Application Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Application Security Engineer (Cybersecurity): Supporting application security through testing, vulnerability management, and secure design collaboration with an accent on CI/CD integration and security automation. Focus on building secure development practices and assisting in incident response for internal and external applications.
Location: Must be based in Arlington, VA
Company
provides specialized information and data-driven insights to professionals in law, government, and business.
What you will do
- Perform security testing including SAST, DAST, and SCA.
- Participate in vulnerability management and incident response processes.
- Collaborate with software engineers to design and implement secure application features.
- Assist in the development and automation of security tools and scripts.
- Integrate security controls into CI/CD pipelines.
- Stay updated on emerging security trends and vulnerabilities.
Requirements
- Must be based in Arlington, VA
- Basic knowledge of security principles and best practices.
- Familiarity with Python, Java, or JavaScript.
- Exposure to security testing tools like SAST, DAST, or SCA.
- Associate's degree in Information Security, Computer Science, or equivalent experience.
- 0-2 years of relevant experience.
Nice to have
- Certifications such as CompTIA Security+, Pentest+, or CDP.
- Experience with CI/CD pipelines like GitLab, GitHub Actions, or Jenkins.
- Hands-on experience with AWS cloud environments.
- Participation in security communities or CTF events.
Culture & Benefits
- Commitment to professional growth and career development in security engineering.
- Opportunity to work on diverse internal and external applications.
- Inclusive work environment with a strong non-discrimination policy.
- Focus on continuous learning and staying current with security trends.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →