
Real job — pulled straight from Barracuda Networks’s careers page · Verified June 26, 2026 · No reposts.
Job description
Barracuda Networks is hiring a Information Security Engineer, Application Security — a full-time role. Apply directly on Barracuda Networks's careers page below.
- Support application security activities across the SDLC, including design, development, testing, release, and post-release review.
- Work with Engineering and Security teams to identify, document, and track application security risks, including issues related to insecure design, weak access control, exposed secrets, vulnerable components, misconfigurations, and other common software risks.
- Assist with reviewing application security findings, understanding risk context, coordinating with owners, and tracking remediation or accepted exceptions through closure.
- Support basic threat modeling activities by helping identify application assets, data flows, trust boundaries, misuse scenarios, and potential security requirements.
- Help promote awareness of common application security vulnerabilities, including OWASP Top 10 risks, secure coding principles, authentication and authorization concerns, input validation, data protection, and secure configuration.
- Maintain clear documentation for application risks, remediation status, ownership, exceptions, timelines, and follow-up actions.
- Support secure design and security review discussions for new features, product changes, integrations, and higher-risk application workflows.
- Collaborate with Engineering, Product, IT, and Security teams to improve secure-by-design practices and reduce software risk over time.
- Provide limited support to SOC/security operations when application-related alerts, incidents, or evidence require AppSec input, context, or follow-up.
- Source code repositories and development workflow platforms
- Issue-tracking and remediation management tools
- CI/CD and release workflow documentation
- Security documentation, risk registers, and exception trackers
- Basic cloud and enterprise environments such as AWS, Azure, and Microsoft 365
- Limited exposure to SOC workflows, application-related alerts, logs, incident records, and security evidence
- 2+ years of experience in application security, information security, software security, security operations, software engineering, or a related technical area.
- Basic understanding of the software development lifecycle (SDLC) and how security fits into design, development, testing, release, and maintenance activities.
- Foundational understanding of common application security vulnerabilities, including OWASP Top 10 concepts such as broken access control, injection, insecure design, authentication issues, vulnerable components, and security misconfiguration.
- Basic understanding of software risk management, including risk severity, ownership, remediation timelines, exceptions, and follow-up.
- Awareness of threat modeling concepts such as assets, data flows, trust boundaries, attack paths, misuse cases, and security requirements.
- Ability to work with Engineering and Security teams to understand findings, ask clarifying questions, document risk, and track remediation.
- Strong documentation skills, attention to detail, and ability to maintain accurate trackers, notes, and follow-up records.
- Good communication and collaboration skills with the ability to explain security issues in a clear and practical way.
- Bachelor’s degree in IT, Cybersecurity, Computer Science, Software Engineering, or equivalent practical experience.
- Exposure to secure coding practices or previous collaboration with software development teams.
- Familiarity with application design reviews, secure SDLC processes, or software risk reviews.
- Basic understanding of CI/CD pipelines and release management concepts.
- Awareness of cloud security concepts in AWS, Azure, or similar environments.
- Exposure to SOC, incident response, vulnerability management, or security monitoring workflows.
- Entry-level certifications such as CompTIA Security+, ISC2 Certified in Cybersecurity, or similar security certifications.
Get Security Engineer jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Manager, Production Operations and Site Reliability Engineering
Frequently asked questions
What skills are required for Information Security Engineer, Application Security at Barracuda Networks?
The required skills for Information Security Engineer, Application Security at Barracuda Networks include: AWS, Azure, Microsoft 365, CompTIA Security+.
What is the seniority level for Information Security Engineer, Application Security at Barracuda Networks?
Information Security Engineer, Application Security at Barracuda Networks is a Entry level position.
How do I apply for Information Security Engineer, Application Security at Barracuda Networks?
You can view the full description and apply for Information Security Engineer, Application Security at Barracuda Networks on EchoJobs: https://echojobs.io/job/barracuda-networks-information-security-engineer-application-security-s3ek2.