Looking for a Application Security Engineer with 10 plus yrs exp H1B Only need locals to NY at Remote, Remote, USA |
Email: [email protected] |
From: Chaitanya, RuriSoft LLC [email protected] Reply to: [email protected] Job Title: Application Security Engineer Location: 9 Metro Tech Center, Brooklyn, 11201 (On-site) Only Local Profiles Duration: Long Term Client : The Fire Department of the City of New York (FDNY) Job Description: Experience with 4+ years in secure Application Development with Java, Python, .Net, and scripting languages. Establish application security policies and secure SDLC process. Experience in DevSecOps, secure configurations and benchmarking, automation, software testing, vulnerability management, malware defenses, networks, reverse engineering, and log analysis Expert in defining secure configurations for Windows and Linux/Android operating systems Perform host or application-based vulnerability scanning and penetration testing Work alongside developers to write and simultaneously secure legacy and new FDNY applications Educate the FDNY staff regarding secure coding practices Lead Cloud security initiatives Configure and monitor WAFs and Load Balancers Develop, test, and deploy al1 application types, including web, mobile and OS specific builds Design and implement security test plans to improve the security posture of FDNY's applications Assist the various teams internal to FDNY, in reproducing, triaging, and fixing application security vulnerabilities. Monitor and design API security controls Work with tools like Zimperium, Fortify, BurpSuite, Veracode etc. Help integrate security tools, standards, and processes into the software development Cl/CD pipeline Help improve the security posture of FDNY, especially Internet facing systems Hands on experience with OWASP Top 10 Experience with OWASP API Security Top 10 Mandatory Skills Expert in Cloud Security including Container security/Microservices Strong understanding of mobile and web application architecture Seasoned professional who is fully qualified on all aspects of cybersecurity. Extensive knowledge of current security standards, practices, procedures and methods. Experience applying NIST 800-53 security controls to hardware and software products. Working knowledge of Oracle Cloud, Spacewalk, GitHub, or Jenkins In-depth knowledge of Micro Focus technologies: Fortify Static Code Analyzer, Fortify Weblnspect, and/or Fortify Software Security Center Excellent verbal and written communication skills Preferred Skills Knowledge of as ArcGIS, or other online geographic information system services Familiarity with Computer-aided dispatch (CAD) systems Experience working in an emergency medical service environment Keywords: continuous deployment |
[email protected] View all |
Mon Jul 17 19:08:00 UTC 2023 |