Demo

Security Engineer - Application Security and Remediation

Vaco by Highspring
Scottsdale, AZ Contractor
POSTED ON 4/4/2026
AVAILABLE BEFORE 5/3/2026

We are seeking a hands-on Security Engineer with a strong focus on application security and vulnerability remediation. This role is centered on identifying, prioritizing, and fixing real security issues across modern codebases and development pipelines.

You’ll work closely with engineering and DevOps teams to improve secure coding practices, integrate security into the development lifecycle, and reduce risk at scale. This is a highly execution-focused role for someone who enjoys solving problems directly in code, not just reporting on them.

What You’ll Do

Application Security & Remediation

  • Identify and remediate vulnerabilities across applications, APIs, and services using tools such as SAST, DAST, and dependency scanning
  • Fix insecure code patterns (e.g., injection flaws, authentication issues, insecure data handling)
  • Perform security-focused code reviews and partner with developers on secure design and implementation
  • Help prioritize vulnerabilities based on risk, impact, and exploitability

DevSecOps & Secure SDLC

  • Integrate security checks into CI/CD pipelines to prevent vulnerabilities from reaching production
  • Implement guardrails to enforce secure coding practices during development and deployment
  • Collaborate with DevOps and platform teams to improve overall security posture across environments

Secrets & Dependency Management

  • Detect and remediate exposed secrets (API keys, tokens, credentials) across repositories and pipelines
  • Support implementation of secure secrets management solutions (vaults, rotation policies, ephemeral credentials)
  • Identify outdated or vulnerable dependencies and partner with teams to drive upgrades and reduce technical debt

Automation & Enablement

  • Build scripts and lightweight automation to streamline vulnerability remediation and reduce manual effort
  • Create reusable security tools, templates, and best practices for engineering teams
  • Educate developers on secure coding practices and common vulnerability patterns (OWASP Top 10)

What We’re Looking For

Required

  • 5 years of software engineering or security engineering experience
  • Hands-on experience identifying and fixing vulnerabilities in production codebases
  • Strong understanding of common vulnerabilities (OWASP Top 10)
  • Experience with CI/CD pipelines and modern development workflows
  • Familiarity with application security tools (SAST, DAST, dependency scanning)
  • Experience with at least one modern programming language (e.g., Python, Golang, Java, C#, JavaScript, Rust, etc.)

Preferred

  • Experience with scripting or automation (Python, PowerShell, or similar)
  • Exposure to cloud environments (AWS, Azure, or Google Cloud Platform)
  • Familiarity with containerized environments and Kubernetes security
  • Experience working in DevSecOps or embedded security engineering models

What Success Looks Like

  • Reduction in critical and high-severity vulnerabilities
  • Faster remediation timelines across engineering teams
  • Improved adoption of secure coding practices
  • Fewer exposed secrets and outdated dependencies in production
  • Increased confidence in the security of the software delivery pipeline

A Special Note to Applicants

The current volume of automated and AI-generated applications is on the rise. If you have read this posting in full and believe this role genuinely aligns with your experience, we encourage you to apply thoughtfully.

Applicants who include the word “Blue Steel” somewhere in their resume or cover note, or who reach out directly via LinkedIn to the recruiter who appreciates a good Zoolander reference, will help us route submissions more effectively.

Compensation

  • Hourly rate range of $65-75/hr on W2
  • Full benefits package available through Vaco


Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual’s skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company’s 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products.

Salary : $75

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Engineer - Application Security and Remediation?

Sign up to receive alerts about other jobs on the Security Engineer - Application Security and Remediation career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$88,984 - $115,784
Income Estimation: 
$111,369 - $141,168
Income Estimation: 
$117,871 - $153,580
Income Estimation: 
$109,939 - $144,341
Income Estimation: 
$114,500 - $144,633
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$137,568 - $176,908
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Vaco by Highspring

  • Vaco by Highspring Las Vegas, NV
  • We're looking for a motivated, licensed Property & Casualty Representative to help customers with their insurance needs and grow our book of business. This... more
  • 11 Days Ago

  • Vaco by Highspring Birmingham, AL
  • Interim Controller Birmingham, AL (Onsite/Hybrid) Vaco is assisting a financial services organization in Birmingham is seeking an Interim Controller to pro... more
  • 11 Days Ago

  • Vaco by Highspring Huntsville, AL
  • Vaco is assisting a reputable client in the residential construction industry identify and reputable Purchasing and Buying Agent. Duties and Responsibiliti... more
  • 11 Days Ago

  • Vaco by Highspring Bessemer, AL
  • Position: Production Supervisor Location: McCalla, AL Industry: Manufacturing Salary: $70,000-$80,000 Schedule: On-site | Monday-Friday | 6:00 AM - 3:00 PM... more
  • 11 Days Ago


Not the job you're looking for? Here are some other Security Engineer - Application Security and Remediation jobs in the Scottsdale, AZ area that may be a better fit.

  • Beyond Security LLC Mesa, AZ
  • Seeking security officer for nights. Thursday, Friday and Sat each week from 530pm to 530am. 12 hour shifts Must have a current AZ unarmed guard card. Look... more
  • 1 Day Ago

  • Securitas Security Services Mesa, AZ
  • Security – Full Time – Mesa, AZ Wage: $18.00-$20.00/HR Join our team at Securitas Security where you will have the opportunity to serve your community whil... more
  • 1 Month Ago

AI Assistant is available now!

Feel free to start your new journey!