Hi there! AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has earned us multiple Best Place to Work awards.
Why join us If you’re looking for a place to grow, make an impact, and work with people who care, we’d love to meet you! :)
About the role We are looking for a Python Application Security Engineer to automate application security controls and integrate secure coding practices into software development and cloud workflows.
The mandatory requirements are 3+ years of experience in software engineering and security , Python, AppSec tool APIs, CSPM, IaC/Terraform checks and independent execution; upper-intermediate English is required. SAST/DAST/SCA, AI security, threat modeling and Java are a plus.
What you will do ● AppSec Engineering & Automation: Engineer and deploy AI-enabled secure code scanning capabilities and “Golden Images” to drive secure-from-the-start adoption. ● Technical Modernization: Automate the development of secure coding patterns and integrate them with traditional and Agentic SDLC workflows. ● Security Tooling Integration: Architect the integration of continuous security scanning tools (SAST, DAST, SCA) into enterprise CI/CD pipelines, tuning them to eliminate noise. ● Cloud & Runtime Security: Implement runtime security checks via CSPM to maintain continuous cloud visibility and threat posture management. ● Developer Experience (DevEx): Act as a senior technical SME, reading and reviewing complex application code (Java/Python) to provide software engineers with highly specific, code-level remediation guidance.
Must haves ● 3+ years of experience combining software engineering experience, security implementation and/or architecture experience. ● Strong coding and architectural proficiency in Python (for security automation and scripting). ● Hands-on experience or familiarity with Wiz, Prisma Cloud, or similar tools for cloud security posture management and threat detection. ● Implementation experience with deploy-time checks against Infrastructure as Code (IaC) / Terraform. ● Implementation experience with runtime checks through Cloud Security Posture Management (CSPM). ● Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks. ● Upper-intermediate English level.
Nice to haves ● Deep, hands-on expertise deploying and tuning modern application security testing tools (SAST, DAST, SCA) and integrating them into complex CI/CD orchestration ecosystems. ● Experience integrating LLMs, AI agents, or automated coding assistants to streamline vulnerability triaging or secure code generation. ● Advanced application threat modeling experience. ● Ability to confidently read, review and secure enterprise source Java code.
Perks and benefits ● Professional growth: Accelerate your professional journey with mentorship, TechTalks, and personalized growth roadmaps ● Competitive compensation: We match your ever-growing skills, talent, and contributions with competitive USD-based compensation and budgets for education, fitness, and team activities ● A selection of exciting projects: Join projects with modern solutions development and top-tier clients that include Fortune 500 enterprises and leading product brands ● Flextime: Tailor your schedule for an optimal work-life balance, by having the options of working from home and going to the office — whatever makes you the happiest and most productive.
Meet Our Recruitment Process Asynchronous stage — An automated, self-paced track that helps us move faster and give you quicker feedback: ● Short online form to confirm basic requirements ● 30–60 minute skills assessment ● 5-minute introduction video
Synchronous stage — Live interviews ● Technical interview with our engineering team (scheduled at your convenience) ● Final interview with your future teammates If it’s a match—you’ll get an offer!