Senior Application Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Resmed ยท 15 hours ago

Senior Application Security Engineer

ResMed is focused on application, infrastructure, and user productivity solutions, aiming to provide customer-oriented agile delivery and state-of-the-art technology solutions. The Senior Application Security Engineer will enable developers to build secure applications, collaborating with various teams to ensure secure development across the enterprise.

Health CareHealth DiagnosticsMedicalMedical Device
check
H1B Sponsor Likelynote

Responsibilities

Operation and support of code scanning tools, e.g., Wiz and Checkmarx
Supporting development teams to triage findings and enable self-service
Ensuring code scanning tools integrate seamlessly into the current software development lifecycle with minimal friction e.g. Github actions as a part of existing shared CICD workflows
Oversee the design, implementation, and management of the infrastructure and tooling necessary to support all security aspects of continuous integration, continuous delivery, and continuous deployment (CI/CD) pipelines
Collaborate with key stakeholders to identify opportunities for automation, process improvement, and tool optimization
Research and implement new technologies to improve and grow secure development (e.g. applications, systems, outsources services)
Maintain operational guidelines, diagrams, and documentation for secure development
Work closely with the developer experience team to integrate security automation into the development process

Qualification

Application SecuritySecure Software Development LifecycleHigh-level Programming LanguagesAppSec ToolingAWS Cloud ServicesDevOps MethodologiesAI Application SecuritySecurity CertificationsInfrastructure as CodeProduction Incident ManagementMentoring Engineers

Required

Bachelor's degree in computer science or related field
Minimum of 5 years of experience in application security, software development, or related field
Expertise in Securing Software Development Lifecycles
Expertise in one or more high-level programming languages, e.g., Java, C#, Python, etc
Expertise in application-level attacks and defenses, e.g., OWASP Top 10, SANS Top 25, etc
Experience with AI application security concepts e.g. OWASP Top 10 for LLM applications, etc
Experience with AppSec tooling such as SAST, DAST, IAST, RASP, etc
Experience working with DevOps, Agile, Scrum, Kanban methodologies
Experience with AWS cloud services such as WAF, EC2, S3, Lambda, VPC, CloudWatch, CloudTrail, EKS, ECS, KMS, IAM, RDS

Preferred

Master's degree in computer science or related field
Experience with using AI-powered coding assistants (e.g. Github Copilot, Augment) and the security concerns related to it
Security related certification(s) such as CSSLP
Experience with Infrastructure as Code and the use of Application Release Automation tools
Experience as an AWS Dev/Sec/Ops Engineer developing continuous Integration and Continuous Delivery pipelines (CI/CD)
Experience working in a regulated secured environment and understanding the security requirements (NIST, ISO, etc.)
Experience working with production incident management tools and processes to resolve Enterprise level issues
Experience in leading or mentoring other engineers

Company

ResMed provides medical devices to treat and manage sleep apnea and pulmonary diseases.

H1B Sponsorship

Resmed has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (18)
2024 (16)
2023 (10)
2022 (21)
2021 (16)
2020 (16)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Michael "Mick" Farrell
Chief Executive Officer
linkedin
leader-logo
Sanjay Kumar
Chief Technology Officer - ResMed SaaS
linkedin
Company data provided by crunchbase