Application Security Engineer (Remote in the U.S.)

2 months, 4 weeks ago
Full-time
Mid Level
Cybersecurity
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Run client SAST, DAST, and SCA tools, review findings, and provide recommendations.
  • Implement integrations for application security tools into pipelines, ticketing systems, and related workflows.
  • Collaborate with developers to provide secure design guidance and remediation strategies.
  • Manage, maintain, and operate application security tooling, including configuration, tuning, and automation.
  • Support the integration of security tools into CI/CD and development workflows.
  • Review and help remediate vulnerabilities identified through web application scanning tools.
  • Provide guidance on web application security principles and best practices.
  • Work with secure development lifecycle processes and security control design efforts.

Requirements

  • Bachelor's degree in Computer Science, Information Systems, or Information Security.
  • 4 years of progressive baccalaureate experience as a security engineer, security analyst, or related position working in Application Security.
  • 2 years of experience with IDE and CI/CD pipeline tools and processes such as Azure DevOps, Jenkins, or Bamboo.
  • 2 years of experience with Secure Development Lifecycles and remediating technical vulnerabilities identified by web application scanning tools.
  • 2 years of experience with information systems architecture, security control design, and development.
  • 2 years of experience with manual testing tools such as Burp Suite Pro.
  • 2 years of experience with SAST, DAST, and SCA application security tools such as Invicti or Checkmarx.
  • 2 years of experience integrating tools into development pipelines.
  • 2 years of experience understanding and mitigating application security vulnerabilities.
  • 2 years of experience reviewing source code written in JavaScript, Python, Java, C++, PHP, or C#.

Benefits

  • 100% remote work from within the U.S., with primarily remote work and some travel for certain roles.
  • Group medical insurance options, including a Zero Deductible PPO plan and a High Deductible Health Plan with HSA contributions.
  • Group dental insurance with GuidePoint covering 100% of employee premiums and 75% of family plan premiums.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Manager, Product Security

Tines 51-250 Construction & Engineering

Tines is seeking a Senior Manager, Product Security to lead and scale its product security program for cloud-native, AI-forward products while partnering with engineering and product leaders to manage risk and support growth.

AWS CI/CD DevSecOps Docker Kubernetes Penetration Testing Ruby Rust TypeScript
2 days, 16 hours ago

Application Security Engineer

Glean 11-50 Internet Software & Services

Glean is hiring a remote Application Security Engineer to lead vulnerability management and strengthen software supply-chain security across its Work AI platform.

AWS Burp Suite CI/CD Cybersecurity GCP Kubernetes Microservices
2 days, 17 hours ago

Lead Application Security Engineer

Remofirst 11-50 Professional Services

RemoFirst is hiring an application and cloud security engineer to secure its global Employer of Record platform, customer identity systems, infrastructure, and emerging AI initiatives across a distributed engineering organization.

AWS Django FastAPI Java Kafka Kubernetes MongoDB OpenID Connect Penetration Testing PostgreSQL Python RabbitMQ REST API SAML Secrets Management Spring Boot Terraform
2 days, 17 hours ago

Application Security Engineer II

Bugcrowd 1K-5K Internet Software & Services

Bugcrowd is hiring an Application Security Engineer to triage and validate vulnerability submissions for major clients, communicate with researchers and customers, and support incident response across diverse security programs.

Burp Suite Nmap
3 days, 17 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers