Cognizant

Application Security Engineer

Cognizant$63K — $125K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years in Application Security, Product Security, Software Engineering, or Cybersecurity roles.
  • Strong experience in Agile and DevSecOps environments.
  • Hands-on experience with security testing methods like SAST, DAST, and SCA.
  • Knowledge of secure coding principles and OWASP Top 10 standards.
  • Experience in conducting application penetration testing across various platforms.
  • Proficiency in reviewing source code and advising on vulnerabilities.
  • Excellent communication and leadership skills for effective stakeholder engagement.

Responsibilities

  • Integrate security throughout the Software Development Lifecycle (SDLC) with development teams.
  • Analyze and rectify vulnerabilities from security assessments and provide technical guidance.
  • Conduct threat modeling exercises to identify risks and recommend mitigation strategies.
  • Promote secure coding practices through reviews and developer enablement initiatives.
  • Utilize automation and AI tools for effective vulnerability management and remediation.

Benefits

  • Medical/Dental/Vision/Life Insurance
  • Paid holidays plus Paid Time Off
  • 401(k) plan and contributions
  • Long-term/Short-term Disability
  • Paid Parental Leave
  • Employee Stock Purchase Plan
Full Job Description
a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; }

Application Security Champion (Software Engineering)
About the role

As an Application Security Champion (Software Engineering), you will make an impact by embedding security into the software development lifecycle and partnering with engineering teams to deliver secure, resilient, and compliant applications. You will be a valued member of the Engineering and Security team and work collaboratively with software architects, developers, DevOps engineers, product owners, QA teams, security stakeholders, and cross-functional technology teams to proactively identify risks, strengthen application security posture, and drive secure-by-design principles across enterprise platforms.

In this role, you will:
• Integrate security throughout the Software Development Lifecycle (SDLC), partnering closely with development teams to ensure secure design, development, testing, and deployment practices.
• Analyze and remediate vulnerabilities identified through SAST, SCA, DAST, IAST, penetration testing, and other security assessment activities while providing technical guidance to engineering teams.
• Conduct threat modeling exercises using methodologies such as STRIDE to identify attack vectors, assess risks, and recommend effective mitigation strategies.
• Promote secure coding practices aligned with OWASP Top 10 and industry standards through code reviews, developer enablement, and security awareness initiatives.
• Leverage automation and AI-assisted security tools to streamline vulnerability management, improve remediation workflows, and enhance overall security operations efficiency.
Work Model

We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role's business requirements, this is a hybrid position requiring 3 days a week in a client or Cognizant office in Phoenix, AZ. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs.

The working arrangements for this role are accurate as of the date of posting. This may change based on the project you're engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered
• 8+ years of experience in Application Security, Product Security, Software Engineering, or Cybersecurity roles.
• Strong experience embedding security into Agile and DevSecOps development environments.
• Hands-on experience with Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), Interactive Application Security Testing (IAST), and vulnerability management processes.
• Experience conducting application penetration testing across web applications, APIs, and mobile applications.
• Strong knowledge of secure coding principles, OWASP Top 10, security architecture, and application security best practices.
• Experience performing threat modeling using methodologies such as STRIDE and assessing risks using frameworks such as CVSS.
• Proficiency reviewing application source code and providing remediation guidance for vulnerabilities within Java, .NET, or similar development environments.
• Experience integrating security controls and automated testing into CI/CD pipelines using tools such as GitLab, Jenkins, or equivalent DevOps platforms.
• Strong understanding of vulnerability lifecycle management, security risk assessment, and remediation tracking processes.
• Experience collaborating with software development, architecture, QA, and DevOps teams to design and implement secure applications.
• Excellent communication, leadership, and stakeholder management skills with the ability to influence secure engineering practices across organizations.
• Experience mentoring developers and engineering teams on application security concepts and secure software development methodologies.
These will help you stand out
• Experience leveraging AI-driven security tools and automated remediation platforms to improve vulnerability management and developer productivity.
• Experience securing cloud-native applications, microservices architectures, APIs, and containerized workloads.
• Knowledge of banking, financial services, fintech, or other highly regulated industry security requirements.
• Experience conducting security reviews for REST and SOAP APIs.
• Familiarity with DevSecOps frameworks and security automation within enterprise CI/CD environments.
• Experience reducing false positives through optimization and tuning of SAST, DAST, and other security scanning solutions.
• Strong understanding of security architecture reviews, secure design patterns, and application hardening techniques.
• Experience participating in or leading security champions programs within large engineering organizations.
• Security certifications such as CSSLP, GWAPT, OSCP, CEH, CISSP, Security+, or related credentials.
• Experience driving security culture initiatives and establishing security-first engineering practices across development teams.

