Ready for an upgrade? A different browser will keep you connected to the full website experience – and protect you from security risks.
Job title, category or skills
Near:
Start your journey with AT&T
Make an immediate impact
Join 13K other Veterans at AT&T
A world of opportunity awaits
Working here is more than just a job title
Our Culture
Mind if we brag for a moment?
See for yourself
Be a part of our elite cybersecurity team that provides strategy, consulting, and threat detection to a wide range of customers.
"If you want to be continually challenged, always learning and able to shift careers, AT&T is the right place for you! I started at AT&T 18 years ago and never envisioned having an opportunity to transition into a Cybersecurity role." Connie Bragg — Professional Cybersecurity
"If you want to be continually challenged, always learning and able to shift careers, AT&T is the right place for you! I started at AT&T 18 years ago and never envisioned having an opportunity to transition into a Cybersecurity role."
Don't just imagine the future. Create it.
This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered.
Join AT&T and reimagine the communications and technologies that connect the world. Our Chief Security Office ensures that our assets are safeguarded through truthful transparency, enforce accountability and master cybersecurity to stay ahead of threats. Bring your bold ideas and fearless risk-taking to redefine connectivity and transform how the world shares stories and experiences that matter. When you step into a career with AT&T, you won’t just imagine the future-you’ll create it.
We are seeking an Application Security Engineer to strengthen the security of our applications and APIs through a combination of dynamic application security testing (DAST), runtime application self-protection (RASP), and API security engineering. This is an application security engineering role, not a traditional security operations position.
The ideal candidate is a security-minded engineer with strong hands-on experience in web application and API security, who understands modern application attacks and can translate that understanding into practical testing, protection, and remediation strategies. This role sits at the intersection of AppSec engineering and production defense, with responsibility for identifying exploitable vulnerabilities both before deployment and while applications are running in production, reducing risk from active attacks, misuse, and exposed application behavior.
This candidate will also evaluate and implement AI-assisted security capabilities to improve coverage, prioritization, and speed — such as intelligent scan orchestration, alert triage, anomaly detection for API abuse, and developer-facing remediation guidance — while ensuring results are valid, measurable, explainable, and safe for production use.
Job Summary:
You will own and scale dynamic security capabilities across the Software Delivery Lifecycle (SDLC) and production, with a strong emphasis on:
This role is best suited for a candidate with an application security mindset first: someone who can assess real-world exploitability, validate findings, work directly with developers on durable remediation, and build or extend automation in code when existing tooling does not fully solve the problem.
You’ll partner closely with security teams, platform teams, and developers to define policy, deploy controls safely, tune security tool detections, reduce false positives, and measurably improve security outcomes.
Detailed Job Description:
This role focuses on active defense for web applications and APIs through a combination of security testing, runtime instrumentation, and API protection. The candidate will help design and mature security programs that combine:
Success in this role requires deep application security knowledge — including web and API attack patterns, authentication and authorization weaknesses, exploitability analysis, and vulnerability remediation — as well as ability to script, automate, integrate, and build lightweight solutions when commercial tooling is insufficient.
The right candidate will be comfortable moving between hands-on security testing, technical analysis, developer partnership, and security engineering automation, with a focus on reducing meaningful application risk.
Key Responsibilities:
AI-Assisted Security Engineering
DAST & Dynamic Testing (Scale and Automation)
API Security Engineering (Internet-Facing, Gateway, Discovery)
RASP & Runtime Active Defense (In-Process Instrumentation)
Security Engineering & Collaboration
Qualifications / Requirements / Skills:
Nice-to-Haves / Preferred or Desired Skills:
Supervisor:
No
Our Lead Cybersecurity earns between $128,400-$192,600 USD Annual Not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training.
Joining our team comes with amazing perks and benefits:
#LI-Onsite – Full-time office role-
Ready to join our team? Apply today
Weekly Hours:
Time Type:
Location:
Salary Range:
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
Invested in your satisfaction and continued success.
We take care of our own here (hint: that could be you). Our benefits and rewards mean we cover some of your biggest needs with some of the coolest offerings. We already think we’re a pretty great place to work. We’re just trying to rack up some bonus points.
Let’s start with the big one: Your work gets rewarded with competitive compensation and benefits. It really does pay to be on our team.
Vacation? Staycation? Heck, let’s take a road trip. On top of paid holidays, chill out with paid time off (PTO) that you can spend any way you want.
Our people have class. Literally. We can help you out on approved education costs with our tuition assistance plan.
Here’s another reason to breathe easy: You and your family get access to excellent medical, dental and vision insurance options.
Wanna make your friends really jealous? You’ll get discounted access to the latest and greatest AT&T products and services — plus other awesome items, like tickets to live events.
You strike us as an over-achiever (don’t worry, it’s a compliment). Our training and development programs are your ticket to expert status in your job.
When the day comes that you get some much needed R&R (not that you’d ever want to leave #LifeAtATT) you’ll know your future is set with the AT&T Retirement Savings Plan (ARSP).
Complete a quick application online and check your status often.
Virtual or in-person Interviews
Dress professionally and ensure good WiFi interviewing virtually.
Conditional Job Offer
After a background check, you're part of the team.
Welcome! Onboarding and Training Begins
Our training and certification programs set you up for success.
Sign up for job alerts, updates and more.
Email:
Job Category:
Confirm Email
AT&T Info and Alerts. Max 12 messages/month. Privacy Policy. You may opt-out at anytime by sending STOP to short code 20013. Msg & data rates may apply.
Subscribe
Do the right thing, no compromise.
Innovate and get there first.
In everything, every time.
Give people what they don't expect.
Speak with your actions.
Press, speech, beliefs.
Impact your world.
When customers & colleagues need you most.