Application Security Engineer

The Employee ConnectPlano, TX
Hybrid

About The Position

Our client, a major food and beverage organization, is seeking an Application Security Engineer specializing in data security for a hybrid, six-month contract engagement based in Plano, Texas. The role protects enterprise applications and the sensitive data flowing through them. This position suits a security engineer who is comfortable working alongside development teams rather than reviewing from a distance, and who can balance risk reduction against delivery reality. The hybrid arrangement combines onsite collaboration with remote flexibility.

Requirements

  • Prior application security engineering experience is required, including hands-on work with application security testing tooling and direct engagement with development teams on remediation.
  • Practical data security experience covering encryption, key management, tokenization or masking, and data classification, together with a solid understanding of common application vulnerability classes such as those in the OWASP Top Ten.
  • Working knowledge of secure development lifecycle practice, CI/CD pipeline integration, and cloud application security is essential.
  • Scripting or development capability sufficient to automate and to read application code is required.
  • Onsite presence in Plano, Texas on a hybrid schedule is required.

Nice To Haves

  • Security certifications such as CISSP, CSSLP, GWAPT, or OSCP are preferred.
  • Experience with cloud platforms including AWS, Azure, or GCP and their native data protection services is highly valued.
  • Familiarity with privacy and compliance obligations such as GDPR, CCPA, or PCI DSS is advantageous.
  • Experience in a large enterprise environment.
  • Exposure to API security.
  • Hands-on work with DLP or data governance platforms.
  • Experience with container and Kubernetes security.
  • Infrastructure-as-code scanning.
  • Secrets management platforms.
  • Familiarity with threat modelling frameworks such as STRIDE.
  • Experience running a bug bounty or coordinated disclosure process.
  • Prior work embedding security champions within development teams.

Responsibilities

  • Assess and improve the security posture of enterprise applications, performing security design reviews, threat modelling, and architecture assessments with a particular focus on how sensitive data is collected, transmitted, stored, and retired.
  • Implement and support data protection controls including encryption at rest and in transit, tokenization, masking, key management practice, and data loss prevention configuration, working with platform and application teams to embed controls effectively.
  • Run and interpret application security testing including static and dynamic analysis and dependency scanning, triage findings to remove false positives, prioritize genuine risk, and work with development teams to drive remediation to closure rather than simply logging defects.
  • Support secure development practice by integrating security tooling into CI/CD pipelines, defining secure coding standards and guardrails, advising engineering teams on secure design patterns, and contributing to incident response and vulnerability management activity when application or data issues arise.
  • Contribute to security standards and reference architecture for data handling across the application estate, defining what good looks like for classification, retention, access control, and encryption so that teams have a clear target rather than case-by-case rulings.
  • Support security assessments of third-party applications and integrations, evaluating vendor security posture where enterprise data will be exposed.

Benefits

  • Six-month contract with a defined end date.
  • Hybrid schedule provides a balance of onsite collaboration and remote working flexibility.
  • Work within a mature enterprise security function on applications at genuine scale.
  • Extension possible subject to performance and organizational need.
  • Contract placements lead to extensions, repeat assignments, or permanent conversion.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service