Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Gartner

Lead AppSec Engineer

Gartner

. Support Gartner’s Application Security function .

Posted 10/2/2026full-timeUnited StatesSenior💰 $116,000 - $170,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Application Security, including vulnerability assessment, threat modeling, and risk management. Proficient in implementing security tools and automation solutions while collaborating effectively with stakeholders to enhance security posture.

Highest-signal resume keywords
Application SecurityDevSecOpsCloud SecurityVulnerability Scanning TechnologiesThreat Modeling

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Vulnerability AssessmentThreat AssessmentInfrastructure as Code (IaC)ScriptingPenetration TestingSecurity Tool IntegrationRisk PrioritizationAutomation SolutionsSecurity ControlsCloud Experience
Soft Skills
Critical ThinkingProblem-SolvingCollaborationCommunicationRelationship Building
Tools & Technologies
AWSAzureGCPAST PlatformsSecurity Scorecards
Certifications & Qualifications
SOC2ISO 27001/27013NIST 800-53
Industry Keywords
Security EngineeringRisk ManagementSecurity PostureSecurity EducationContinuous Learning

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformJavaJavaScriptPerlPHPPythonRuby.NET

About the role

Key responsibilities & impact
  • Support Gartner’s Application Security function
  • Execute daily vulnerability assessment functions
  • Collaborate with Information Security partners and technology stakeholders to identify risks and vulnerabilities
  • Coordinate remediation and prioritize efforts across business units
  • Partner to implement security tools, technologies, and controls
  • Provide security education and training
  • Engineer automation solutions and security tool integrations
  • Collaborate with business stakeholders to design secure applications
  • Test applications for security weaknesses and partner on remediation
  • Mentor engineers and security champions on threat modeling
  • Triage and prioritize security risks, vulnerabilities, and exceptions
  • Coordinate orchestration, automation, and management of security technologies and platforms
  • Own vulnerability lifecycle management, including identification, threat assessment, threat modeling, and risk avoidance
  • Create actionable reports showing impact to security posture
  • Define and implement metrics, KRIs, and security scorecards
  • Serve as Application Security subject-matter expert and first point of contact for critical issues, security risk assessments, and CI/CD issues
  • Evaluate requirements and implement tools, processes, and technologies to improve security posture
  • Use data to drive prioritization, highlight systemic issues, and influence roadmap decisions

Requirements

What you’ll need
  • 6-8 years of experience in a Security Engineering role
  • Proven experience in DevSecOps, Cloud Security, and Application Security
  • Strong independent critical thinking and problem-solving skills
  • Experience using vulnerability scanning technologies, AST platforms, and cloud security tooling
  • Formal experience with threat modeling
  • Experience leading projects, initiatives, and resources through direct and indirect leadership
  • Deep knowledge of assessing and prioritizing risk
  • Cloud experience with AWS, Azure, or GCP
  • Infrastructure as Code (IaC) and Policy as Code (PaC) concepts
  • Familiarity with security controls, guidelines, and frameworks such as SOC2, ISO 27001/27013, and NIST 800-53
  • Ability to automate tasks and code solutions
  • Scripting or programming experience with Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript, PowerShell, or Bash
  • Experience with penetration testing and web application assessment
  • Proven communication, collaboration, and critical thinking skills
  • Ability to build meaningful relationships with peers, stakeholders, partners, and suppliers
  • Ability to communicate risk in business-relevant language to technical and non-technical audiences
  • Ability to apply expert knowledge to complex business and technical issues
  • Desire for lifelong learning and continuous personal/professional development

Benefits

Comp & perks
  • Competitive compensation
  • Limitless growth and learning opportunities
  • Ongoing mentorship and apprenticeship
  • Leadership courses, development programs, technical courses, certification opportunities
  • Collaborative and positive culture
  • Flexibility of working from home and collaborating with peers in dynamic offices
  • 20+ PTO days plus holidays and floating holidays in the first year
  • Extensive medical, dental insurance and vision plan
  • 401K with corporate match and immediate vesting
  • Health-and-wellness-related allowance programs
  • Parental leave
  • Tuition reimbursement
  • Employee Stock Purchase Plan
  • Employee Assistance Program
  • Gartner Gives Charity Match
  • 401k match up to $7,200 per year
  • Opportunity to purchase company stock at a discount