Application Security Engineer (SAST Specialist) || Onsite at Pittsburgh, Pennsylvania, USA |
Email: [email protected] |
From: JUNAID, Smartfolks [email protected] Reply to: [email protected] Title - Application Security Engineer (SAST Specialist) Location Pittsburgh, PA Onsite C2C Job Description We need a SAST skilled person who has development experience in any of these (Java, .Net (C#, VB), NodeJS (Typescript, JavaScript)) languages. SAST Skillset (Short Version of JD) : .Net, Java development experience & triaging. Veracode tool experience & expertise, HCL AppScan Source tool experience, Whitebox testing, OWASP knowledge. Guide developer to fix the vulnerability through code snippets. Static application security testing A strong understanding of secure development life cycle, application security frameworks and various regulatory requirements. Preferred background in software development and exposure to banking/ financial services domain is a plus. Programming skills on (Java, .Net (C#, VB), NodeJS (Typescript, JavaScript)). Good understanding of supported frameworks and cleansers functions that tool supports. Good understanding on core security mechanisms, crypto libraries and server-side security Experience in tools like HP Fortify, HCL App Scan source and Veracode. Experience of Continuous Integration / Testing / Delivery. Any one security certifications is a must. CEH, CISSP, or CSSLP. Primary Job Responsibility: Perform code review across a variety of programming languages and ability to understand security issues, interact and explain security risks to development teams. Use automated and manual code review techniques to identify application security vulnerabilities. Document vulnerabilities and collaborate with application team to help provide code snippets to remediate the findings. Keywords: csharp hewlett packard Pennsylvania Application Security Engineer (SAST Specialist) || Onsite [email protected] |
[email protected] View all |
Thu Apr 04 23:10:00 UTC 2024 |