Назад
Company hidden
6 дней назад

Sr. IT Application Security Engineer

120 000 - 150 000$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. IT Application Security Engineer (Microsoft Dynamics 365/Azure/IFS): Architecting and managing application security controls and RBAC across enterprise Microsoft and ERP platforms with an accent on secure development, access governance, and cloud security. Focus on threat modeling, vulnerability assessments, security testing automation, and integrating security practices throughout the SDLC.

Location: San Jose, CA or Kirkland, WA, United States

Salary: $120,000–$150,000 annually

Company

hirify.global develops integrated power semiconductors and systems power delivery architectures.

What you will do

  • Design, implement, and manage application security controls and RBAC for Microsoft Dynamics 365, Azure, and IFS ERP.
  • Conduct security assessments, code reviews, vulnerability scans, penetration tests, threat modeling, and risk analysis.
  • Advise development, product, IT, and DevOps teams on secure architecture, coding, authentication, and API practices throughout the SDLC.
  • Automate access provisioning, entitlement checks, and compliance monitoring across enterprise applications.
  • Investigate application security incidents, drive remediation, and support continuous security improvement.
  • Maintain security documentation and support audits and compliance initiatives aligned with NIST, OWASP, and ISO 27001.

Requirements

  • In-depth experience with Microsoft Dynamics 365, Azure Active Directory, and IFS ERP security models.
  • Advanced knowledge of RBAC, access provisioning, least privilege, and segregation of duties.
  • Hands-on experience with secure application development, vulnerability management, code reviews, and threat modeling.
  • Experience with SAST, DAST, CI/CD pipeline integration, and automation scripting using PowerShell or Python.
  • Knowledge of OWASP Top 10, NIST, ISO 27001, cloud security, secure REST APIs, and modern authentication.
  • 3+ years of experience in application security, preferably in enterprise Microsoft or ERP environments, plus a relevant bachelor's degree or equivalent experience.

Nice to have

  • CISSP, CSSLP, or relevant Azure security certifications.

Culture & Benefits

  • Health care, dental, vision, life, and disability coverage.
  • Focus on creativity, sustainability, innovation, and knowledge sharing.
  • Collaboration with development, product, IT, DevOps, audit, and engineering teams.
  • Stock compensation may be available for certain positions.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →