Application Security Engineer - Alpharetta, GA OR NYC, NY
Why This Role Stands Out
This hybrid role offers a fantastic opportunity to shape the firm's cybersecurity strategy by engineering robust application security controls within a dynamic DevSecOps environment. You'll thrive here if you possess strong software development experience, a deep understanding of CI/CD pipelines, and a passion for automating security best practices to protect critical applications. Apply now to join a forward-thinking team and make a significant impact on enterprise-wide security.
Quick Overview
Job Description
The mission of the Cloud Security & Developer Enablement team is to implement the Firm's Cybersecurity Strategy by architecting, engineering, deploying, and operating technical security controls and capabilities for the Enterprise. This is achieved by continued focus on architectural rigor, automation, agile delivery and adoption of Cloud and application security control implementations by development community.
What You ll Do:
- Be part of a team of engineers to implement specific security policies in the CI/CD security tools including but not limited to SAST, OSS, and SCA applications.
- Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevSecOps processes.
- Define the security rules that needs to be adhered to at a code level in web and mobile applications written in .NET, Java, React, Python and other languages.
- With your development background and security knowledge, provide secure stable platform for enforcing application security controls.
- Support security standards, design & implement architectural patterns to increase the resiliency and scalability of security platform.
- Work with our partners to implement, manage, and optimize security measures within our GitHub repositories to continuously improve code integrity and protect against vulnerabilities.
Required skillset:
- Must have: 5+ years software development experience using Python
- Working with APIs, including but not limited to ReST
- Unit testing frameworks
- Multi-process and multi-thread architecture
- Must have: 5+ years in linux, strong bash scripting skills.
- Deep understanding of CI CD pipelines
- Working knowledge of windows environment, simple scripting dos-batch etc.
- Bachelor s degree with 10+ years of work experience in the IT field
- Ability to process large datasets for reporting and analysis.
Desired Skillset:
- A self-starter, with a strong desire for learning new technologies and applying them to solve problems
- Knowledge of SAST, OSS technologies
- Ability to perform Python code reviews with minimal assistance
- Expertise in monitoring, alerting, reporting, data analysis is desired.
- Experience with application build environments like Jenkins, GitHub Actions, Teamcity etc.
- DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
- Experience with evaluation, integration and onboard of security tools such as DAST, RASP, WAF, vulnerability scanner results, container analyzers, open source scanning is a plus
Skills
Similar jobs
AI Security & Compliance Engineer
ARSquare Tech LLC · Jersey City, United States
1 minute agoInformation Security Analysts
4 Consulting Inc · United States
1 minute agoInformation Systems Security Officer
Leidos · Huntsville, United States
20 minutes ago$69.5k - $125.7k/yrLead Firewall Engineer
Leidos · Southern Md Facility, United States
20 minutes ago$131.3k - $237.3k/yrLead Firewall Engineer
Leidos · Glenn Dale, United States
20 minutes ago$131.3k - $237.3k/yrLead Firewall Engineer
Leidos · Bladensburg, United States
20 minutes ago$131.3k - $237.3k/yr