Negotiable
Outside
Remote
USA
Summary: Lead application security initiatives by implementing and managing security testing techniques aligned with enterprise standards. Analyze, assess, and respond to open-source vulnerabilities, including zero-day threats, impacting applications. Develop and execute remediation plans for identified security risks while championing secure coding practices across engineering teams.
Key Responsibilities:
- Lead application security initiatives by implementing and managing security testing techniques aligned with enterprise standards.
- Analyze, assess, and respond to open-source vulnerabilities, including zero-day threats, impacting applications.
- Develop and execute remediation plans, such as code refactoring and dependency updates, for identified security risks.
- Champion secure coding practices and facilitate security reviews across engineering teams.
- Provide technical designs and recommendations to minimize vulnerabilities and strengthen security posture.
- Collaborate with development, architecture, and security teams to embed security throughout the software delivery lifecycle.
- Stay updated on emerging security threats, tools, and best practices in application and cloud security.
- Apply strong programming experience in Java, JavaScript, and Python to support secure software development.
- Utilize security tools (e.g., Sonatype, Qualys, SonarQube, AWS Inspector) and practices (e.g., DevSecOps) to enhance application security.
- Communicate effectively to bridge gaps between technical and non-technical stakeholders and influence secure architecture decisions.
- Participate in cross-functional team efforts to drive security-focused development initiatives and process improvements.
Key Skills:
- Strong programming experience in Java, JavaScript, and Python.
- Experience with security tools such as Sonatype, Qualys, SonarQube, and AWS Inspector.
- Knowledge of secure coding practices and application security best practices.
- Ability to analyze and respond to security vulnerabilities.
- Strong communication skills to engage with technical and non-technical stakeholders.
- Experience with DevSecOps practices.
- Ability to develop and execute remediation plans for security risks.
- Collaboration skills to work with cross-functional teams.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Senior Software Engineer Application Security
Location: 100% Remote
w2 only
Summary:
- Lead application security initiatives by implementing and managing security testing techniques aligned with enterprise standards.
- Analyze, assess, and respond to open-source vulnerabilities, including zero-day threats, impacting applications.
- Develop and execute remediation plans, such as code refactoring and dependency updates, for identified security risks.
- Champion secure coding practices and facilitate security reviews across engineering teams.
- Provide technical designs and recommendations to minimize vulnerabilities and strengthen security posture.
- Collaborate with development, architecture, and security teams to embed security throughout the software delivery lifecycle.
- Stay updated on emerging security threats, tools, and best practices in application and cloud security.
- Apply strong programming experience in Java, JavaScript, and Python to support secure software development.
- Utilize security tools (e.g., Sonatype, Qualys, SonarQube, AWS Inspector) and practices (e.g., DevSecOps) to enhance application security.
- Communicate effectively to bridge gaps between technical and non-technical stakeholders and influence secure architecture decisions.
- Participate in cross-functional team efforts to drive security-focused development initiatives and process improvements.