Demo

Senior Application Security Engineer

morganmorganjobsapplynow
Jacksonville, FL Full Time
POSTED ON 4/14/2025
AVAILABLE BEFORE 6/13/2025

At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insurance companies, large corporations or defective goods. From attorneys in all 50 states, to client support staff, creative marketing to operations teams, every member of our firm has a key role to play in the winning fight for consumer rights. Our over 6,000 employees are all united by one mission: For the People.

We are seeking a motivated and curious individual to join our Cybersecurity Team as a Senior Application Security Engineer.  This role will be based out of any of our offices in the U.S.  The ideal candidate will have 3-5 years of experience in a medium to large enterprise in a similar role. The successful candidate will have recent development experience with modern languages and a thorough understanding of both the Microsoft Security Development Lifecycle and the AWS Well-Architected Framework.

Responsibilities:

  • Conduct threat modelling and risk analysis to identify exposure and develop mitigation plans
  • Work with DevOps, QA, and product teams to align security goals with business objectives
  • Define and implement security standards and best practices for applications and APIs
  • Collaborate with development teams to ensure secure design patterns and practices
  • Conduct vulnerability assessments and penetration testing on applications and APIs
  • Act as a subject matter expert advising teams on emerging threats and secure coding techniques
  • Perform code reviews to identify vulnerabilities and recommend mitigations
  • Create security integration into the SDLC process
  • Establish metrics and reporting

Requirements:

  • Working knowledge of current web and application security standards and best practices (OWASP Top 10, MITRE CWE Top 25)
  • Deep experience securing applications and APIs on AWS, including services like EC2, Lambda, S3, and API Gateway
  • Hands-on experience with modern API security, including REST and GraphQL APIs
  • Recent experience with security testing tools (e.g., SAST, DAST, IAST, and RASP)
  • Proficiency securing applications and APIs on cloud platforms (e.g., AWS, Azure, GCP)
  • Excellence in communicating business risk from cybersecurity issues
  • Successful experience developing, implementing, and maintaining security polices, standards, procedures and secure SDLCs
  • Proven track record of performing threat modeling, security code reviews, and penetration testing for applications and APIs
  • Demonstrable programming experience in Python, TypeScript, and C#
  • Agreement to obtain any of the following certifications withing six months of hire
  • AWS Certified Security – Specialty or AWS Certified Solutions Architect – Associate preferred
  • Any one of the five Offensive Security certifications such as OSCP
  • ISC CSSLP – Certified Secure Software Lifecycle Professional
  • EC-Council – CEH Certified Ethical Hacker (Master level)
  • Embody trust, dignity, integrity and accountability
  • Self-motivated, ambitious, and action oriented

#LI-MB1

Benefits

Morgan & Morgan is a leading personal injury law firm dedicated to protecting the people, not the powerful. This success starts with our staff.  For full-time employees, we offer an excellent benefits package including medical and dental insurance, 401(k) plan,  paid time off and paid holidays.

Equal Opportunity Statement

Morgan & Morgan provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

E-Verify

This employer participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. If E-Verify cannot confirm that you are authorized to work, this employer is required to give you written instructions and an opportunity to contact Department of Homeland Security (DHS) or Social Security Administration (SSA) so you can begin to resolve the issue before the employer can take any action against you, including terminating your employment. Employers can only use E-Verify once you have accepted a job offer and completed the I-9 Form.   

Privacy Policy

Here is a link to Morgan & Morgan's privacy policy.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Application Security Engineer?

Sign up to receive alerts about other jobs on the Senior Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at morganmorganjobsapplynow

morganmorganjobsapplynow
Hired Organization Address Orlando, FL Full Time
At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insuranc...
morganmorganjobsapplynow
Hired Organization Address Brooklyn, NY Full Time
At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insuranc...
morganmorganjobsapplynow
Hired Organization Address Los Angeles, CA Full Time
At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insuranc...
morganmorganjobsapplynow
Hired Organization Address Phoenix, AZ Full Time
At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insuranc...

Not the job you're looking for? Here are some other Senior Application Security Engineer jobs in the Jacksonville, FL area that may be a better fit.

Application security Engineer

SNI Companies, Ponte Vedra Beach, FL

Application Security Engineer

The New IEM, Llc, Jacksonville, FL

AI Assistant is available now!

Feel free to start your new journey!