Application Security Engineer (Remote in the U.S.)

3 weeks, 2 days ago
Full-time
Mid Level
Cybersecurity
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Run client SAST, DAST, and SCA tools, review findings, and provide recommendations.
  • Implement integrations for application security tools into pipelines, ticketing systems, and related workflows.
  • Collaborate with developers to provide secure design guidance and remediation strategies.
  • Manage, maintain, and operate application security tooling, including configuration, tuning, and automation.
  • Support the integration of security tools into CI/CD and development workflows.
  • Review and help remediate vulnerabilities identified through web application scanning tools.
  • Provide guidance on web application security principles and best practices.
  • Work with secure development lifecycle processes and security control design efforts.

Requirements

  • Bachelor's degree in Computer Science, Information Systems, or Information Security.
  • 4 years of progressive baccalaureate experience as a security engineer, security analyst, or related position working in Application Security.
  • 2 years of experience with IDE and CI/CD pipeline tools and processes such as Azure DevOps, Jenkins, or Bamboo.
  • 2 years of experience with Secure Development Lifecycles and remediating technical vulnerabilities identified by web application scanning tools.
  • 2 years of experience with information systems architecture, security control design, and development.
  • 2 years of experience with manual testing tools such as Burp Suite Pro.
  • 2 years of experience with SAST, DAST, and SCA application security tools such as Invicti or Checkmarx.
  • 2 years of experience integrating tools into development pipelines.
  • 2 years of experience understanding and mitigating application security vulnerabilities.
  • 2 years of experience reviewing source code written in JavaScript, Python, Java, C++, PHP, or C#.

Benefits

  • 100% remote work from within the U.S., with primarily remote work and some travel for certain roles.
  • Group medical insurance options, including a Zero Deductible PPO plan and a High Deductible Health Plan with HSA contributions.
  • Group dental insurance with GuidePoint covering 100% of employee premiums and 75% of family plan premiums.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Configuration Engineer, Product AppSec

Veeam Software 1K-5K Internet Software & Services

Veeam is hiring a Senior Configuration Engineer to lead enterprise release management and delivery automation across cloud-native, SaaS, and AI product environments.

Ansible Azure Bash CI/CD DevSecOps Docker GitOps Jenkins Kubernetes PowerShell Python Secrets Management Terraform
15 hours, 5 minutes ago

Senior Cyber-Security Operations Analyst, Product AppSec

Veeam Software 1K-5K Internet Software & Services

Veeam is hiring a Senior Cyber Security Operations Analyst to help design and scale secure Azure-based development and QA environments while improving CI/CD delivery and integrating security across the software lifecycle.

Ansible AWS Azure Bash CI/CD DevSecOps Docker GCP Git GitHub Actions Jenkins Kubernetes PowerShell Python Secrets Management Terraform
15 hours, 35 minutes ago

Security Engineer 1, Application Security - Remote US

Trail of Bits 51-250 Internet Software & Services

Trail of Bits is hiring a Security Engineer 1 to support software assurance work by assessing client software, finding vulnerabilities, and delivering actionable security findings for engineering teams.

Android Ansible AWS Azure C C++ Cybersecurity GCP GitHub Go Helm iOS JavaScript Kubernetes Python Rust Terraform TypeScript
15 hours, 50 minutes ago

Cyber-Security Operations Analyst III, Product AppSec

Veeam Software 1K-5K Internet Software & Services

Veeam is hiring a Cyber-Security Operations Analyst to support and secure CI/CD and DevSecOps infrastructure across cloud and platform engineering environments for enterprise, cloud-native, and AI-enabled products.

Ansible AWS Azure Bash CI/CD CloudFormation DevSecOps DNS Docker GCP Git GitHub Actions GitLab CI Helm Jenkins Kubernetes Linux PowerShell Pulumi Python SIEM TCP/IP Terraform
15 hours, 50 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers