Why This Role Stands Out
Elevate your career in application security with this mid-senior role offering hands-on experience with cutting-edge SAST, SCA, and cloud security tools. You'll thrive if you have a strong understanding of OWASP, secure coding practices, and a knack for collaborating with engineering teams in an agile DevSecOps environment. This is an excellent opportunity to make a significant impact and grow your expertise.
Quick Overview
Seniority
Mid Senior
Work mode
Remote
Location
Parsippany-Troy Hills, NJ, United States
Posted
2 weeks ago
Node.jsAPI GatewayAWSOWASPAgileJavaJavaScriptPrismaPythonTriage
Job Description
Application Security
Location: Remote or Parsippany, NJ (Hybrid) , W2 only
Duration: 3 Months +
Description:
- 3+ years of offense and defense application security experience with demonstrated hands-on expertise in SAST and SCA tools such as Checkmarx and Synk, including findings triage, ruleset tuning, and managing vulnerability lifecycle across enterprise environments
- Strong understanding of OWASP Top Ten and broader web and API vulnerabilities, including practical remediation techniques within enterprise environments
- Knowledge of web and mobile application development and deployment methodologies
- Hands-on experience securing AWS cloud environments, including Lambda, API Gateway, IAM, and S3, with experience operating cloud-native security platforms such as Orca Security, Wiz, or Prisma Cloud to surface and remediate risk across workloads and infrastructure
- Ability to read and reason about code in languages such as Node.js, JavaScript, Java, or Python. Ability to sufficiently perform meaningful secure code review, validate SAST/SCA findings, and collaborate credibly with engineering teams on remediation
- Experience working with change management and release governance processes within production environments
- Strong project management and communication skills with the ability to represent cybersecurity requirements across technical and business stakeholders
- Solid understanding of agile methodologies, DevSecOps practices, and CI/CD pipeline integration
- Familiarity with security threat intelligence sources and how they inform application-layer defenses
- Experience partnering with development teams to drive security remediation by running working sessions, building runbooks, and supporting secure coding adoption through a developer-first engagement model.
Similar jobs
- SC
Immediately require - Security Analyst - Entry Level
NewSita Consulting Services, LLC
SC🇺🇸On-site22 hours agoPowerShellTechnology - QS
Cyber Network Defense Analyst with Security Clearance
NewQuantum Science Solutions
Arlington, VA🇺🇸On-site22 hours agoPythonTechnology - AG
Aviation Cybersecurity Engineering Professional
AIT Global, Inc.
Dorval, QC🇺🇸Hybrid2 weeks agoLESSPenetration TestingTechnology - TE
Information Systems Security Engineer (ISSE)
NewTekSynap
Fort Belvoir, Virginia🇺🇸$145k - $170k/yrHybrid36 minutes agoLogstashSAMLPKI+1Technology - TE
Control Validation Security Specialist W/Secret Clearance
NewTekSynap
United States🇺🇸Remote36 minutes agoMicrosoft ExcelMicrosoft OfficeAdministrative - AI
WAF / Akamai Security Engineer // NYC, NY (Hybrid)- In Person Interview
NewAlliance IT
New York, NY🇺🇸On-site22 hours agoSQLOWASPDNS+2Technology