Hiring.Camp

Sr Application Security Engineer - Cyber Security

Sands

·

Aug 15, 2026

Location
Dallas, Texas, United States of America
Type
Full-time
Department
Engineering
Experience
21+ years
Source
Workday

Description

Job Description:

Position Overview

The primary responsibility of the Sr Engineer – Cyber Security is to design, implement, and support application security capabilities that integrate into the company’s Software Development Lifecycles (SDLCs). This role partners with development, platform engineering, and cyber security teams to assess application risk, integrate security into CI/CD and AI-assisted development workflows, and drive secure, scalable software delivery through security tooling, secure coding practices, and vulnerability remediation.

All duties are to be performed in accordance with departmental and Las Vegas Sands Corp.’s policies, practices, and procedures. All Las Vegas Sands Corp. Team Members are expected to conduct and carry themselves in a professional manner at all times. Team Members are required to observe the Company’s standards, work requirements and rules of conduct. 

Essential Duties & Responsibilities

  • Develop, implement, and support application security programs across Software Development Lifecycles (SDLCs), including technology integration, workflow design, documentation, training, and stakeholder enablement.

  • Evaluate SDLCs and advise on application security technologies, integration points, AI-assisted threat modeling, risk analysis, and process improvements to reduce software security risk.

  • Perform code, vulnerability, and configuration analysis using manual review, automated application security testing solutions, agentic-code review capabilities, and AI-enhanced pipeline security controls, including SAST and DAST tools.

  • Partner with development teams to prioritize product vulnerabilities, validate mitigation urgency, and provide remediation guidance and recommendations.

  • Integrate AI-enhanced security automation into CI/CD pipelines, including agentic-code analysis, AI-assisted threat modeling, automated triage, risk-based release gating, and feedback loops that improve developer remediation workflows.

  • Configure, implement, maintain, troubleshoot, and support capacity planning for cyber security tools, devices, infrastructure, and application security technologies.

  • Monitor tool health, respond to security outputs, and tune solutions to support reliable performance, business-focused monitoring, and program objectives.

  • Respond to cyber security events and incidents with professionalism and support practice exercises for use case driven alerts and incidents.

  • Identify security requirements and support cyber security architecture, secure configuration, and product security reviews across heterogeneous computing environments.

  • Create and maintain cyber security documentation, including design materials, standard operating procedures, protocols, diagrams, metrics, reports, and presentations.

  • Collaborate with cyber security, IT, business, development, quality assurance, and administrative teams to troubleshoot issues, support operational needs, and promote secure software development practices.

  • Manage operational requests by submitting and responding to tickets, preparing change management items, and participating in Change Approval Board (CAB) meetings.

  • Stay current on malware, infiltration and investigative techniques, forensics, application security practices, and the evolving threat environment.

  • Mentor junior engineers to develop job competency, technical skills, and cyber security expertise.

  • Perform job duties in a safe manner.

  • Attend work as scheduled on a consistent and regular basis.

  • Perform other related duties as assigned.

Minimum Qualifications

  • At least 21 years of age.

  • Proof of authorization to work in the United States.

  • Bachelor’s degree in Computer Science or related field.

  • Must be able to obtain and maintain any certification or license, as required by law or policy. 

  • 5 - 7 years of experience in cyber security or information technology.

  • Experience in at least 5 of the following:

    • Secure SDLC, DevSecOps, or application security program support

    • Implementing application security testing tools, including SAST, DAST, SCA, secrets scanning, or container scanning

    • CI/CD pipeline security, release gating, and developer workflow integration

    • Agentic-code security, AI-assisted secure code review, automated vulnerability triage, and AI-enhanced pipeline risk scoring

    • Cloud architecture security, including secure configuration, identity, network, and workload protection

    • Application vulnerability assessment, triage, and remediation validation

    • Software composition analysis, open-source risk management, and dependency vulnerability management

    • API security testing, web application security testing, and secure coding practices

    • Container, Kubernetes, and cloud workload security

    • Cloud security posture management and application security configuration scanning

    • Threat modeling, AI-assisted threat modeling, and risk analysis for applications, APIs, cloud services, and emerging technologies

    • Secrets management, credential exposure detection, and secure key management practices

    • Application and cloud security logging, detection, alerting, and use case development

    • Application security incident response, vulnerability disclosure, and product security response processes

    • Infrastructure as Code security, policy-as-code, and secure configuration management

    • Application, cloud, and software supply chain threat intelligence

    • Application security metrics, risk reporting, and program maturity measurement

  • Problem solving skills and the ability to work under pressure in a constantly changing environment.

