Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Application Security Engineer image - Rise Careers
Job details

Application Security Engineer

Who is Eleos Health?

Today, more people than ever are speaking publicly about their mental health. Whether it's ourselves, our friends and family or even public figures, taking care of your behavioral health is no longer a taboo, it's vital, and it's only human. Eleos is on a mission to help deliver the world's most effective behavioral care through data, measurement, and personalization. Or simply put, 

We want to give clinicians the support they need to do the important work only they can do.

What is this opportunity?

As the Application Security Engineer, you will be responsible for integrating and maintaining robust security practices throughout the entire application development lifecycle. You will work closely with cross-functional teams including Software Engineering, DevOps and Product.

This role requires a security-minded professional who has deep experience in cloud-based architectures and is excited about building secure and scalable solutions.

How will you contribute?

  •  Secure Software Development Lifecycle (SSDLC)- Collaborate with developers to integrate security best practices into all stages of the SDLC. Conduct secure code reviews, threat modeling, and vulnerability assessments.
  • Application Security Testing- Implement and manage SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) tools. Continuously monitor, track, and resolve identified vulnerabilities.
  • Cloud Security & Infrastructure- Work with DevOps/Infrastructure teams to secure cloud environments, including containerized workloads, CI/CD pipelines, and serverless functions. Configure and maintain cloud security best practices.
  • Security Architecture & Design- Collaborate on the design of new applications and features, advising on secure architecture patterns, encryption mechanisms, and identity & access management. Develop and maintain security reference architectures and technical standards.
  • Automation & Continuous Improvement- Identify opportunities to automate security checks and policy enforcement within the CI/CD pipeline. Research and recommend new security tools, technologies, and processes to enhance the security posture of the organization
  • 5 years of experience as an Application Security Engineer in a SAAS company
  • Oral and written communication skills for writing comprehensive reports
  • Ability to work in a team
  • Decision-making capability for adopting new countermeasures for unknown attacks
  • Analytical skills to foresee which application vulnerability can become a major threat
  • Willingness to evolve

This is a unique opportunity to join a startup that is having a meaningful impact on the well-being and mental health of thousands. We have

  • A product that positively impacts peoples' lives every single day.
  • A team of amazing people with a shared vision and the infinite drive to make it happen
  • We offer significant equity.
  • Opportunity to build, grow and become highly instrumental in shaping how technology can increase the effectiveness of therapy.
  • Hybrid work opportunities. 
  • Mental health days off you can take any given moment simply because you need them. 

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Application Security Engineer, Eleos Health

Join Eleos Health as an Application Security Engineer, where you'll play a crucial role in fortifying the foundation of behavioral health technology. At Eleos, we're passionate about enhancing mental well-being by equipping clinicians with cutting-edge solutions. Your mission will be to embed robust security practices throughout the application development lifecycle, working hand-in-hand with Software Engineering, DevOps, and Product teams. If you have a keen eye for cloud-based architectures and thrive in a dynamic environment, this role is tailor-made for you! You'll lead initiatives like secure software development lifecycle integration, execute application security testing, and design secure architectures for innovative applications. Your expertise will help shape a safer application landscape while safeguarding sensitive user data. Imagine the thrill of automating security checks and adapting to emerging threats. You’ll not only help in providing stellar security measures but also help us improve our product, which positively impacts the lives of countless individuals. At Eleos, you’ll join a vibrant team dedicated to making a real difference, all while enjoying benefits like hybrid work models, mental health days off, and potential equity in our growing company. If you're ready to use your skills to contribute to meaningful change in the mental health space, we can't wait to meet you!

Frequently Asked Questions (FAQs) for Application Security Engineer Role at Eleos Health
What are the responsibilities of an Application Security Engineer at Eleos Health?

As an Application Security Engineer at Eleos Health, you will be responsible for embedding security practices within the software development lifecycle. This includes conducting secure code reviews, performing threat modeling, and managing both static application security testing (SAST) and dynamic application security testing (DAST) tools to identify and mitigate vulnerabilities. You'll also collaborate on security architecture designs and work to enhance cloud security practices.

Join Rise to see the full answer
What qualifications are required for the Application Security Engineer position at Eleos Health?

To qualify for the Application Security Engineer role at Eleos Health, candidates should have at least five years of experience in application security, specifically within a SaaS company. Essential skills include strong oral and written communication for report preparation, analytical skills to assess potential threats, and the ability to collaborate within a team atmosphere. Familiarity with cloud environments and security infrastructures is also crucial.

