and regulatory change while increasing revenues. We are thinkers, innovators, and disruptors. We are small enough to care but large enough to matter. We are seeking a highly skilled Security Operations Engineer to support the expansion of a strategic security program focused on onboarding critical applications into enhanced monitoring capabilities.In this role, you will play a key part in building and optimizing SIEM detection capabilities, supporting threat verification, and enabling regulatory alignment with DORA (Digital Operational Resilience Act) requirements by the end of 2026. You will work at the intersection of SIEM engineering, threat modelling, and security operations , contributing directly to improving detection accuracy and strengthening overall security posture. Key Responsibilities: Detection Engineering: Design, build, and optimize SIEM detection rules (with a focus on Microsoft Sentinel) Testing & Automation: Develop and execute test cases for detection logic; automate validation processes using scripting Application Onboarding: Support onboarding of critical applications into the security monitoring ecosystem Requirements Gathering: Collaborate with application teams to define logging requirements and detection use cases Workshop Facilitation: Lead and moderate workshops with stakeholders to align on threat scenarios and security capabilities Technical Documentation: Produce clear and comprehensive documentation covering detection logic, threat models, and validation results Collaboration: Work closely with SOC, enginee
Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world. The role: We’re seeking a Staff Security Detection Engineer to build and mature SoFi’s machine learning–driven detection and anomaly detection program. You will own the detection and model lifecycle end to end; feature engineering, model training, tuning, and validation, operating over large-scale security data lakes and streaming pipelines. You’ll partner closely with our Security Operations Center (SOC), Security Operations Engineering, and Fraud programs to turn high-volume telemetry into high-confidence, low-noise detections at scale. What you’ll do: Design, build, and maintain machine learning models for anomaly detection (unsupervised clustering, time-series and seasonality baselines, isolation forests, autoencoders, risk scoring) with measurable precision/recall targets. Operationalize models and detections from notebook to production, including enrichment, correlation, and response playbook hooks (detection-as-code, CI/CD, model versioning, and rollback). Engineer and tune features from identity, endpoint, network, cloud, SaaS, and application telemetry stored in the security data lake to improve model signal quality. Partner with the SOC to triage, tune, and close detection feedback loops; use analyst dispositions as labels to retrain and improve models, reduce noise, and document runbo
About Us At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company. At Cloudflare, we’re not looking for people who wait for a polished roadmap; we’re looking for the builders who see the cracks in the Internet that everyone else has simply learned to live with. We value candidates who have the instinct to spot a "normalized" problem and the AI-native curiosity to create a solution using the latest tools. Our culture is built on iteration, leveraging AI to ship faster today to make it better tomorrow, while ensuring that every improvement, no matter how small, is shared across the team to lift everyone up. If you’re the type of person who values curiosity over bureaucracy, and that AI is a partner in solving tough problems to keep the Internet moving forward, you’ll fit right in. Available Locations Atlanta, US Austin, US Denver, US New York, US Toronto, Canada Washington DC, US Seattle, WA Remote candidates within North America will also be considered. About the Role The Security Platform team is an infrastructure/developer tools group tasked with building and operating powerful, resilient, and secure infrastructure and systems that enable other engineering teams to deliver products to our customers efficiently and secure
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. Senior Site Reliability Engineer (SRE) - Security and Data Systems Our company is seeking a highly skilled Senior Site Reliability Engineer to join our team. We are a SaaS company specializing in securing large-scale systems. This role is a blend of software engineering and systems administration, where you'll be responsible for building and maintaining highly reliable, scalable, and secure infrastructure. You will be a key contributor, applying your expertise to automate manual processes and proactively solve complex problems before they become incidents, handling incidents, and includes on-call shifts. * This position requires the ability to access U.S. National Security information. As a condition of employment for this position, the successful candidate must be able to submit documentation establishing U.S. Person status (e.g. a U.S. Citizen, National, Lawful Permanent Resident, Refugee, or Asylee. 22 CFR 120.15 ) upon hire. Responsibilities Platform & Reliability: Design, build, and maintain the core infrastructure that underpins our security SaaS offerings, ensuring high availability, performance, and scalability. This includes building and operating the tooling for our Snowflake data systems. Automation: Develop robust automation using code to eliminate toil and ensure consistency across our environments. You'll be a key driver in automating everything from infrastructure provisioning to application deployment and incident response. Security &
Note: if you are an intern, new grad, or staff applicant, please do not apply using this link and visit our jobs page for those specific postings. Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career. About the Organization Secure Frameworks: We provide security guarantees for common threats, helping teams secure their services by default. We build and maintain core application-layer security libraries and frameworks for development teams, including web security frameworks, cryptography libraries, and other threat mitigations across the Stripe technology stack. More recently, our scope has expanded to protective measures for AI agents. We are a hands-on engineering team that builds security protections and frameworks, rather than conducting security reviews. Core Infrastructure : We’re the home for Stripe's critical tier0 infrastructure systems (Compute, Networking, DocumentDB, Distributed Caching and High assurance engineering). We build the foundational platform for Stripe products and services to allow them to operate at scale. We drive reliability, availability, efficiency and scalability of these systems. Developer Infrastructure : We’re responsible for the productivity of all developers at Stripe. Ensure Stripe’s engineers have a reliable, fast, and easy-to-use inner dev loop to maximize productivity while building everything from low-latency microservices to large-scale data pipelines and machine learning models. Reliability Insights and Excellence : We build tools and frameworks
About the Team The Cybersecurity Products team builds products at the frontier of AI and cybersecurity. Our work includes Codex Security and related cyber products that turn advances in model capability into dependable tools for defenders. We help teams find, validate, and remediate vulnerabilities, continuously improve the security of software, and test AI-powered applications before they reach production. About the Role As a Full Stack Software Engineer, you will build the product experiences and systems that make AI-powered security useful in real engineering environments. You will work across web surfaces, APIs, orchestration, data models, and integrations to help security and engineering teams move from a codebase or application to evidence-backed findings, prioritized remediation, and revalidation. You will collaborate closely with product engineers, security researchers, and customer-facing teams. The work spans fast-moving product development and hard systems problems: long-running workflows, large repositories, sensitive data, reliability, observability, and a high bar for earning user trust. This role is based in San Francisco, CA. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees. In this role, you will: Build end-to-end workflows for vulnerability discovery, security scanning, red teaming, findings review, remediation, and reruns. Design and operate backend services for long-running security work, including APIs, asynchronous orchestration, durable state, and integrations with developer workflows. Make complex security results actionable through clear product surfaces, strong evidence, thoughtful prioritization, and reliable reporting. Partner with security researchers, product teams, and users to evaluate quality, reduce noise, improve coverage, and ship safely. You might thrive in this role if you: Have experience shipping production full-stack products across modern web frontends and backend s
Get new application security engineer jobs by email
Daily job updates · Unsubscribe anytime