Sr. Application Security Engineer @Mitek Systems
Software Development
Salary $130,000 - $190..
Remote Location
Employment Type full-time
Posted 2mths ago

[Hiring] Sr. Application Security Engineer @Mitek Systems

2mths ago - Mitek Systems is hiring a remote Sr. Application Security Engineer. πŸ’Έ Salary: $130,000 - $190,000 a year πŸ“Location: Worldwide

Role Description

This person will be the company's technical authority on the security of its software products. Bridges Information Security and Engineering β€” embedding security into the SDLC for a ~50-person development team building internet-hosted banking and financial software. Owns the vulnerability remediation program, builds upstream controls that prevent vulnerabilities, and serves as the AppSec authority in customer and regulatory engagements.

Why this role now: The company is maturing its application security function from a position of strength β€” a recent penetration test returned zero findings β€” and is investing ahead of an expected increase in AI-assisted vulnerabilities targeting the financial sector.

The AppSec Engineer joins with a clear mandate:

  • Own remediation of validated findings
  • Build the secure development lifecycle that prevents future vulnerabilities
  • Establish the AppSec program credibility that banking customers and their regulators increasingly audit directly

Qualifications

  • 5–8 years in application/product security or security-focused software engineering
  • Application penetration testing including business-logic and API testing
  • Hands-on SAST, DAST, and SCA tuning and operationalization
  • Secure code review across at least two web-application languages
  • Threat modeling using STRIDE, PASTA, or equivalent
  • Depth in OWASP Top 10 and API security risks; ability to influence development teams

Requirements

  • Own the application vulnerability remediation program with prioritized developer guidance and clear SLAs
  • Work with development squads to explain findings, validate fixes, and confirm remediation
  • Drive systemic root-cause fixes rather than one-by-one patching; escalate unresolved criticals and highs
  • Define and own the SDLC β€” security gates and review checkpoints in sprint and release processes
  • Ensure SAST, DAST, and SCA tooling is configured, tuned, and producing actionable developer output
  • Embed security requirements into product planning and architecture decisions
  • Threat-model new features and architectural changes before code is written
  • Review designs for authentication, authorization, data-flow, and cryptographic risk
  • Produce written threat models that serve as developer guidance and audit evidence
  • Own API security standards β€” OAuth 2.0, mTLS, rate limiting, and abuse prevention
  • Conduct or coordinate manual secure code review of security-sensitive components
  • Lead application penetration-testing cycles β€” scoping, managing testers, validating findings
  • Build and run a Security Champions program across development squads
  • Deliver developer security training on OWASP Top 10 and secure-coding patterns
  • Create runbooks, coding standards, and pattern libraries developers can apply independently

Benefits

  • Ownership of the AppSec function with clear scope and executive visibility
  • A technically interesting attack surface β€” internet-facing financial software, complex API integrations, and a dual US/EU regulatory context
  • Direct collaboration with the VP of IT and Security and Engineering leadership
  • A development team that is receptive to security partnership rather than treating it as an external constraint
  • A security program investing proactively from a position of strength β€” not reactive, not in crisis
  • $130,000 - $190,000 a year
  • Wellness: Universal, supplemental, and private healthcare plan choices based on country specifics
  • Financial future: retirement/pension plan contributions, MTK stock plan participation
  • Income protection: life event & disability coverage
  • Paid time off: generous annual leave, company holidays, volunteer time off
  • Learning: e-learning license, tuition reimbursement, hackathons
  • Home office setup allowance
  • Additional/optional benefits: pet insurance, identity theft protection, legal assistance
Before You Apply
️
worldwide Be aware of the location restriction for this remote position: Worldwide
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Sr. Application Security Engineer @Mitek Systems
Software Development
Salary $130,000 - $190..
Remote Location
Employment Type full-time
Posted 2mths ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 120,000+ Remote Jobs
️
worldwide Be aware of the location restriction for this remote position: Worldwide
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 120,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 120,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 123,540+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later