  • Ability to manage deadlines and changing priorities.

  • Must be self-motivated and a team player collaborating with a team that spans the globe.

  • Demonstrates responsibility and accountability.

  • Must be able to communicate effectively with team members, management, senior management and consultants both verbally and in writing.

  • Must be able to create and document network and system diagrams.

  • Must be able to write understandable procedures.

  • Must be able to respond to calls as needed (24/7).

  • Must be able to design, install and implement cyber infrastructure solutions that integrate with the existing infrastructure.

  • Ability to demonstrate a calm demeanor when faced with chaotic circumstances.

  • Knowledge of networking concepts and principles.

  • Strong interpersonal skills with the ability to communicate effectively with guests and other Team Members of different backgrounds and levels of experience.

  • Must be able to work varied shifts, including nights, weekends and holidays.

Physical Requirements

Must be able to:

  • Physically access assigned workspace areas with or without reasonable accommodation.

  • Work remotely as necessary.

  • Work indoors and be exposed to various environmental factors such as, but not limited to, CRT, noise, and dust.

  • Utilize laptop and standard keyboard to perform essential functions of the job.

Skills

KubernetesCI/CDRisk ManagementChange Management

Similar Jobs

30

Sr. Manager, Application and Pipeline Security

The Nielsen Company·Remote, US·Remote

Today

Senior Security Application Engineer

Bitgo·New York, US +1·Remote, Onsite

1d ago

Senior Security Application Engineer

Bitgo·Palo Alto, California·Remote, Onsite

1d ago

Senior Cyber Security Application Penetration Testing Engineer

Wells Fargo·102557-CA-333 Market, San Francisco +3

1d ago

Senior Application Security Engineer

Thought Machine·Portugal, Lisbon·Onsite

1d ago

Security Architecture and Application Security Senior Manager

Bbva·NEW YORK, US·Hybrid

1d ago

Senior Application Security Engineer

Capital·Warsaw, Mazowieckie +2·Hybrid

1d ago

Application Security Architect Analyst/ Sr Analyst

Accenture·Buenos Aires, Parque Patricios·Remote

2d ago

Senior Application Security Engineer

Verisign·Reston, Virginia

1w ago

Application Security, Senior Analyst

Vanguard·Malvern, PA +2·Hybrid

1w ago

Application Security, Senior Analyst

Vanguard·Malvern, PA +2·Hybrid

1w ago

Senior Systems Engineer - Application Security

Cloudflare·Hybrid +7·Remote, Hybrid

1w ago

Senior Application Security Engineer

Cat·Chicago, Illinois +2

1w ago

Senior Application Security Engineer - India

Finalsite·Chennai, IN·Remote

1w ago

Senior Application Engineer (Security)

Jci·JC INTL Thailand Co Ltd·Onsite

1w ago

Senior Application Security Engineer (SCA/SAST)

Trimble·Canada - Remote·Remote

1w ago

Senior Software Engineer - Application Security

Emergentlabsinc·Bangalore

1w ago

Senior Application Security Engineer

Instructure·Budapest, Hungary·Hybrid

1w ago

Senior Software Engineer - Application Security

Emergent·Bengaluru, IN

1w ago

Senior Application Security Engineer

Agile Defense·Remote·Remote

1w ago

Senior Application Security Engineer

Radicle Health·Remote +1·Remote

2w ago

Sr. Application Security Architect (AI & API)

Click Here to Learn More·UK +1

2w ago

Founding Member, Senior AI & Application Security Specialist (Delhi NCR - Hybrid)

J.S. Held·Delhi, DL·Hybrid

2w ago

Senior Information Security Engineer – AI & Application Security

Esswd·New York City, US +2·Remote, Hybrid

2w ago

Senior AI Application Security Engineer

Aida Projektai Mb·Cairo·Remote, Hybrid, Onsite

2w ago

Senior Application Security Engineer

Aida Projektai Mb·Cairo·Remote, Hybrid, Onsite

2w ago

Senior Application Security Engineer

Pepsi Co·Warszawa, PL

3w ago

Senior Application Engineer (Electronic Security Systems)

Jci·SGP Galaxis, Singapore·Onsite

3w ago

Senior Application Engineer (Security)

Jci·SGP Galaxis, Singapore·Onsite

3w ago

Senior Application Engineer (Security)

Jci·SGP Galaxis, Singapore·Onsite

3w ago