Jobs and Careers
TH

Senior Application Security Engineer

The University of Texas at Austin
United Statesfull_timeVerifiedPosted 24 Jul 2026
💰 $120,000/yr

About the role

Job Posting Title:

Senior Application Security Engineer

----

Hiring Department:

Dell Medical School

----

Position Open To:

All Applicants

----

Weekly Scheduled Hours:

40

----

FLSA Status:

Exempt from FLSA

----

Earliest Start Date:

Immediately

----

Position Duration:

Expected to Continue

----

Location:

AUSTIN, TX

----

Job Details:

General Notes

The Senior Application Security Engineer is responsible for embedding security throughout the software development lifecycle across Dell Medical School's cloud, platform, and enterprise application environments, including Microsoft Azure, Adobe Experience Cloud, and other cloud platforms. This role partners with development, infrastructure, cybersecurity, clinical, research, and operational teams to strengthen application security, support secure software delivery, and reduce organizational risk while enabling innovation across academic, research, and healthcare environments.

Important Employment Information

This position is not eligible for employer-sponsored work authorization. Applicants requiring current or future visa sponsorship are not eligible for employment in this position.

Purpose

The Senior Application Security Engineer is responsible for integrating security throughout the software development lifecycle across cloud, platform, and enterprise application environments. This role leads secure code review, application security testing, vulnerability management, cloud security assessments, and secure development initiatives while partnering with development teams to ensure compliance with HIPAA, HITRUST, NIST CSF 2.0, TAC 202, and UTS 165 requirements. The position supports applications developed for academic, research, and clinical environments, including biomedical systems operating within healthcare settings.

Responsibilities

Secure Development and Code Review

  • Develop, implement, and maintain Secure Software Development Lifecycle (SSDLC) standards supporting Azure-hosted applications, Adobe Experience Cloud, and other internally managed platforms

  • Support secure software development for academic, research, and clinical applications, with an emphasis on higher-risk clinical systems

  • Perform manual and automated secure code reviews for internally developed applications, identifying vulnerabilities aligned with the OWASP Top 10 and CWE Top 25

  • Integrate Static Application Security Testing (SAST) and Software Composition Analysis (SCA) into CI/CD pipelines

  • Partner with software developers to remediate vulnerabilities and promote secure coding practices through guidance and education

Security Testing and Vulnerability Management

  • Configure and operate Burp Suite Professional/Enterprise for Dynamic Application Security Testing (DAST) and authorized penetration testing

  • Utilize OWASP ZAP for automated and on-demand application security scanning

  • Perform controlled validation testing using Metasploit during authorized penetration testing engagements

  • Triage, prioritize, and track remediation efforts through a risk-based vulnerability management process

  • Coordinate security testing schedules with application owners to minimize operational disruption

  • Support QA and automated testing initiatives validating application security controls throughout deployment pipelines

Cloud and Platform Security

  • Assess Microsoft Azure and other cloud environments for security posture, including identity and access management, network segmentation, and resource-level security controls

  • Review Adobe Experience Cloud and SaaS/PaaS integrations to ensure secure configuration and appropriate data protection

  • Support secure API design, authentication, authorization, and data validation practices

  • Recommend improvements that strengthen cloud and enterprise application security architecture

AI, Robotics, and Biomedical Systems Security

  • Assess the security of AI/ML models, data pipelines, and AI-enabled applications

  • Review secure integration of generative AI tools, chatbots, and AI-driven APIs supporting institutional applications

  • Evaluate security controls for robotics programming, automation platforms, and robotic process automation (RPA) solutions

  • Support security assessments of biomedical systems and connected medical devices operating within clinical environments

  • Co

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

The University of Texas at Austin

View company profile →