Talent.com
Sr. Application Security Engineer
Sr. Application Security EngineerOpenGov • Boston, Massachusetts, United States
Sr. Application Security Engineer

Sr. Application Security Engineer

OpenGov • Boston, Massachusetts, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

OpenGov is the leader in AI and ERP solutions for local and state governments in the U.S. More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov Public Service Platform to operate efficiently, adapt to change, and strengthen the public trust. Category-leading products include enterprise asset management, procurement and contract management, accounting and budgeting, billing and revenue management, permitting and licensing, and transparency and open data. These solutions come together in the OpenGov ERP, allowing public sector organizations to focus on priorities and deliver maximum ROI with every dollar and decision in sync. Learn about OpenGov's mission to power more effective and accountable government and the vision of high-performance government for every community at O penGov.com .

Summary

The Senior Application Security Engineer is a technical leader responsible for ensuring the security, integrity, and resilience of our cloud-native SaaS applications. This role partners closely with Software Engineering, Product, DevOps, and Security Operations to embed security into every phase of the SDLC. The ideal candidate is hands-on, highly collaborative, and capable of scaling AppSec processes that align with best practices, regulatory requirements, and the needs of a rapidly growing technology organization.

Key Responsibilities

Embed security into CI / CD pipelines through scalable guardrails, automated security checks, and continuous improvements to developer workflows.

Drive adoption of secure coding best practices across engineering teams through tooling, guidance, and direct partnership.

Lead threat modeling exercises for high-risk features and new architecture patterns.

Own, maintain, and tune AppSec tooling including SAST, DAST, SCA, secrets scanning, container scanning, and dependency management.

Partner with DevOps to ensure automated testing integrates into build, test, and deploy workflows with high signal-to-noise and minimal developer friction.

Evaluate emerging technologies and automation opportunities to strengthen AppSec capabilities.

Lead triage, prioritization, and root-cause analysis for application vulnerabilities discovered through internal testing, bug bounty programs, pentests, and external researchers.

Ensure timely remediation through strong cross-functional partnership, driving the right balance of risk, velocity, and operational maturity.

Support security reviews, pen test scoping, and remediation programs tied to GovRAMP, SOC 2, and customer requirements.

Conduct manual reviews of critical code paths, APIs, backend services, and cloud components to identify security defects that automation may miss.

Advise on secure design patterns for microservices, cloud-native architectures, authentication / authorization mechanisms, secrets management, and data protection.

Collaborate with Security Operations during active incidents involving application or product vulnerabilities.

Perform deep-dive analysis of new vulnerabilities, exploit techniques, frameworks, and supply-chain risks affecting our tech stack.

Mentor engineering teams on secure design, secure coding, and modern AppSec patterns.

Lead internal workshops, brown bags, and knowledge-sharing sessions.

Contribute to internal AppSec documentation, policies, and secure development standards.

Qualifications Required

6+ years of application security, secure development, or software engineering experience (or equivalent real-world experience).

Strong knowledge of modern application architectures : microservices, REST / GQL APIs, React / Node / Java / Kotlin / Go, containerized workloads, Kubernetes.

Hands-on experience with SAST, DAST, SCA, secrets scanning, container scanning, and CI / CD integration.

Expertise in OWASP Top 10, ASVS, SANS CWE Top 25, and secure coding principles.

Ability to perform threat modeling, code review, and architecture analysis.

Experience partnering with Engineering to drive remediation and long-term maturity improvements.

Preferred

Experience in SaaS, multi-tenant systems, or high-scale cloud environments (AWS preferred).

Familiarity with SOC 2, GovRAMP, & TX-RAMP.

Prior background in DevOps, software engineering, or cloud security.

Compensation :

Boston, MA : $140,000 - $167,500

On target ranges above include base plus a portion of variable compensation that is earned based on company and individual performance.

The final compensation will be determined by a number of factors such as qualifications, expertise, and the candidate's geographical location.

Why OpenGov?

A Mission That Matters.

At OpenGov, public service is personal. We are passionate about our mission to power more effective and accountable government. Government that operates efficiently, adapts to change, and strengthens public trust. Some people say this is boring. We think it's the core of our democracy.

Opportunity to Innovate

The next great wave of innovation is unfolding with AI, and it will impact everything-from the way we work to the way governments interact with their residents. Join a trusted team with the passion, technology, and expertise to drive innovation and bring AI to local government. We've touched 2,000 communities so far, and we're just getting started.

A Team of Passionate, Driven People

This isn't your typical 9-to-5 job; we operate in a fast-paced, results-driven environment where impact matters more than simply clocking in and out. Our global team of 800+ employees is united in our commitment to challenge the status quo. OpenGov is headquartered in San Francisco and has offices in Atlanta, Boston, Buenos Aires, Chicago, Dubuque, Plano, and Pune.

A Place to Make Your Mark

We pride ourselves on our performance-based culture, where every employee is encouraged to jump in head-first and take action to help us improve. If you have a great idea, we want to hear it. Excellent performance is recognized and rewarded, and we love to promote from within.

