Sr. Application Security Engineer

20 Nov 2024

Vacancy expired!

NAVA Software solutions is looking for a Sr. Application Security Engineer for one of our clients. Details: Sr. Application Security Engineer Location: Houston TX 2 days/week onsite Duration: Full time /Direct Hire As Application Security Manager you will serve as the guiding leader and subject matter expert (SME) for secure coding and software development within the company. Improve processes, technologies, and training within the Secure Software Development Lifecycle in a fast paced and dynamic environment with modernization, digital, and cloud projects. POSITION DUTIES:

  • Act as primary security SME for software development teams.
  • Design and implement governance around training, secure development, and testing across multiple development teams.
  • Review and update secure development policies, standards, and guidelines
  • Provide guidance to application teams on security best practices throughout all phases of development
  • Provide security support to multiple development teams across the organization
  • Define and implement security testing requirements
  • Track and review code vulnerabilities to resolution
  • Provide development teams with training and assistance with skill development
  • Participate in working groups to transform and improve development processes and workflows.
  • Test and recommend tools and technologies that will improve the application security program.
  • Regularly publish metrics and KPI to track and communicate performance.
POSITION REQUIREMENTS:
  • Bachelor's Degree in Computer Science or related discipline.
  • Certifications preferred: CISSP, CSSLP, GWEB, CASE
  • 8+ years of IT application or software development experience.
  • 4+ year's information security experience.
  • 2+ years working on DevSecOps and Agile teams
  • Understanding of OWASP projects and guidelines (e.g. Top 10 Vulnerabilities, ASVS, Top 10 Proactive Controls).
  • An understanding of various application development methodologies.
  • Extensive experience performing threat modeling with development teams.
  • Experience integrating security into devsecops.
  • Experience with application security testing.
  • Familiarity with application security testing tools (e.g. SAST, DAST, IAST).
  • Experience automating security verification and testing.
  • Advanced interpersonal, analytical, organizational, and problem-solving skills.
  • Understanding of project management knowledge areas.
  • Ability to establish and maintain effective working relationships with project and respective team resources.
  • Advanced oral and written communication skills.

  • ID: #23050197
  • State: Texas Houston 77044 Houston USA
  • City: Houston
  • Salary: USD TBD TBD
  • Job type: Permanent
  • Showed: 2021-11-20
  • Deadline: 2022-01-18
  • Category: Et cetera