II.
Role overview
Reference · liverole:appsec-engineer
Application Security Engineer overview
Secures application code and deployments — SAST/DAST tooling, secure code reviews, threat modeling workshops, dependency vulnerability management, and developer security training.
Attributes
displayName
Application Security Engineer
isAgentic
false
requiredCapabilities
[]
requiredDomains
[]
description
Secures application code and deployments — SAST/DAST tooling, secure
code reviews, threat modeling workshops, dependency vulnerability
management, and developer security training.
Outgoing edges
applies_to2
- domain:security·DomainSecurity
- domain:software-engineering·DomainSoftware Engineering
holds_responsibility2
- responsibility:security-review·ResponsibilitySecurity review
- responsibility:dependency-security·ResponsibilityDependency security
requires_expertise4
- skill-area:application-security·SkillAreaApplication Security
- skill-area:sast·SkillAreaStatic Application Security Testing (SAST)
- skill-area:dast·SkillAreaDynamic Application Security Testing (DAST)
- skill-area:threat-modeling·SkillAreaThreat Modeling
Incoming edges
held_by2
- responsibility:dependency-security·ResponsibilityDependency security
- responsibility:supply-chain-integrity·ResponsibilitySoftware supply chain integrity
involves_role2
- workflow:dependency-upgrade-cycle·WorkflowDependency Upgrade Cycle
- workflow:cve-triage·WorkflowCVE Triage