Why This Role Stands Out
Elevate your career in application security with this mid-senior role offering hands-on experience with cutting-edge SAST, SCA, and cloud security tools. You'll thrive if you have a strong understanding of OWASP, secure coding practices, and a knack for collaborating with engineering teams in an agile DevSecOps environment. This is an excellent opportunity to make a significant impact and grow your expertise.
Quick Overview
Seniority
Mid Senior
Work mode
Remote
Location
Parsippany-Troy Hills, NJ, United States
Posted
1 week ago
Agile
Job Description
Application Security
Location: Remote or Parsippany, NJ (Hybrid) , W2 only
Duration: 3 Months +
Description:
- 3+ years of offense and defense application security experience with demonstrated hands-on expertise in SAST and SCA tools such as Checkmarx and Synk, including findings triage, ruleset tuning, and managing vulnerability lifecycle across enterprise environments
- Strong understanding of OWASP Top Ten and broader web and API vulnerabilities, including practical remediation techniques within enterprise environments
- Knowledge of web and mobile application development and deployment methodologies
- Hands-on experience securing AWS cloud environments, including Lambda, API Gateway, IAM, and S3, with experience operating cloud-native security platforms such as Orca Security, Wiz, or Prisma Cloud to surface and remediate risk across workloads and infrastructure
- Ability to read and reason about code in languages such as Node.js, JavaScript, Java, or Python. Ability to sufficiently perform meaningful secure code review, validate SAST/SCA findings, and collaborate credibly with engineering teams on remediation
- Experience working with change management and release governance processes within production environments
- Strong project management and communication skills with the ability to represent cybersecurity requirements across technical and business stakeholders
- Solid understanding of agile methodologies, DevSecOps practices, and CI/CD pipeline integration
- Familiarity with security threat intelligence sources and how they inform application-layer defenses
- Experience partnering with development teams to drive security remediation by running working sessions, building runbooks, and supporting secure coding adoption through a developer-first engagement model.
Similar jobs
- AD
Network Security Engineer
NewAgile Defense
Suitland, Maryland🇺🇸On-site42 minutes agoActive DirectoryAgileLDAP+2Technology - WI
Security Engineer IC3
NewWise
Austin, Texas🇺🇸$180k/yrHybrid42 minutes agoMicroservicesAgileGDPR+2Technology - SK
Cybersecurity Analyst
NewSkechers
Manhattan Beach, CA🇺🇸$90k - $120k/yrHybrid13 hours agoTCP/IPAgileDNS+2Technology - AS
Security Control Assessor
NewApex Systems
San Diego, CA🇺🇸$95 - $110/hrOn-site13 hours agoAdministrative - MO
Cyber Intelligence Analyst with Security Clearance
NewMobius
Huntsville, AL🇺🇸HybridYesterdayTechnology - AS
Data Security Engineer (DRM Specialist) – Senior, Zero Trust P with Security Clearance
Athenix Solutions Group
Macdill Air Force Base, FL🇺🇸Hybrid5 days agoEncryptionAzurePKI+1Technology