Overview
Sr. Engineer, Application Security embeds security into the SDLC and product engineering, contributing to enterprise AppSec architecture and owning hands-on execution.
What you'll do
- Engineer application security testing at scale (SAST/DAST/SCA/secret scanning, IaC scanning, API and mobile security, container/cloud-native security) in CI/CD.
- Architect and/or contribute secure-by-design patterns, paved roads, and release risk gates for product teams.
- Build automation and guardrails including pipeline integrations and policy-as-code.
- Support secure-coding standards and SBOM/OSS-risk process, plus VDP/bug-bounty intake workflows.
- Perform secure design reviews, threat modeling, application security testing, and developer enablement.
- Work independently across product and platform teams to remediate vulnerabilities.
What you'll need
- 9+ years of experience in application/product security or security-focused software engineering.
- Hands-on experience embedding security into the SDLC (secure design review, threat modeling, code review, SAST/DAST/SCA, IaC and secret scanning).
- Experience integrating application security tooling (e.g., Snyk, Veracode, Checkmarx, Semgrep, GitHub Advanced Security) into CI/CD pipelines.
- Experience working independently with product engineering teams to remediate vulnerabilities and adopt secure-by-design patterns and guardrails.
Details
- Position is fully remote (work remotely from your home).
- Travel ability around 15% with overnight travel within territory or other Danaher locations.
- Reports to the Senior Director, Application, Product, and Manufacturing Security.
Read the full description and apply on the company’s own careers page.