Back

Applications Security Engineer

Worldwide Salaried Open

About the position LendingTree is seeking an Applications Security Engineer to join our security team with a primary focus on edge security and externally facing application protections. This role centers on supporting critical InfoSec programs, including SaaS Security Posture Management (SSPM), web application firewall (WAF) engineering, and remediation of findings from external security scanning tools. The Application Security Engineer will serve as a subject matter expert for web-edge controls, particularly Cloudflare, while partnering with internal teams to triage alerts, drive remediation efforts, and maintain the security posture of LendingTree’s web-facing applications and cloud services. Success in this role requires strong technical depth in application-layer defenses, the ability to manage and operationalize security tooling, and clear communication with both technical and non-technical stakeholders. This role is ideal for someone who thrives at the intersection of application security, cloud security, and collaboration—and who enjoys taking ownership of critical security programs that protect the business at scale.

Responsibilities

  • Web Application Firewall (WAF) Subject Matter Expert
  • Serve as the Application Security program’s primary authority on web application firewall technologies, with deep expertise in Cloudflare. Partner with engineering and security teams to design, implement, tune, and maintain WAF rules to protect web-facing applications.
  • Cloud Compliance & External Scanning Remediation
  • As an extension of the AppSec program, this role will continuously monitor and assess the effectiveness of our cloud compliance and security tools, such as our SaaS security posture management platform, and use those insights to drive measurable improvements to our overall cloud security posture.
  • Fraud Program Support
  • Support the Fraud Program by providing research assistance to identify and model anomalous patterns, with the goal of using those models to improve automated defenses.
  • Collaboration & Communication
  • Work closely with internal and external stakeholders across engineering, product, and security teams. Translate complex security findings and recommendations into clear, actionable guidance for non-technical audiences.

Requirements

  • Strong foundational knowledge of application security principles, with an emphasis on protecting web-facing and edge-exposed applications.
  • Hands-on experience with Web Application Firewall (WAF) technologies, including rule creation, tuning, alert triage, and false-positive reduction; Cloudflare and Azure Front Door experience strongly preferred.
  • Working knowledge of SaaS Security Posture Management (SSPM) concepts and platforms, including alert review, access posture validation, and remediation workflows.
  • Experience supporting or operating security monitoring and remediation programs, such as fraud detection, abuse prevention, or incident-driven security initiatives.
  • Familiarity with external security scanning tools (e.g., DAST, cloud posture scanners, or web exposure scanning) and the ability to manage findings through remediation and closure.
  • Understanding of cloud security and compliance fundamentals, including shared responsibility models and common cloud risk patterns.
  • Ability to prioritize, track, and coordinate remediation efforts across multiple teams and security programs.
  • Strong analytical and troubleshooting skills, with the ability to investigate security findings and recommend practical, risk-based solutions.
  • Excellent written and verbal communication skills, with demonstrated ability to translate technical security issues into clear, actionable guidance for non-technical stakeholders.
  • Proven ability to collaborate effectively with engineering, product, and security teams.

Benefits

  • Medical, dental, vision insurance, and 401(k) matching

Apply tot his job Apply To this Job

More jobs

Physical Security Program Manager

Worldwide Salaried

Program Manager, Third Party Security

Worldwide Salaried

Senior Consultant (PRN) – GxP Vendor & Supplier Auditor (Part-Time)

Worldwide Salaried

Senior SEO Specialist, US

Worldwide Salaried

Senior Talent Acquisition Partner, Remote Job

Worldwide Salaried

Software Engineer or Senior Software Engineer

Worldwide Salaried

Architect, Web (Remote, CA, US, USA_506360)

Worldwide Salaried

Architect, Web (Remote, CA, US, USA_506360)

Worldwide Salaried

Advisory Solution Consultant, Financial Services

Worldwide Salaried

Bilingual /French SEPHORA - REMOTE W2 CSR - CHAT/VOICE / $18/hr - Start 3/27 - #MSP

Worldwide Salaried

Experienced Work from Home Customer Service Representative – Tax, Healthcare, and Automotive Sales & Service

Worldwide Salaried

[Remote/WFM] Looking for Online English Tutor – Flexible Hours in

Worldwide Salaried

Facebook Remote Data Entry Assistant – From Home No Experience

Worldwide Salaried

Customer Support Representative, B2B

Worldwide Salaried

Experienced Pharmacy Technician – Data Entry, Customer Service (Overnight) at arenaflex

Worldwide Salaried

Experienced Remote Data Entry Associate – Entry Level Opportunity with Amazon in the United States

Worldwide Salaried

MTSS Math Interventionist - Join Our Team in Illinois!

Worldwide Salaried

Electrical Apprentice/Trainee

Worldwide Salaried

Remote Medical Insurance Verification Specialist – Outbound Call Center Role Supporting a Fortune 500 Pharmaceutical Partner, $17/hr, Full Benefits, Immediate Start

Worldwide Salaried

Remote LPN – Chronic Care Management (CCM) & Remote Patient Monitoring (RPM) Florida Residents

Worldwide Salaried