Hiring || Senior Application Security Engineer || New York, NY-Onsite || No H1B at York, New York, USA |
Email: [email protected] |
From: Rohit Dubey, Vyze Inc [email protected] Reply to: [email protected] Hi, This is Rohit from Vyze Inc. working as a recruiter. Im having a very urgent role. Please go through the Job Description and provide me below required information along with your updated Resume ASAP. Full Name: Visa: Email: Phone: Location: Relocation: Skype Id: Start: Job Description - Title : Senior Application Security Engineer, Specialist SP3 Location: New York, NY-Onsite (need local) Visa: USC and GC only MOI: Video 12 years of experience Mandatory Skills Note: Candidates who do not have the mandatory skills will not be considered 12 years of experience in application security, with a proven track record of conducting vulnerability assessments, penetration testing, and secure code reviews. Extensive experience in secure application development, including knowledge of security frameworks like OWASP Top 10, and the ability to guide development teams in implementing secure coding practices. Proficiency in Software Composition Analysis (SCA) tools (e.g., Veracode, AppSec) for identifying and managing vulnerabilities in open-source libraries and third-party components. Advanced knowledge of static and dynamic application security testing (SAST/DAST) tools (e.g., Veracode, AppSec, Burp Suite) and integrating these tools into CI/CD pipelines for automated security checks. Strong cloud security expertise, including securing applications and workloads on AWS, Azure, or GCP, and experience with Web Application Firewalls (WAF) and cloud-native security services. DESIRABLE SKILLS/EXPERIENCE: Advanced cloud security experience: Experience securing cloud environments (AWS, Azure, GCP) with tools like Web Application Firewalls (WAF), and implementing IAM, encryption, and monitoring tools. Experience with scripting and automation, using Python, Bash, or Power, to automate security tasks, integrate security testing tools, and improve the efficiency of security operations. Strong communication skills: Ability to effectively explain complex security concepts and risks to both technical teams and non-technical stakeholders, ensuring alignment on security measures. Leadership and mentoring skills: Experience leading security teams or initiatives, mentoring junior engineers, and fostering a culture of security awareness within the organization. Collaboration and cross-functional teamwork: Proven ability to work effectively with development, DevOps, and IT teams to integrate security into all aspects of the business, ensuring security goals align with business objectives. Highly flexible/willing to learn new technologies. Highly organized with excellent analytical, problem solving and decision-making skills. Additional Qualifications: Certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Cloud Security Professional (CCSP), or GIAC Web Application Penetration Tester (GWAPT) are highly preferred. Knowledge of compliance standards like NIST, PCI-DSS, and GDPR and how they apply to application security Best Regards Rohit Dubey Technical Recruiter | VYZE INC. 24718 Tribe Square #306, Dulles, VA 20166 Email: [email protected] Keywords: continuous integration continuous deployment information technology golang green card Idaho New York Virginia Hiring || Senior Application Security Engineer || New York, NY-Onsite || No H1B [email protected] |
[email protected] View all |
Tue Dec 10 06:07:00 UTC 2024 |