We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Salary and Other Compensation:

Applications will be accepted until July 24, 2026.

The annual salary for this position is between $63,000 - $125,000 depending on experience and other qualifications of the successful candidate.

This position is also eligible for Cognizant's discretionary annual incentive program, based on performance and subject to the terms of Cognizant's applicable plans.
Benefits:

Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
• Medical/Dental/Vision/Life Insurance
• Paid holidays plus Paid Time Off
• 401(k) plan and contributions
• Long-term/Short-term Disability
• Paid Parental Leave
• Employee Stock Purchase Plan
Disclaimer:

The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.

About Cognizant

TriZetto is Powering Integrated Healthcare Management. With technology solutions touching more than half the U.S. population today, TriZetto is uniquely positioned to drive the convergence of core benefit administration, care management and constituent engagement. TriZetto provides premier information technology solutions that enable payers and other constituents in the healthcare supply chain to improve the coordination of benefits and care for healthcare consumers.

Cognizant Careers

Join the vibrant team at Cognizant, a leading provider of information technology, consulting, and business process services. Cognizant is not just a company; it's a community where innovation, leadership, and diversity are valued and where every team member is encouraged to thrive.

Work You’ll Do

At Cognizant, we are dedicated to helping the world's leading companies build stronger businesses — not just for today but for the future. This commitment to growth and sustainability is what makes Cognizant a unique place to advance your career.

Explore Job Opportunities

Whether you're looking for an entry-level position or a more senior role, Cognizant offers a plethora of job opportunities that could be perfect for you. Our hiring process is designed to be transparent and engaging, ensuring that every candidate is able to showcase their skills and potential fully.

Innovative Work

Join a team where innovation is at the core of everything we do. Cognizant’s professionals are not just part of a company; they're part of a groundbreaking environment that combines technology, insights, and leadership to foster innovation across global industries.

Internship Programs

Kickstart your career with Cognizant’s internship programs. These opportunities allow you to gain hands-on experience, develop your professional skills, and network with experts in your field. An internship at Cognizant is a stepping stone to full-time employment and a chance to see how your studies apply in the real world.

Professional Growth and Development

Cognizant is committed to the professional growth of its employees. With access to cutting-edge training, leadership programs, and diversity initiatives, you can build a career that’s equipped for the demands of tomorrow’s business landscape.

Benefits and Culture

Our employees enjoy a range of benefits designed to support their physical, financial, and emotional well-being. Cognizant’s culture is built on a foundation of respect and inclusivity, where everyone’s contribution is valued. Join us and be part of a team that celebrates diversity and is driven to make a positive impact on the world.

Stay Connected

Join Our Team Search open positions that match your skills and interests. We look for passionate, curious, creative, and solution-driven team players. Ready to take the next step in your career journey? Explore the exciting employment and career opportunities waiting for you at Cognizant.

Keep Up to Date

Stay ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here.

Job Alert Emails

Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the rewarding opportunities that await at Cognizant.

Networking and Interviews

Enhance your career prospects at Cognizant through our robust networking events. Prepare your resume, sharpen your interview skills, and connect with leaders across the industry to unlock new career paths. At Cognizant, we don’t just offer jobs; we offer career journeys. Be part of a team that’s committed to your long-term career growth and professional development. Join Cognizant today and be a part of our success story.
Learn more about Cognizant
Size
340,400 employees
Market Cap
$28.7 billion
Industry
Net Income
$1.3 billion
Founded
1994
5 Year Trend
+6.5%
Revenue
$16.6 billion
NASDAQ

Similar Jobs

More Jobs at Cognizant

More Information Technology Jobs

Find similar Application Security Engineer jobs: