Start Date
Immediate
Expiry Date
11 Jun, 25
Salary
120.0
Posted On
11 Mar, 25
Experience
12 year(s) or above
Remote Job
Yes
Telecommute
Yes
Sponsor Visa
No
Skills
Aws, Testing Tools, Bash, Leadership, Security Testing, Security Awareness, Encryption, Collaboration, Gwapt, Coding Practices, Penetration Testing, Security, Python, Nist, Azure, Communication Skills, Security Operations, Scripting, Application Security, Burp Suite, Devops
Industry
Information Technology/IT
Job Title: Senior Application Security Engineer
Labor Category: Specialist 3
Location: New York NY
Job Type: Contract
Work schedule: Normal business hours Monday-Friday 9-5, 35 hours/week (not including mandatory unpaid meal break after 6 hours of work).
Duration: 1 Years
Pay Rate: $110 - $120 per hour
PREFERRED SKILLS/EXPERIENCE FOR CONSULTANT CANDIDATES:
ADDITIONAL QUALIFICATIONS:
MANDATORY SKILLS/EXPERIENCE: Note: candidates who do not have the mandatory skills will not be considered.
? Perform comprehensive cybersecurity risk analysis, identifying and prioritizing risks specifically related to application security.
? Develop, socialize, and implement security strategies to address vulnerabilities in web applications, microservices, APIs, and mobile applications.
? Track and manage progress against security plans, ensuring timely remediation of identified vulnerabilities.
? Lead the security implementation in application development projects, ensuring “secure by design” practices.
? Create and maintain architecture diagrams, outlining secure communication flows, and develop both high-level and low-level security design documents.
? Troubleshoot and resolve application security issues in collaboration with internal teams and external vendors.
? Translate application compliance requirements into specific security controls, recommending compensating measures where appropriate.
? Regularly report on the organizations security posture, with a focus on application vulnerabilities, to senior management.
? Perform/coordinate application vulnerability assessments and ensure timely remediation in collaboration with the Development, IT, and Systems teams.
? Implement secure coding practices, perform static and dynamic application security testing (SAST/DAST), and support developers with secure code reviews.
? Monitor security incidents and respond to application-level threats, ensuring quick resolution of potential vulnerabilities.
? Establish and enforce secure configurations for applications and their underlying infrastructure, such as databases and APIs.
? Perform threat simulations to detect risks and recommend improvements for securing application designs, API security, identity management, and access control measures.
? Collaborate with teams to ensure continuous integration and continuous deployment (CI/CD) pipelines incorporate security controls.
MANDATORY SKILLS/EXPERIENCE: Note: candidates who do not have the mandatory skills will not be considered.