Application Security Engineer (Remote in the U.S.)

11 hours, 58 minutes ago
Full-time
Mid Level
Cybersecurity
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Run client SAST, DAST, and SCA tools, review findings, and provide recommendations.
  • Implement integrations for application security tools into pipelines, ticketing systems, and related workflows.
  • Collaborate with developers to provide secure design guidance and remediation strategies.
  • Manage, maintain, and operate application security tooling, including configuration, tuning, and automation.
  • Support the integration of security tools into CI/CD and development workflows.
  • Review and help remediate vulnerabilities identified through web application scanning tools.
  • Provide guidance on web application security principles and best practices.
  • Work with secure development lifecycle processes and security control design efforts.

Requirements

  • Bachelor's degree in Computer Science, Information Systems, or Information Security.
  • 4 years of progressive baccalaureate experience as a security engineer, security analyst, or related position working in Application Security.
  • 2 years of experience with IDE and CI/CD pipeline tools and processes such as Azure DevOps, Jenkins, or Bamboo.
  • 2 years of experience with Secure Development Lifecycles and remediating technical vulnerabilities identified by web application scanning tools.
  • 2 years of experience with information systems architecture, security control design, and development.
  • 2 years of experience with manual testing tools such as Burp Suite Pro.
  • 2 years of experience with SAST, DAST, and SCA application security tools such as Invicti or Checkmarx.
  • 2 years of experience integrating tools into development pipelines.
  • 2 years of experience understanding and mitigating application security vulnerabilities.
  • 2 years of experience reviewing source code written in JavaScript, Python, Java, C++, PHP, or C#.

Benefits

  • 100% remote work from within the U.S., with primarily remote work and some travel for certain roles.
  • Group medical insurance options, including a Zero Deductible PPO plan and a High Deductible Health Plan with HSA contributions.
  • Group dental insurance with GuidePoint covering 100% of employee premiums and 75% of family plan premiums.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Application Security Intern

Rubrik 1K-5K IT Services

Rubrik is hiring an Application Security Engineering intern to help strengthen its secure software development life cycle and support security work across products and applications.

Cybersecurity Docker Go JavaScript Kubernetes Microservices Python Scala TypeScript
21 minutes ago

Senior Product Security Engineer

Tines 51-250 Construction & Engineering

Tines is hiring a Senior Product Security Engineer in a remote U.S. role to lead product security efforts and scale security controls across an AI-forward engineering environment as the company’s product portfolio grows.

AWS CI/CD DevSecOps Docker Kubernetes Ruby Rust TypeScript
1 hour, 6 minutes ago

Product Security Engineer

ShopBack 1K-5K IT Services

ShopBack is hiring a Product Security Engineer to help secure its cloud-native, microservices, web, and mobile products across the software development lifecycle as the company scales its shopping, rewards, and payments platform.

Go LLM Microservices Node.js Python TypeScript
1 day, 4 hours ago

Principal Product Security Researcher

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into cloud-native product and CI/CD systems, helping protect hardened open source builds used by enterprise customers.

AWS GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
1 day, 12 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers