Remote Otter LogoRemoteOtter

Senior Application Security Engineer - Remote

Posted 17 hours ago
Software Development
Full Time
Worldwide

Overview

Join us in building a secure, scalable, and experienced platform to support Avalara's expanding business and global customer base. As a Senior Application Security Engineer, you'll work with world-class engineers and architects to ensure security is embedded in everything we build—both in today's systems and the future of our architecture. This role is perfect for someone passionate about automation, cloud-native security, and AI-driven application defense.

In Short

  • You will build, maintain, and continuously improve an automated security pipeline framework integrated into our CI/CD environments.
  • You will lead development of Infrastructure-as-Code and Policy-as-Code for application security enforcement and consistency across environments.
  • You will evaluate and integrate security tools (SAST, DAST, SCA, CSPM, EDR) and AI-based solutions into engineering workflows and CI/CD pipelines.
  • You will provide applicable guidance and mentorship to development and Avalara Security engineering teams on secure development best practices.
  • Investigate, prototype, and apply AI/ML-based solutions for application behavior analysis, anomaly detection, and threat hunting.
  • Promote security by design across the organization, and help foster a security-first culture.
  • Contribute to the continuous refinement of the SDLC to ensure security is smooth, consistent, and measurable.

Requirements

  • 8+ years of experience in application security, secure software development, or security engineering.
  • Strong programming proficiency in Python and GoLang (hands-on).
  • Experience with secure SDLC practices and CI/CD pipeline integration.
  • Strong hands-on experience with Kubernetes, container security, and cloud infrastructure security—preferably AWS and GCP.
  • Experience with Infrastructure-as-Code (IaC) tools like Terraform or CloudFormation.
  • Working knowledge of cryptographic protocols and standards: TLS, OAuth, SAML, JWT, etc.
  • Familiarity with Git, modern source control practices, and agile development methodologies.
  • Experience working with a broad range of security tools, including:
    • Tenable, Wiz (Cloud Security Posture Management)
    • Checkmarx, Mend (SAST, SCA)
    • Acunetix, Burp Suite (DAST)
    • CrowdStrike (EDR/XDR)
  • Bachelor's Degree in Computer Science, Engineering, or a related field.
  • Proven experience contributing to security automation efforts within a security organization like Avalara Security.
  • Experience with AI/ML tools and frameworks applied to application security or behavior analytics.
  • Security certifications such as OSWE, CSSLP, AWS Security Specialty, or Kubernetes Security Specialist.
  • Passion for enabling developer-friendly security solutions and maximum automation.

Benefits

  • Great compensation package, paid time off, and paid parental leave.
  • Many Avalara employees are eligible for bonuses.
  • Health benefits vary by location but generally include private medical, life, and disability insurance.
  • Avalara strongly supports diversity, equity, and inclusion.
  • Employee-run resource groups with senior leadership and exec sponsorship.
Avalara logo

Avalara

Avalara is a leading provider of cloud-based compliance solutions, specializing in tax technology. With a mission to be part of every transaction in the world, Avalara has built an industry-leading platform that processes nearly 40 billion customer API calls and over 5 million tax returns annually. The company has experienced significant growth, becoming a billion-dollar business and expanding its workforce to nearly 5,000 employees. Avalara fosters a culture of innovation, diversity, and inclusion, empowering its employees to take ownership and achieve their goals. The company is committed to integrating diversity and equity into its business practices and organizational culture.

Share This Job!

Save This Job!

Similar Jobs:

Trail of Bits logo

Senior Security Engineer, Application Security - Remote

Trail of Bits

7 days ago

Join Trail of Bits as a Senior Security Engineer to conduct security assessments and develop tools for application security.

USA
Full-time
Software Development
$150,000 - $200,000/year
Experian logo

Senior Application Security Engineer - Remote

Experian

3 weeks ago

Join Experian as a Senior Application Security Engineer to enhance application security practices and collaborate with development teams.

USA
Full-time
Software Development
Loop logo

Senior Application Security Engineer - Remote

Loop

4 weeks ago

Join Loop as a Senior Application Security Engineer to ensure the security and integrity of systems and data while collaborating on various security initiatives.

Worldwide
Full-time
Software Development
Samsara logo

Senior Security Engineer - Application Security - Remote

Samsara

5 weeks ago

Join Samsara as a Senior Security Engineer to enhance application security and drive secure development practices.

Worldwide
Full-time
Software Development
Virta Health logo

Senior Application Security Engineer - Remote

Virta Health

7 weeks ago

Join Virta Health as a Senior Application Security Engineer to lead the application security program and enhance security practices across the organization.

USA
Full-time
Software Development
$192,026 - $248,000/year