Why This Role Stands Out
This hybrid role offers a fantastic opportunity to shape the future of application security by implementing cutting-edge DevSecOps practices and contributing to a renowned organization like SANS. You'll thrive here if you possess a strong software development background with Python and Linux scripting, coupled with a passion for building secure, scalable systems. Apply to grow your expertise in a collaborative environment that values innovation and continuous learning.
Quick Overview
Job Description
Department: Cloud Security & Developer Enablement, CDRR
Role: Application Security Engineer
ALPHARETTA OR NYC (2 roles)
What You ll Do:
Be part of a team of engineers to implement client specific security policies in the CI/CD security tools including but not limited to SAST, OSS and SCA applications.
Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevSecOps processes.
Define the security rules that needs to be adhered to at a code level in web and mobile applications written in .NET, Java, React, Python and other languages.
With your development background and security knowledge, provide secure stable platform for enforcing application security controls.
Support security standards, design & implement architectural patterns to increase the resiliency and scalability of security platform.
Work with our partners to implement, manage, and optimize security measures within our GitHub repositories to continuously improve code integrity and protect against vulnerabilities.
Required skillset:
Must have: 5+ years software development experience using Python
Working with APIs, including but not limited to ReST
Unit testing frameworks
Multi-process and multi-thread architecture
Must have: 5+ years in linux, strong bash scripting skills.
Deep understanding of CI CD pipelines
Working knowledge of windows environment, simple scripting dos-batch etc.
Bachelor s degree with 10+ years of work experience in the IT field
Ability to process large datasets for reporting and analysis. Desired Skillset:
A self-starter, with a strong desire for learning new technologies and applying them to solve problems
Knowledge of SAST, OSS technologies
Ability to perform Python code reviews with minimal assistance
Expertise in monitoring, alerting, reporting, data analysis is desired.
Experience with application build environments like Jenkins, GitHub Actions, Teamcity etc.
DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
Experience with evaluation, integration and onboard of security tools such as DAST, RASP, WAF, vulnerability scanner results, container analyzers, open source scanning is a plus
Similar jobs
- LE
Tanium Cyber Infrastructure Engineer with Security Clearance
NewLeidos
Suitland, MD🇺🇸$107.9k - $195.1k/yrHybrid22 hours agoPowerShellPythonZero TrustTechnology - NG
Sentinel - Surety and Security Capability Lead Systems Engineer with Security Clearance
NewNorthrop Grumman
Huntsville, AL🇺🇸$129.3k - $193.9k/yrHybrid22 hours agoHTTPTechnology - NG
Sentinel - Surety and Security Capability Lead Systems Engineer with Security Clearance
NewNorthrop Grumman
Bellevue, NE🇺🇸$129.3k - $193.9k/yrHybrid22 hours agoHTTPTechnology - LE
Tier 3 Cyber Threat Intelligence Analyst with Security Clearance
NewLeidos
Stennis Space Center, MS🇺🇸Hybrid22 hours agoPythonC++PowerShell+3Technology - LT
Senior Information Security Officer
NewLorvenk Technologies LLC
United States🇺🇸Hybrid22 hours agoSchedulingAdministrative - KI
Cloud Security Specialist (AWS) - Washington, DC (Onsite)
NewKainos Innovative Solutions Inc
Washington, DC🇺🇸Hybrid22 hours agoAWSZero TrustTechnology