Compensation Range : $140K - $167.5K

Apply for this Job

[job_alerts.create_a_job]

Application Security Engineer • Boston, Massachusetts, United States

[internal_linking.related_jobs]
Sr Principal Engineer (Software HIT)

Sr Principal Engineer (Software HIT)

Fresenius Kabi USA, LLC • North Andover, MA, United States
[job_card.full_time]
Highly experienced engineering position, under minimal or no direct supervision guides the designing, building and maintaining software used in medical devices and engineering projects related to m...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Industrial Security Co-op

Industrial Security Co-op

Clearance Jobs • Cambridge, MA, US
[job_card.full_time]
Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA.The 2,000+ employees of Draper tackle important national challenges with a promise of delivering ...[show_more]
[last_updated.last_updated_30] • [promoted]
AI Application Engineer

AI Application Engineer

Intersystems • Boston, Massachusetts, United States
[job_card.full_time]
You will design, integrate, and deploy AI solutions—including agentic applications, LLM inference, similarity search, guardrails, and model evaluation— to improve workflows and scalability, and to ...[show_more]
[last_updated.last_updated_30] • [promoted]
Posting Security GSOC Analyst

Posting Security GSOC Analyst

Allied Universal • Cambridge, MA, US
[job_card.full_time] +1
Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide a sense of purpose. While working in a dynamic, welcoming, and collaborative w...[show_more]
[last_updated.last_updated_30] • [promoted]
Engineer, Senior

Engineer, Senior

Constellation Energy • Peabody, MA, US
[job_card.full_time]
As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose : accelerating the transition to a carbon-free future. We have been the leader in clean ener...[show_more]
[last_updated.last_updated_30] • [promoted]
Cyber Security Solutions Engineer - GES

Cyber Security Solutions Engineer - GES

Cisco Systems, Inc. • Boston, MA, United States
[job_card.full_time]
States : MA, NH, RI, ME, CT, VT, NJ, NY.Travel is required and this position is home office based.You will provide guidance and assist Security Sellers and Account teams within the territory in a pr...[show_more]
[last_updated.last_updated_30] • [promoted]
Sr. Firmware Design Engineer

Sr. Firmware Design Engineer

Schneider Electric • Andover, MA, US
[job_card.full_time]
Do you want to join the world's most sustainable company • as one of our new Firmware Engineers, working in a team of experts with state-of-the-art technologies?. We are seeking more highly talen...[show_more]
[last_updated.last_updated_30] • [promoted]
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Boston, MA, United States
[job_card.full_time]
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
[last_updated.last_updated_30] • [promoted]
Remote Exceptional Software Engineers (Coding Agent Experience) - AI Trainer ($85-$85 per hour)

Remote Exceptional Software Engineers (Coding Agent Experience) - AI Trainer ($85-$85 per hour)

Mercor • Taunton, Massachusetts, US
[filters.remote]
[job_card.full_time]
Mercor is seeking software engineers to support one of the world’s leading AI labs in building • •robust, high-performance systems • • that serve the needs of next-generation machine learning applicat...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Pre-Sales Solutions Engineer - SIEM / Security Analytics / CTI

Senior Pre-Sales Solutions Engineer - SIEM / Security Analytics / CTI

Anomali • Boston, MA, United States
[job_card.full_time]
Anomali is headquartered in Silicon Valley and is the Leading AI-Powered Security Operations Platform that is modernizing security operations. At the center of it is an omnipresent, intelligent, and...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
CT Technologist

CT Technologist

Nearterm Corporation • Brockton, MA, US
[job_card.full_time]
F30A; Travel X-Ray / CT Technologist – Massachusetts | $3,000–$3,100 / week.What’s better than crisp fall air and coastal charm? How about getting. New England for techs who value prec...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Engineer III - Lead

Cloud Security Engineer III - Lead

Randstad USA • Boston, MA, US
[job_card.permanent]
App & Cloud Security Engineer - Lead.Start : 2-3 weeks from date of offer.Location : Somerville, MA -Onsite just one day a week (Wednesday's). Interview Process : 2-3 rounds for this position.Hospi...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Principal Software Engineer, Security

Principal Software Engineer, Security

HubSpot • Cambridge, Massachusetts, USA
[job_card.full_time]
HubSpot is looking for a talented Principal Software Engineer to shape and deliver secure robust and scalable identity and access solutions supporting our growing this pivotal org-impacting role y...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Principal SaaS Security Engineer

Principal SaaS Security Engineer

PTC • Boston, MA, United States
[job_card.full_time]
Principal SaaS Security Engineer - Hybrid - Boston.Onshape is a next-generation, global Software-as-a-Service (SaaS) product development platform. The role focuses on security operations and continu...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Representative

Security Representative

Fidelity Investments • Wakefield, MA, US
[job_card.full_time]
Become a Security Representative at Fidelity Investments and join a team that values safety, collaboration, and top-notch performance! This outstanding opportunity enables you to work in a dynamic ...[show_more]
[last_updated.last_updated_30] • [promoted]
Sr SOC Analyst

Sr SOC Analyst

VDart Inc • North Andover, Massachusetts, USA
[job_card.full_time]
We are seeking a highly skilled Senior SOC Analyst to strengthen our cybersecurity detection engineering function.This role will focus on designing standardizing and optimizing detection logic acro...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
AVP, U.S. Orthopedics Account Management, Central

AVP, U.S. Orthopedics Account Management, Central

Johnson and Johnson • Raynham, MA, United States
[job_card.full_time]
At Johnson & Johnson, we believe health is everything.Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments a...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Operations Center Operator

Security Operations Center Operator

Constellis • Boston, MA, US
[job_card.full_time]
Security Operations Center (SOC) Level 1 Operator.The Security Operations Center (SOC) Level 1 Operator is a CCTV, alarm monitoring, and dispatch specialist. The Level 1 Operator will monitor severa...[show_more]
[last_updated.last_updated_30] • [promoted]