Join Rise to see the full answer
How does working as an Application Security Engineer impact mental health care at Eleos Health?

As an Application Security Engineer at Eleos Health, your work is vital in ensuring that our technology remains secure, thereby protecting sensitive user data and supporting the integrity of our mental health services. By implementing robust security measures, you'll help clinicians offer better care, ultimately elevating the quality of behavioral health support provided to individuals in need.

Join Rise to see the full answer
What tools and practices does Eleos Health utilize for application security?

At Eleos Health, we leverage various tools and practices for application security, such as SAST and DAST to identify vulnerabilities early in the development process. You'll participate in integrating security best practices into the CI/CD pipeline and work closely with cross-functional teams to implement security standards and reference architectures that meet industry benchmarks.

Join Rise to see the full answer
What benefits does Eleos Health offer to its Application Security Engineers?

Eleos Health offers a range of enticing benefits for its Application Security Engineers, including the opportunity to work in a hybrid environment, take mental health days off whenever necessary, and access significant equity options. You'll also join a passionate team dedicated to improving mental health, creating a fulfilling and engaging workplace.

Join Rise to see the full answer
Common Interview Questions for Application Security Engineer
Can you explain your experience with secure software development lifecycle practices?

When answering, discuss specific methodologies you've employed to integrate security into the software development lifecycle. Highlight your experience in conducting secure code reviews, vulnerability assessments, and threat modeling to illustrate your direct involvement in enhancing security throughout the development process.

Join Rise to see the full answer
How do you stay updated on the latest security vulnerabilities and threats?

You might want to mention specific resources, such as cybersecurity news websites, forums, or professional organizations. Emphasize how continuous learning and adapting your skills are important in your role to protect against emerging threats effectively.

Join Rise to see the full answer
What tools do you prefer for application security testing and why?

Here, you can discuss tools you've utilized, such as SAST and DAST tools, and why you prefer them. Provide reasoned arguments based on their effectiveness, ease of use, and integration capabilities with CI/CD pipelines.

Join Rise to see the full answer
Describe a time when you identified a significant vulnerability. What actions did you take?

In your response, reference a specific scenario that showcases your analytical skills and decision-making ability. Detail the vulnerability assessment process, how you communicated it to stakeholders, and the proactive measures you implemented to mitigate the risk.

Join Rise to see the full answer
How would you secure a cloud environment in a SaaS application?

Discuss the various best practices for cloud security that you've employed, such as configuration management, access controls, and continuous monitoring. Explain how you work with infrastructure teams to align security standards with cloud architecture.

Join Rise to see the full answer
What role does teamwork play in your ability to implement security measures?

Emphasize the collaborative aspect of your work, detailing how you engage with software engineers, product managers, and DevOps teams to ensure seamless integration of security practices. Provide examples of successful projects resulting from effective teamwork.

Join Rise to see the full answer
Can you provide an example of an automated security measure you implemented?

Here, provide a detailed example of a specific automation you developed or improved. Discuss the processes you automated and the impact on the security posture of your previous company, highlighting the efficiencies gained.

Join Rise to see the full answer
How do you assess and prioritize security risks in applications?

Outline your approach to risk assessment, which could include identifying vulnerabilities, assessing their potential impact, and prioritizing them based on factors like exploitability. This response should showcase your analytical capabilities and decision-making process.

Join Rise to see the full answer
What do you think is the biggest challenge facing application security today?

Articulate your understanding of current challenges, such as the rapid pace of technology evolution or the sophistication of cyber threats. Discuss how these challenges impact your work and how you strive to proactively address them.

Join Rise to see the full answer
Explain your experience with threat modeling.

In your response, describe your methodology for threat modeling, including tools used or frameworks followed. Discuss how it contributes to identifying potential security weaknesses early in the development cycle and ensures robust application design.

Join Rise to see the full answer
Similar Jobs
Eleos Health Remote No location specified
Posted 8 days ago
Photo of the Rise User
Posted 5 days ago
Talent Voyager Remote No location specified
Posted 6 days ago
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
AbbVie Hybrid El Paso, TX, USA
Posted 19 hours ago
Photo of the Rise User
Posted 10 days ago
Kentro Hybrid No location specified
Posted 21 hours ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 6, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!