Application Security Engineer

12 Mar 2025

Vacancy expired!

seeking experienced and flexible Application Security Engineer. The ideal candidate is passionate about the secure development process and believesthat secure applications begin with the design and continue throughout the development life cycle (SDLC).

The Application Security Engineer will be responsible for:Integrating security into the development of applications. The engineer will work closely with IBC DevOps and application development teams to threat model, vulnerability scan and penetration testsoftware, systems and architecture while identifying the required control points in the application stack.Work with developers to diagnose, document and remediate security vulnerabilities.Evaluate, recommendand implementsecurity related software on the SDLC.Application Security Engineer must be comfortable leading and training developers in secure best practices.

Qualifications:2+ years of development experienceProficient in primary development languages such as C+, C#, Java, .Net, Javascript, Python, PowershellStrong understanding of application security frameworksThorough knowledge of OWASP Top 10 & ASVSGood understanding of security code reviews and SAST, DAST, IASTMaintain the configuration and modification of DAST tools such as HCL App Scan requiredBasic TCP/IP networking knowledge including DNS, routing, and subnets.Understanding of security hardening concepts including encryption, firewalls, and proxiesGood understanding of Continuous Integration and Continuous Delivery conceptsKnowledge of JIRA, Azure DevOps, Jenkins, OpenShift, and other DevOps toolsSolid understanding of AGILE software development methodologies and use of a standard software development tool suiteSelf-starter who can operate independentlyOrganized and responsive problem solverExcellent oral, written and presentation skills with the ability to teach and communicate effectively to developers and leadership

Formal Education & Certification:Bachelor's degree in Computer Science or related major, or a strong combination of education, training and experience that demonstrates required skills and capabilities.Certifications preferred (technical)

Experience in:Java.Net with C#JavaScriptPythonCompetency with generic SQLJava Spring frameworkASP.Net Core

These are pluses if they have this experience:SQL ServerGoogle Cloud Services Big Dataknowledge of OWASP Foundation security guidelines

  • ID: #49454444
  • State: Pennsylvania Philadelphia 19190 Philadelphia USA
  • City: Philadelphia
  • Salary: $70 - $77
  • Job type: Contract
  • Showed: 2023-03-12
  • Deadline: 2023-05-07
  • Category: Et cetera