Responsibilities
- Assess the current design and codebase to identify areas in need of improvement
- Work with members of project teams to resolve security issues
- Conduct threat modeling for new and existing applications
- Perform security testing such as static code analysis, pentesting, and dynamic application security testing
- Apply a cybersecurity background to perform code analysis when resolving false positives and provide remediation recommendations
- Establish application security requirements based on company standards and industry best practices
- Test and evaluate security tools, and products
Requirements
- Bachelor’s degree in Information Systems or a related technical field or equivalent experience
- 5+ years applied experience in application security or related position
- Background performing cybersecurity code analysis
- Experience with software composition analysis and tools to scan source and binary code for dependency vulnerabilities
- Experience with implementing and using static and dynamic analysis tools
- Experience performing penetration testing is preferred
- Experience using and/or maintaining Checkmarx, Burp Suite, or Contrast preferred
- Experience with DevSecOps
- Experience with automating security operations within CICD workflows preferred
- Experience in writing code using a major programming language is preferred. Specifically, .NET
- Experience with cloud methodology and terminology
- Experience working with cloud-based platforms and applications
- Experience with Azure is preferred
#J-18808-Ljbffr