Remote Application Security Engineer Jobs
Remote application security engineer jobs are open across the U.S. at remote-first firms, distributed tech teams, and security-focused companies in software, fintech, healthcare, and defense contracting. Employers hiring remotely right now include Shutterfly, CVS Health, and Zeta Global. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 76+ Remote Application Security Engineer jobs








The Epic Application Analyst III, Provisioning, Security, and Interoperability will focus primarily on epic application security controls, user access and provisioning. Supports the organization's community connectivity and access-management strategy by administering user provisioning for external and internal system access, maintaining EpicCare Link accounts and configuration, and supporting Care Everywhere health information exchange operations. Serves as a liaison between IT security, clinical operations, and community partners to ensure secure, compliant, and efficient data-sharing workflows. This role also manages application analysts assigned to the security workgroup, understands Epic's security infrastructure, and provisions security for users.
SPECIFIC SKILLS NEEDED
- Ability to complete interoperability build for EpicCare Link and Care Everywhere
- Ability to demonstrate provider portal workflows
- Understanding of concepts of confidentiality and data security
- Strong understanding of user provisioning and security groups for end users
- Strong analytical, technical, and troubleshooting skills
- Demonstrating flexibility with respect to changing end‐user business needs
- The ability and willingness to recognize assignments or tasks that need to be completed, to seek out additional assignments or tasks, and to help others
- The ability to communicate information clearly and concisely with project leadership and subject matter experts
- The ability to gain trust and establish effective relationships with Epic counterparts
- The ability and willingness to learn new software and systems
- Listening attentively to ensure that the intended message has been accurately received, holding responses until the person have finished making their point, and repeating information to ensure accuracy
- Seeking, logically examining, and interpreting information from different sources to determine a problem's cause and developing a course of action to resolve the problem and to prevent its recurrence
- The ability to persevere in difficult situations, overcome obstacles, and reach high levels of performance when faced with stressful work situations and time pressure
EDUCATION/EXPERIENCE/TRAINING
Required:
- Bachelor’s degree with 7 or more years of experience
- 8 years of experience in lieu of degree
- Certification in Epic Provisioning and Security
- Certification in EpicCare Link, Care Everywhere and/or Ambulatory
Preferred:
- Certification, experience, or proficiency in one or more of the following Epic modules: Security
- Security administration experience
About TEXASCONNECT INC
Texas Connect, Inc. (TCI) is a Management Services Organization (MSO). As an MSO, we are dedicated to providing business and administrative services for healthcare providers, such as medical practices and hospital systems, allowing them to focus on patient care. TCI handles crucial backend functions, such as Information Technology, Billing, and Medical Coding. This allows our client healthcare organizations to delegate these and other essential, but non-medical tasks to TCI to improve operational efficiency. https://www.texasconnectinc.comSee All 76 Remote Application Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsRemote Application Security Engineer Job Market
Who's Hiring



Top Industries Hiring
- Biotechnology & Pharmaceuticals
- Insurance
- Technology & Software
- News & Publishing
- Agriculture & Farming
What Employers Look For
The qualifications that appear most often in remote application security engineer jobs.
- Proficiency with SAST, DAST, and SCA tools such as Checkmarx, Veracode, or Snyk
- Experience conducting application penetration testing and vulnerability assessments
- Strong knowledge of secure coding practices across Java, Python, or similar languages
- Familiarity with OWASP Top 10, CWE, and threat modeling methodologies like STRIDE
- Relevant certification such as OSCP, CEH, GWEB, or CSSLP preferred or required
- Bachelor's degree in computer science, information security, or a related technical field
Tips for Your Remote Application Security Engineer Job Search
Apply early to remote roles that fit
Migrate Mate lists remote application security engineer openings from across the U.S. in one place, so you can find roles that match your skills and apply directly without sorting through unfiltered postings from multiple sources.
Show async security communication in your portfolio
Remote application security engineers document findings, threat models, and remediation guidance in writing. Include sanitized vulnerability reports, secure design reviews, or written security advisories in your portfolio to show you can communicate risk clearly without a meeting.
Highlight remote-relevant security tooling experience
Remote teams rely on integrated tooling more than in-person coordination. Call out hands-on experience with SAST platforms like Semgrep or Checkmarx, DAST tools like Burp Suite, and CI/CD pipeline security integrations, since these signal you can operate independently within a distributed engineering workflow.
Prepare for asynchronous technical interviews
Many remote application security teams screen candidates through take-home code review exercises or written threat modeling scenarios before any live call. Practice producing clear written analysis of vulnerable code samples and articulating your reasoning, since that format mirrors how the actual remote role operates day to day.
Remote Application Security Engineer Jobs: Frequently Asked Questions
How do I get a remote application security engineer job?
Target remote-first companies and distributed engineering teams that already operate asynchronously, since those employers are best equipped to onboard and manage remote security engineers. Remote hiring managers screen heavily for written communication, self-direction, and the ability to run threat modeling or code review cycles without daily in-person check-ins. Strong candidates demonstrate hands-on skills in SAST, DAST, secure SDLC practices, and cloud-native security tooling, and can articulate findings clearly in written reports.
Which companies hire remote application security engineers?
Companies hiring remote application security engineers right now include Shutterfly, CVS Health, and Zeta Global, based on current remote listings on Migrate Mate as of September 2026. Remote-first software firms, distributed fintech platforms, and healthcare technology companies make up a large share of these openings, since their fully distributed engineering teams require dedicated application security support regardless of physical location.
Can you get a remote application security engineer job with no experience?
Yes, but remote entry-level application security roles are harder to land because employers expect you to operate independently from day one without in-office mentorship. Your best paths are bug bounty participation, open-source security contributions, and home lab projects demonstrating OWASP testing or secure code review. Remote-first startups and mid-size SaaS companies occasionally hire junior application security engineers who can show real hands-on output rather than just credentials.
Do you need a degree for remote application security engineer jobs?
Not always. Remote employers in application security weigh demonstrated skills heavily, particularly proficiency in vulnerability assessment, penetration testing tools, and secure development practices. Certifications like OSCP, CEH, or vendor-specific cloud security credentials carry real weight. A portfolio of captured vulnerabilities, CTF results, or contributions to security tooling can substitute for a formal degree at many remote-first companies.
Which industries hire the most remote application security engineers?
The sectors hiring the most remote application security engineers are Biotechnology & Pharmaceuticals, Insurance, and Technology & Software, based on current remote listings on Migrate Mate as of September 2026. These industries rely on distributed engineering teams building customer-facing software and handling sensitive data, which creates sustained demand for application security engineers who can work remotely across the full development lifecycle.
See All 76 Remote Application Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs