Application Security Engineer (Remote in the U.S.)

1 month, 2 weeks ago
Full-time
Mid Level
Cybersecurity
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Run client SAST, DAST, and SCA tools, review findings, and provide recommendations.
  • Implement integrations for application security tools into pipelines, ticketing systems, and related workflows.
  • Collaborate with developers to provide secure design guidance and remediation strategies.
  • Manage, maintain, and operate application security tooling, including configuration, tuning, and automation.
  • Support the integration of security tools into CI/CD and development workflows.
  • Review and help remediate vulnerabilities identified through web application scanning tools.
  • Provide guidance on web application security principles and best practices.
  • Work with secure development lifecycle processes and security control design efforts.

Requirements

  • Bachelor's degree in Computer Science, Information Systems, or Information Security.
  • 4 years of progressive baccalaureate experience as a security engineer, security analyst, or related position working in Application Security.
  • 2 years of experience with IDE and CI/CD pipeline tools and processes such as Azure DevOps, Jenkins, or Bamboo.
  • 2 years of experience with Secure Development Lifecycles and remediating technical vulnerabilities identified by web application scanning tools.
  • 2 years of experience with information systems architecture, security control design, and development.
  • 2 years of experience with manual testing tools such as Burp Suite Pro.
  • 2 years of experience with SAST, DAST, and SCA application security tools such as Invicti or Checkmarx.
  • 2 years of experience integrating tools into development pipelines.
  • 2 years of experience understanding and mitigating application security vulnerabilities.
  • 2 years of experience reviewing source code written in JavaScript, Python, Java, C++, PHP, or C#.

Benefits

  • 100% remote work from within the U.S., with primarily remote work and some travel for certain roles.
  • Group medical insurance options, including a Zero Deductible PPO plan and a High Deductible Health Plan with HSA contributions.
  • Group dental insurance with GuidePoint covering 100% of employee premiums and 75% of family plan premiums.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

DevSecOps

Cato Networks 251-1K Diversified Telecommunication Services

Cato Networks is hiring an Application Security Engineer (DevSecOps) to embed security across its cloud-based software development lifecycle and help R&D teams deliver secure applications at scale.

Agile AWS CI/CD DevSecOps Docker Go Java Kubernetes Microservices Network Security Python Terraform
1 day, 12 hours ago

Manager, Product Research

Huntress 251-1K Professional Services

Huntress is hiring a remote US Product Research Manager to lead cybersecurity research efforts that improve threat detection and prevention for customers.

Cybersecurity
4 days, 14 hours ago

Lead Application Security Engineer

Zeta Global 1K-5K Media

Zeta Global is hiring a Lead Application Security Engineer to strengthen application and platform security across its AI-powered marketing platforms through automated, AI-native security practices and cross-functional security engineering.

AWS Azure Burp Suite CI/CD Cybersecurity DevSecOps Django Docker FastAPI GCP JWT Kubernetes Microservices Node.js OAuth OpenID Connect React SonarQube
5 days, 12 hours ago

Principal Security Architect (Product Security)

Anaplan 1K-5K Internet Software & Services

Anaplan is hiring a Senior Security Architecture IC to define and drive secure-by-design architecture across its enterprise planning platform and AI products.

Encryption Machine Learning OWASP
1 week, 1 day ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers