Sr. APPLICATION SECURITY Consultant at Remote, Remote, USA |
Email: [email protected] |
From: vivek, vyzeinc [email protected] Reply to: [email protected] Position: Sr. APPLICATION SECURITY Consultant Duration: 1 year contract w/possibility for extension Location: HYBRID ONSITE 2-3X / WEEK IN ONE OF THE FOLLOWING: PRINCETON, NJ; NEW YORK, NY; ATLANTA, GA; WILMINGTON, DE THE CLIENT WANTS ANY CANDIDATE TO HAVE OFFENSIVE SECURITY CERTIFICATIONS: OSCP, OSWE, OSEP, GPEN, CRTO, and GWAPT APPLICATION SECURITY LEAD Job Description: Our Application Security team acts as a trusted assessor and risk advisor for the application development teams. The team comprises of security engineers with expertise in software security and penetration testing. We are the go-to team to get an attackers perspective on any technology and constantly interacts with the numerous Engineering and Software Development teams. Your colleagues will be individuals who are passionate about technology and seek to be at the cutting edge of new cyber attacks, vulnerabilities and security technologies. We are a part of the Information Security pilar within the Global Technology organization. As an Application Security Lead, you will: Assess security of software projects and improving cloud-based security programs Perform vulnerability and penetration testing. Document security findings with reasonable methods to secure. Perform threat assessments to identify possible risks and providing security recommendations and advice. Coordinate remediation efforts after security assessment findings outline weaknesses requiring attention. What You'll Need: 7+ years of experience in software security as a practitioner with exposure to vulnerability and penetration testing, threat modeling of applications, and code reviews Vulnerability, penetration-testing, and threat modeling skills Experience with security of intra-company and third-party APIs Experience with dynamic and static analysis tools Familiarity with tools such as Git, CI/CD pipelines, Docker, Kubernetes, and experience with scripting languages such as Python Familiarity with cloud and container security solutions such as Dome 9 and Aqua Security, or similar Network, Web protocols, and encryption experience, including SSL/TLS and public key infrastructure (PKI) Strong teamwork, communication skills and attention management abilities Bachelors, Masters degree or equivalent in computer science, programming, information security or engineering preferred Financial knowledge and interest are recommended Keywords: continuous integration continuous deployment golang Delaware Georgia New Jersey New York |
[email protected] View all |
Mon Nov 13 23:04:00 UTC 2023 |