Enter a job title or keyword

Application Security Engineer

ITR Group


Job Location:

Minneapolis, MN - USA

Hourly Salary: USD 67 - 111
Posted: 2 October 2026 (9 hours ago)
Application Deadline: 30 December 2026
Vacancies: 1 Vacancy

Job Summary

Hybrid Schedule: 2 days onsite or remote in Brooklyn Park MN (flexible on days)
Client requirements:
Work authorization status: US Citizen or GC holder
W2 hourly only no c2c
Location: Minneapolis/St Paul MN area


KEY SKILLS
  • 4 years of experience in application security cybersecurity engineering software engineering or related technical security roles.
  • Bachelors degree in Computer Science Cybersecurity Information Systems Engineering or equivalent practical experience.
  • Experience analyzing and validating vulnerability findings from automated security tools.
  • Experience with dynamic application security testing (DAST) tools and vulnerability assessment methodologies
  • Familiarity with CI/CD pipelines and automated security testing integrations
  • Understanding of OWASP Top 10 API security risks and secure software development lifecycle practices.
Seeking a highly motivated Application Security Engineer to support and advance enterprise AI security initiatives across engineering and cybersecurity. This role will partner closely with engineering teams to evaluate emerging AI security practices assess secure development standards and operationalize tooling that strengthens the security posture of AI-enabled applications and platforms.
The ideal candidate will bring strong hands-on application security experience including secure code review vulnerability validation application security testing and CI/CD security integration. Experience with AI/LLM security is highly valued but is not required; candidates with strong application security fundamentals and an interest in applying those skills to emerging AI technologies are encouraged to apply.

Key Responsibilities
  • Partner with AI engineering software engineering and cybersecurity teams to evaluate and implement AI security practices tooling and operational processes.
  • Conduct security-focused code reviews across applications APIs automation workflows and AI-enabled services.
  • Analyze and validate findings from Dynamic Application Security Testing (DAST) Software Composition Analysis (SCA) Static Application Security Testing (SAST) and other vulnerability-discovery platforms.
  • Assess vulnerability impact identify false positives prioritize findings and provide practical remediation guidance to engineering teams.
  • Integrate and support automated application security testing and controls within CI/CD pipelines.
  • Research and evaluate emerging AI/LLM vulnerability-discovery tools and AI-specific security testing methodologies.
  • Support threat modeling and security design reviews for applications AI-enabled services and machine-learning systems.
  • Partner with engineering teams to strengthen secure software development lifecycle (SDLC) and DevSecOps practices.
  • Develop security documentation standards and repeatable processes for application security AI security and vulnerability management.
  • Participate in proof-of-concept evaluations of new application and AI security technologies.
Must Have Qualifications
  • 4 years of relevant technical experience including hands-on application security experience within application security product security cybersecurity engineering or software engineering environments.
  • Hands-on experience analyzing and validating findings from automated application security tools including assessing vulnerability impact and identifying false positives.
  • Hands-on experience with Dynamic Application Security Testing (DAST) tools and application vulnerability-assessment methodologies.
  • Experience performing security-focused code reviews and identifying common application vulnerabilities in at least one modern programming language.
  • Experience working with CI/CD pipelines and integrating or supporting automated security testing within the software development lifecycle.
  • Strong working knowledge of OWASP Top 10 API security risks common application vulnerabilities secure coding principles and secure SDLC practices.
  • Ability to communicate technical security findings and remediation recommendations effectively to engineering teams
Nice to Have Qualifications
  • Experience working in enterprise-scale DevSecOps environments.
  • Experience or familiarity with AI/LLM application security AI security frameworks adversarial testing concepts or AI vulnerability-discovery and testing tools.
  • Experience securing AI-enabled applications or evaluating emerging AI application-security risks.
  • Application security experience within AWS Azure or GCP environments.
  • Experience with SAST Software Composition Analysis (SCA) and/or runtime application-security tooling.
  • Experience securing cloud-native containerized or Kubernetes-based applications.
  • Relevant security certifications such as CSSLP CISSP OSCP GSEC or GIAC application-security certifications.

ITR Group offers a competitive compensation and benefits package including medical dental and 401(k) for eligible employees. The W2 pay range for this type of role is approximately $67.00 -111.00 per billable hour. This range is an estimate and not a guarantee of compensation. The final rate will be determined by factors such as experience market trends and specific job assignments. Discover more about how ITR Group connects top talent with leading client opportunities.

ITR Group is an Equal Opportunity Employer. We do not discriminate against applicants on the basis of their race color national origin religion creed disability age sex sexual orientation gender identity marital status familial status or status with regard to public assistance or membership or activity in a local human rights commission.

Required Experience:

IC