Appfolio banner

Application Security Engineer I

Appfolio

The Role

Overview

Identify and fix app vulnerabilities, guide developers, and enhance security pipeline.

Key Responsibilities

  • tool improvement
  • security pipeline
  • vulnerability identification
  • remediation support
  • developer guidance
  • security training

Tasks

-Continuously improve tools and techniques in an application security pipeline -Identify vulnerabilities in software applications and help get them fixed -Provide security guidance and education to developers in order to build a strong security culture and bake security into products early

Requirements

  • sql
  • ci/cd
  • rails
  • linux
  • ruby
  • sast

What You Bring

-Knowledge of databases and SQL -B.S. in Computer Science or equivalent work experience -2-4 years of work experience with a CI/CD pipeline -Familiarity with an MVC Framework like Rails -2-4 years hands-on work experience with an enterprise Linux command line -2-4 years of work experience programming in Ruby or a similar language -Knowledge of Cloud technologies -2-4 years hands-on experience with application security testing tools (SAST, DAST, SCA, Web Proxies like Burp or ZAP) -Knowledge of networking principles and cloud platforms -2-4 years of work experience with threat modeling or risk assessment -2-4 years hands-on work experience evaluating applications for OWASP Top 10 security risks and recommending fixes/mitigations

The Company

About Appfolio

-Founded in 2006 by Klaus Schauser and Jon Walker, AppFolio emerged to simplify property management through centralized cloud software. -Its flagship product, AppFolio Property Manager, integrates accounting, leasing, marketing, maintenance, and reporting into one platform. -In 2012 it acquired MyCase, later divesting it in 2020 to refocus solely on real estate solutions. -AppFolio has expanded via acquisitions like RentLinx, WegoWise and Dynasty Marketplace to enhance listing presence, analytics, and AI capabilities. -Typical customers range from small landlords to large portfolios, covering single-family, multifamily, commercial, student housing, and community associations. -Its Stack™ Marketplace enables seamless third-party integrations tailored to unique workflows. -In 2024 it introduced Realm-X, a generative AI assistant that automates tasks like report generation, messaging, and maintenance coordination. -Known for rapid feature rollout, mobile-first investor tools, and embedded AI, it stands out in real-time property and investment management.

Sector Specialisms

Residential

Commercial