Application Security Engineer Jobs in USA with Visa Sponsorship
Application Security Engineer roles are among the most consistently sponsored positions in tech. Most employers file H-1B visa or O-1 petitions for these roles, and a relevant bachelor's degree in computer science, cybersecurity, or a related field satisfies the specialty occupation requirement with minimal friction. For detailed occupation requirements, see the O*NET profile.
See All Application Security Engineer JobsOverview
Showing 5 of 182+ Application Security Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 182+ Application Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Application Security Engineer roles.
Get Access To All Jobs
SUMMARY
We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data.
The Application Security Engineer must understand development, coding, security engineering, and secure systems configurations. This position ensures that every step of the software development lifecycle (SDLC) follows security best practices. This involves conducting security assessments with SAST and DAST tools, reading source code, threat modeling, and designing and implementing secure software development practices. They will determine where security vulnerabilities exist and implement fixes. They must understand how an application may be misused and exploited. The Application Security Engineer will collaborate with software development teams and provide guidance on best practices for secure coding. They will also stay up to date on the latest security trends and technologies and integrate them into the organization's security strategy. The ideal candidate will have strong analytical and problem-solving skills, as well as experience in application security and knowledge of programming languages and web technologies. A Bachelor's degree in Computer Science and certifications such as CISSP, OSCP, or CASE are preferred.
ESSENTIAL FUNCTIONS
- Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.
- Collaborate with software development teams to integrate security into the development life cycle.
- Conduct security assessments of web, mobile, and other applications. Analyze security assessment results to identify security vulnerabilities and provide guidance on remediation.
- Design and implement secure software development practices, including threat modeling, secure coding standards, and code review.
- Stay current with security threats, trends, and technologies, and recommend new security controls as needed.
- Conduct application security investigations and provide recommendations to mitigate risk.
- Maintain security documentation, provide subject matter expertise, and collaborate on security policies, procedures, and standards.
ADDITIONAL RESPONSIBILITIES
- Performs other duties as assigned.
Education
- Bachelor's degree in computer science, information security, or a related field
Experience
- Five (5) years or more experience with OWASP, SAST, DAST, SCA, RASP and common security tools, required.
- Seven (7) years or more application security, security engineering, software development, or a related field, required.
- Five (5) years or more strong understanding of web application security and common attack vectors (e.g. SQL injection, XSS, CSRF), required.
- Five (5) years or more experience with secure coding practices, threat modeling, and secure software development life cycle (SDLC) methodologies, required.
- Five (5) years or more proven experience in diagnosing, isolating, resolving complex issues and recommending/implementing strategies to resolve problems, required.
- Five (5) years or more demonstrated experience with systems integration processes, methodology and tools, required.
- Seven (7) years or more development and scripting experience, required.
- Five (5) years or more professional application security role, required.
- Five (5) years or more experience with API and Web Security, required.
- Three (3) years or more experience with WAF, or similar application security infrastructure a plus, preferred.
- Seven (7) years or more experience in integrating security in CI/CD, DevOps, required.
- Six (6) years or more experience process or operation management.
- Six (6) years or more experience Value Stream Mapping, Continuous Flow, Pull Replenishment and other process improvement experience.
SKILLS
- Excellent communication skills, both verbal and written, and the ability to work effectively with cross-functional teams.
- Ability to create and maintain professional relationships within all levels of the organization (peers, work groups, customers, supervisors).
- Ability to work independently and as a member of a team.
- Flexibility to operate and self-driven to excel in a fast-paced environment.
- Capable of multi-tasking, highly organized, with excellent time management skills.
- Proficiency in at least one programming language (e.g. Python, .NET, Javascript) with .NET preferred, advanced, required.
- Proficiency in at least one common scripting language (e.g. PowerShell, bash, etc.), advanced, required.
- Familiarity of NIST framework, PCI, ISO 27001, SOC, SOX, CCPA, GDPR and global regulations, expert, required.
- CI/CD experience with Azure Devops, Terraform or other automation and integration technologies, expert, required.
- Risk management findings, vulnerability prioritization, threat modeling, and mitigation strategy, advanced, required.
LICENSES
- CISSP, OSCP, CASE, or other industry-leading certifications, preferred.
TRAVEL
1-10%
Job Category: Information Security
Compensation Information
The compensation offered to a candidate may be influenced by a variety of factors, including the candidate’s relevant experience; education, including relevant degrees or certifications; work location; market data/ranges; internal equity; internal salary ranges; etc. The position may also be eligible to receive an annual bonus, commission, and/or long-term incentive plan based on the level and/or type. Compensation ranges for the position are below:
Pay Type:
Salaried
Minimum Pay Range:
$110,000.00
Maximum Pay Range:
$130,000.00
Benefits Information
For all Full-time positions only: Ryder offers comprehensive health and welfare benefits, to include medical, prescription, dental, vision, life insurance and disability insurance options, as well as paid time off for vacation, illness, bereavement, family and parental leave, and a tax-advantaged 401(k) retirement savings plan.
