Назад
Company hidden
52 минуты назад

Application Security Analyst (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Analyst (SAST/DAST/SCA): Securing company applications, web services, APIs, mobile applications, and third-party software with an accent on vulnerability testing, secure coding, and DevOps integration. Focus on shifting security left, integrating controls into CI/CD pipelines, prioritizing remediation by business impact, and guiding development teams on emerging threats.

Location: Plano, Texas, United States

Company

hirify.global provides mobility, automotive, finance, and insurance solutions through Toyota and Toyota Financial Services.

What you will do

  • Collaborate with development teams to integrate application security early in the software development life cycle.
  • Integrate SAST, DAST, and SCA tools into development and DevOps processes.
  • Review application code for vulnerabilities and advise developers on remediation and secure coding practices.
  • Test complex web applications, APIs, mobile applications, and third-party software for security vulnerabilities.
  • Prepare vulnerability reports and dashboards for leadership, prioritizing risks by business impact.
  • Provide guidance and training on report interpretation, remediation strategies, and emerging application security threats.

Requirements

  • 3–6 years of experience in application security with hands-on SAST, SCA, and DAST expertise.
  • Strong knowledge of OWASP Top Ten, SANS CWE Top 25, and application security standards.
  • Familiarity with Java, Python, Bash/Shell Scripting, PHP, and JavaScript.
  • Experience with CI/CD tools such as Jenkins, Harness, and GitHub Actions.
  • Knowledge of Docker, Kubernetes, AWS, Azure, GCP, Terraform, and Ansible.
  • Must have the right to work in the United States and must not require employment-based visa or immigration sponsorship now or in the future.

Nice to have

  • Strong analytical, problem-solving, communication, and collaboration skills.
  • Experience leading security testing initiatives and mentoring junior security engineers.
  • Ability to work effectively in a fast-paced, agile environment.

Culture & Benefits

  • Team-oriented, flexible, and respectful work environment.
  • Professional development programs and tuition reimbursement.
  • Comprehensive healthcare and wellness plans.
  • 401(k) plan with company match and annual retirement contribution, where applicable.
  • Paid holidays, paid time off, tax-advantaged accounts, and family support referral services.
  • Vehicle purchase and lease programs, plus relocation assistance where applicable.

Hiring process

  • Interview process includes an opportunity to discuss benefits and career development programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →