Demo

Senior Application Security Engineer

Andiamo
York, NY Full Time
POSTED ON 5/31/2026
AVAILABLE BEFORE 8/2/2026
About The Role

Lead the strategy and execution of application security across a fast-moving engineering organization. You will embed security into the SDLC, build guardrails and tooling, and partner with product and platform teams to ship secure software at scale.

What You’ll Do

  • Own AppSec roadmap: threat modeling, secure design reviews, and risk assessments for new features.
  • Operationalize security tooling (SAST/DAST/SCA/IAST, secret scanning, container scanning) and CI/CD gates.
  • Build developer-first guardrails: secure coding standards, reusable libraries, reference architectures.
  • Drive remediation at scale via auto-fixes, query packs, and actionable AppSec dashboards.
  • Partner on cloud and runtime security (Kubernetes, service mesh, identity, least privilege, policies).
  • Lead incident response for application-layer vulnerabilities and coordinate with IR/ProdSec teams.
  • Run training and gamified exercises; measure maturity with clear KPIs and risk reduction targets.

What We’re Looking For

  • 5 years in AppSec or Security Engineering; strong software background (Python/Go/Java/JS).
  • Hands-on with OWASP Top 10, cloud-native security, OAuth/OIDC, and modern auth patterns.
  • Deep knowledge of CI/CD security, SBOMs, supply chain (Sigstore, attestations), and IaC scanning.
  • Experience with container/Kubernetes hardening and policy engines (OPA/Gatekeeper).
  • Excellent communication; ability to influence and coach engineering teams.

Nice to Have

  • Threat modeling frameworks (STRIDE, LINDDUN) and adversary simulation experience.
  • Compliance mapping (SOC 2, ISO 27001) without slowing delivery.

About Andiamo

Talent Partners for the AI Revolution. As a globally recognized staffing and consulting firm, we specialize in placing the top 2% of technology and go-to-market professionals with the world’s largest and most well-known companies.

For over 20 years, we've maintained the status of tier-one vendor for firms such as Palantir, Amazon, Fluidstack, Bloomberg, Relativity Space, Firefly, MasterCard, Visa, Two Sigma, Citadel, as well as other major financial services firms, elite hedge funds, Google-backed tech start-ups, and major software firms.

Our talent solutions include Permanent Placement, Contract Staffing, Executive Search, and Dedicated Recruiting Services (RPO). Find out more at www.andiamogo.com

Salary.com Estimation for Senior Application Security Engineer in York, NY
$109,324 to $138,359
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Andiamo

  • Andiamo Eastover, SC
  • Application Programmer Analyst, Industrial Manufacturing Systems This role sits at the heart of a modern industrial manufacturing operation where technolog... more
  • 3 Days Ago

  • Andiamo Boston, MA
  • Senior Software Engineer — Full Stack Product Development This opportunity is with a client of Andiamo , supporting a leading organization in the digital m... more
  • 3 Days Ago

  • Andiamo Los Angeles, CA
  • Mechanical Engineer, Advanced Nuclear Energy Systems This opportunity is for a mechanical engineer who wants to work on one of the most ambitious challenge... more
  • 3 Days Ago

  • Andiamo San Francisco, CA
  • Head of AI Solutions Engineering — Marketing Intelligence Platform Lead the next generation of AI-powered marketing solutions. A fast-growing technology pl... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Senior Application Security Engineer jobs in the York, NY area that may be a better fit.

  • tatari York, NY
  • Tatari is on a mission to revolutionize TV advertising. Founded in 2016 to help transform the antiquated world of TV advertising through the intelligent ap... more
  • 7 Days Ago

  • Gemini York, NY
  • About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, a... more
  • Just Posted

AI Assistant is available now!

Feel free to start your new journey!