Ryder is proud to be an Equal Opportunity Employer and Drug Free workplace.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, among other things, or status as a qualified individual with disability.
Important Note:
Some positions require additional screening that may include employment and education verification; motor vehicle records check and a road test; and/or badging or background requirements of the customer to which you are assigned.
Security Notice for Applicants:
Ryder will only communicate with an applicant directly from a [@ryder.com] email address and will never conduct an interview online through a chat type forum, messaging app (such as WhatsApp or Telegram), or via an online questionnaire. During an interview, Ryder will never ask for any form of payment or banking details and will never solicit personal information outside of the formal submitted application through www.ryder.com/careers.
Should you have any questions regarding the application process or to verify the legitimacy of an interview or Ryder representative, please contact Ryder at careers@ryder.com or 800-793-3754.
Current Employees:
If you are a current employee at Ryder, please click here to log in to Workday to apply using the internal application process.
See all 182+ Application Security Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Application Security Engineer roles.
Get Access To All JobsTips for Finding Visa Sponsorship as an Application Security Engineer
Target security-mature employers
Companies with dedicated security teams, large fintechs, cloud providers, defense contractors, and healthcare systems, are far more likely to sponsor than startups where security is still a shared responsibility. Sponsorship infrastructure already exists at these organizations.
Get certified before you apply
OSCP, CISSP, CEH, or AWS Security certifications meaningfully strengthen your H-1B petition. USCIS scrutinizes specialty occupation claims, and certifications alongside your degree reduce the risk of a Request for Evidence on this role.
Lead with technical depth in your resume
Vague descriptions like 'performed security assessments' won't land interviews. Specify tools, frameworks, and measurable outcomes. Employers filing visa petitions want documented evidence of specialized expertise, not generalist security experience.
Understand your degree field matters
A computer science, cybersecurity, or software engineering degree maps cleanly to this role. Degrees in unrelated fields require stronger supporting evidence, work history, certifications, and employer attestation, to satisfy the specialty occupation standard.
Don't overlook cap-exempt employers
Universities, nonprofit research institutions, and government-affiliated labs are cap-exempt H-1B employers. If you miss the lottery, these organizations can file for you year-round. Application security roles exist across all of them.
Time your application cycle strategically
H-1B registration opens in March. Starting your job search in December through February gives employers enough lead time to register on your behalf. Late outreach significantly reduces your chances of being included in that cycle.
Application Security Engineer jobs are hiring across the US. Find yours.
Find Application Security Engineer JobsFrequently Asked Questions
Does Application Security Engineer qualify as a specialty occupation for H-1B purposes?
Yes. Application security engineering consistently qualifies as a specialty occupation because the role requires at minimum a bachelor's degree in computer science, cybersecurity, information systems, or a closely related field. USCIS has approved H-1B petitions for this title extensively, and the technical complexity of the work supports the specialty occupation argument well.
How common is visa sponsorship for Application Security Engineer roles?
Sponsorship is relatively common for this title compared to many other tech roles. Security talent is scarce, and employers filing LCAs for security engineers appear regularly in Department of Labor disclosure data. Mature tech companies, financial institutions, and large healthcare organizations account for the majority of filings. You can browse currently sponsoring employers on Migrate Mate.
My degree is in a field unrelated to security or computer science. Can I still get an H-1B for this role?
It's harder but not disqualifying. USCIS allows three years of progressive, specialized work experience to substitute for one year of formal education. If your degree field is unrelated, you'll need strong documentation: detailed employer letters, a credentials evaluation, and certifications like OSCP or CISSP that demonstrate specialized knowledge. A Request for Evidence is more likely in this scenario.
Is the O-1A a realistic alternative to the H-1B for application security engineers?
For engineers with a strong track record, yes. Published research, CVE discoveries, conference presentations at DEF CON or Black Hat, open-source tool contributions with measurable adoption, or significant media coverage of your security work can each satisfy O-1A criteria. It requires documented evidence, but security professionals often have more qualifying material than they realize.
What should I expect during the H-1B petition process for this role?
Expect your employer to file a Labor Condition Application with the DOL before submitting Form I-129 to USCIS. For application security roles, Requests for Evidence sometimes challenge the specialty occupation determination or the connection between your degree field and the specific job duties. Premium processing, which adjudicates within 15 business days, is worth requesting to reduce uncertainty.
What is the prevailing wage requirement for sponsored Application Security Engineer jobs?
U.S. employers sponsoring a visa must pay at least the prevailing wage, which is what workers in the same role, area, and experience level typically earn. The Department of Labor sets this rate to make sure companies aren't hiring foreign workers simply because they'd accept lower pay than a U.S. worker. It varies by job title, location, and experience. You can look up current prevailing wage rates for any occupation and location using the OFLC Wage Search page.
See which Application Security Engineer employers are hiring and sponsoring visas right now.
Search Application Security Engineer Jobs