Skip to content

Open nowPosted today

Application Security Engineer

Purpose Brands, LLC13 open roles

Where
Boca Raton FL
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowApplication Security EngineerPurpose Brands, LLC · Boca Raton FL
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Purpose Brands, LLC's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Purpose Brands, LLC postings stay open a median of 29 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 33.9%30 days
This job: posted today

Purpose Brands, LLC median: 29 days open

The posting

Purpose Brands, the parent company of Orangetheory, Anytime Fitness, Waxing the City, and The Bar Method, is seeking a Application Security Engineer to join its team. This is a great position for someone who is looking to expand their career, and join a company with a fun, fast-paced and inspirational culture.

The Application Security Engineer will report to the Staff Security Engineer and will be responsible for advancing application security capabilities as part of a DevSecOps operating model. This role focuses on embedding security controls, automation, and secure development practices directly into the software delivery lifecycle for cloud-based applications. The Application Security Engineer will report to the Staff Security Engineer and will be responsible for advancing application security capabilities as part of a DevSecOps operating model. This role focuses on embedding security controls, automation, and secure development practices directly into the software delivery lifecycle for cloud-based applications.

The Application Security Engineer will partner closely with software engineering, DevOps, and cloud teams to mature security processes, improve vulnerability detection and remediation workflows, and reduce risk without slowing delivery. This position emphasizes hands-on application security engineering, security tooling integration, and developer enablement across applications deployed in AWS and Azure environments.

Purpose/Impact: (Duties & Essential Functions)

Application Security & Secure SDLC

  • Embed application security practices into all phases of the software development lifecycle (SDLC), from design through deployment and maintenance
  • Perform application security assessments including static code analysis (SAST), dynamic testing (DAST), and software composition analysis (SCA)
  • Develop and maintain threat models for critical systems and applications, collaborating with engineering teams to identify threats, assess risk, and drive remediation efforts
  • Promote secure coding practices and contribute to secure development standards aligned with OWASP and industry best practices

DevSecOps Enablement & Automation

  • Partner with engineering and DevOps teams to integrate security tooling into CI/CD pipelines, enabling automated and repeatable security testing
  • Analyze and manage vulnerability findings from tools such as GitHub Advanced Security, Syft, Clair, Qualys, etc.
  • Help tune security tooling to reduce false positives and improve signal quality for development teams
  • Support the adoption of security automation to improve consistency, efficiency, and scalability across application environments

Cloud & Platform Security Collaboration

  • Assist in securing applications deployed across AWS and Azure, including workloads running on IaaS, PaaS, and container-based platforms
  • Identify risks to the confidentiality, integrity, and availability of application data hosted in cloud-based environments
  • Collaborate with cloud and platform security engineers to ensure application security controls align with broader cloud security architecture
  • Own and curate security controls within the Cloud Engineering and Platform Engineering space that align with security frameworks and controls like NIST CSF, CIS Benchmarks, and CSA CCM

Risk Management, Monitoring & Response

  • Triage, prioritize, and track remediation of application vulnerabilities based on risk and business impact
  • Assist in security investigations involving application vulnerabilities or security events
  • Participate in periodic reviews of application security controls to validate effectiveness and compliance with organizational standards

Collaboration & Continuous Improvement

  • Act as a security partner to engineering teams by providing guidance, education, and actionable recommendations
  • Contribute to the continuous improvement of application security processes, standards, and metrics
  • Support governance, risk management, and compliance initiatives as they relate to application security

QUALIFICATIONS

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field
  • 3–5 years of experience in application security, security engineering, or software engineering with a strong security focus
  • Hands-on experience performing code reviews and application security testing across modern languages, frameworks, and APIs
  • Experience working with application security tools such as SAST, DAST, and dependency scanning (e.g., GitHub Dependabot or similar)
  • Strong understanding of OWASP Top 10, secure coding principles, authentication/authorization, and API security
  • Practical experience supporting applications running in AWS and/or Azure cloud environments
  • Familiarity with CI/CD pipelines, DevOps workflows, and DevSecOps concepts
  • Ability to communicate security risks and remediation guidance clearly to developers and non-security stakeholders
  • Strong analytical skills with the ability to balance security risk with delivery velocity

Preferred certifications include: Security+, CSSLP, GWAPT, GWEB, CEH, GPEN or other application security–focused certifications

What’s in it for you?

We offer a competitive salary along with exceptional benefits such as:

  • Medical, Dental and Vision Coverage
  • Hybrid Work Environment
  • Life and Disability Insurance
  • Unlimited Time off + Paid Holidays
  • Flexible Friday's between Memorial Day and Labor Day
  • 401(K) Savings Plan Matching at 4%
  • 10 Coaching and Therapy sessions
  • Mental Health Benefits
  • Brand Discounts & Reimbursements
  • In-house workout facilities
  • Professional Development Opportunities
  • Team Building, Employee Engagement Activities & so much more

WORK SCHEDULE Purpose Brands LLC, currently observe the following hybrid work model for employees at our Boca Raton (FL), Woodbury (MN), and Seattle (WA) offices:

  • Remote optional: Fridays
  • On-site days: Mondays, Tuesdays, Wednesdays and Thursdays

DIVERSITY, EQUITY, AND INCLUSION STATEMENT Purpose Brands is committed to encouraging, facilitating, and upholding an environment centered on diversity, equity, and inclusion across every facet of the Purpose Brands. We will work to create a sustainable culture that supports a healthy space for learning and growing, valuing, and empowering every employee, inspiring a diverse franchise network, and uplifting the members and communities we serve.

EEO STATEMENT Purpose Brands provides equal employment opportunity to all individuals regardless of their race, color, creed, religion, gender, age, sexual orientation, national origin, disability, veteran status, or any other characteristic protected by state, federal, or local law. Discrimination of any type will not be tolerated.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Purpose Brands, LLC's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Purpose Brands, LLC's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Purpose Brands, LLC's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.