Senior Security Engineer

at  Epam Systems

Česko, Jihozápad, Czech -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate29 Jan, 2025Not Specified30 Oct, 2024N/ACode,Javascript,Java,Programming Languages,PythonNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

We are looking for a Security SAST Engineer with expertise in static application security testing, especially using GitHub CodeQL, to join our security team.
This role involves analyzing Java libraries and client projects to uncover security vulnerabilities and potential risks in the code. You’ll also be developing and maintaining CodeQL queries to enhance SAST coverage, as well as conducting false-positive/false-negative analyses to ensure accuracy in SAST results.

REQUIREMENTS

  • Experience with SAST tools (preferably GitHub CodeQL) and a solid understanding of SAST workflows
  • Basic proficiency in Java and ability to read and interpret code across various programming languages
  • Experience with GitHub Actions and GitHub Advanced Security (GHAS) is a plus
  • Knowledge in Python, JavaScript, and C# is an advantage
  • Strong attention to detail and problem-solving skills for precise query writing and code analysis

Responsibilities:

  • Conduct security analysis on Java libraries and SAP projects to identify vulnerabilities or unsafe code patterns
  • Develop, test, and maintain custom CodeQL queries to improve SAST coverage and effectiveness
  • Manage and update existing CodeQL queries to align with project needs and security standards
  • Perform in-depth false-positive/false-negative analyses to refine SAST accuracy and reduce deviations in CodeQL results


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Application Programming / Maintenance

Software Engineering

Graduate

Proficient

1

Česko, Czech