Application Security Engineer required for a Long Term Hybrid position in Albany, NY.
Why This Role Stands Out
Advance your career as a Senior Application Security Engineer by collaborating with a talented development team on complex, multi-tier architecture projects, with a hybrid work model offering flexibility. This role is ideal for a security professional passionate about integrating security best practices into the SDLC and eager to contribute to a reputable company. Apply now to make a significant impact and grow your expertise.
Quick Overview
Job Description
We are trying to source Sr. Application Security Engineer for our direct client for a Long Term Hybrid position in Albany, NY. We need Sr. Security Engineer who will join talented Development Team who will handle the project which is built on a multi-tier architecture including Service Oriented architecture, multi-tier web applications using Java and various other COTS products. Application Security Engineer work closely with development teams to diagnose, document, and remediate application security vulnerabilities and identify appropriate security checkpoints in SDLC. Perform risk-based, technical assessments/penetration tests of applications, using dynamic and static scanning tools, and audits ensuring compliance with industry standards Consult with Development leadership on application development training.
Location : Albany, NY (Hybrid – Monday Tuesday onsite + alternating Fridays). Remote-only candidates will not be considered.
Required Qualifications
· 8+ years Information Technology.
· 5+ years in software development role as a Developer, or Architect
· Java/Web development with strong secure coding background in RHEL and JBoss.
· 3+years with Application Security Engineering conducting assessments, penetration testing, implementing tools for dynamic /automated code review, dynamic and static application scanning (Fortify, SonarQube); consulting on security designs of applications, potential vulnerabilities, and remediation, and creating training materials on key security concepts.
· Hands-on experience assessing new code commits, pull requests, and architecture changes for vulnerabilities, misconfigurations, and compliance risks.
· Hands-on experience integrating AI-driven code analysis platforms into CI/CD pipelines to identify vulnerabilities and insecure coding patterns before deployment.
· Hands-on experience designing and executing a repeatable process to aggressively prioritize issue dispositions and remediations of security findings — while providing clear, concise status updates and risk reporting to leadership and stakeholders.
Education:
Bachelor’s degree in Computer Science or related technical field, OR equivalent combination of education and experience
Skills:
· Strong oral and written communication skills, with a demonstrated ability to communicate complex topics to colleagues, and management.
· Demonstrated collaboration and teaching abilities.
· Strong analytical skills.
· Identify and resolve problems in a timely manner; gather and analyze information skillfully; develop alternative solutions.
· Critical thinking and creative problem solving
Desired Qualifications
CISSP, CEH, CISA, OSCP, OSCE, or OSWE Certifications
Skills
Similar jobs
Network Security Engineer, Senior
Sentinel Technologies · Downers Grove, United States
1 minute ago$100k - $150k/yrInformation Security Analyst - Business Security and Compliance
Air Liquide America LP · Houston, United States
2 minutes agoIT security Engineer/Architect
Global Solutions Group · Omaha, United States
20 minutes agoNJAOC Cyber Security Analyst
Sunrise Systems, Inc. · Ewing Township, United States
20 minutes ago$43 - $48/hrExpert Cyber Defense Analyst (TS/SCI Clearance)
ShorePoint, Inc · Washington, United States
20 minutes agoCybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Chenega MIOS · Oakton, United States
37 minutes ago