Application Security Engineer (Remote in the U.S.)

2 months, 1 week ago
Full-time
Mid Level
Cybersecurity
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Run client SAST, DAST, and SCA tools, review findings, and provide recommendations.
  • Implement integrations for application security tools into pipelines, ticketing systems, and related workflows.
  • Collaborate with developers to provide secure design guidance and remediation strategies.
  • Manage, maintain, and operate application security tooling, including configuration, tuning, and automation.
  • Support the integration of security tools into CI/CD and development workflows.
  • Review and help remediate vulnerabilities identified through web application scanning tools.
  • Provide guidance on web application security principles and best practices.
  • Work with secure development lifecycle processes and security control design efforts.

Requirements

  • Bachelor's degree in Computer Science, Information Systems, or Information Security.
  • 4 years of progressive baccalaureate experience as a security engineer, security analyst, or related position working in Application Security.
  • 2 years of experience with IDE and CI/CD pipeline tools and processes such as Azure DevOps, Jenkins, or Bamboo.
  • 2 years of experience with Secure Development Lifecycles and remediating technical vulnerabilities identified by web application scanning tools.
  • 2 years of experience with information systems architecture, security control design, and development.
  • 2 years of experience with manual testing tools such as Burp Suite Pro.
  • 2 years of experience with SAST, DAST, and SCA application security tools such as Invicti or Checkmarx.
  • 2 years of experience integrating tools into development pipelines.
  • 2 years of experience understanding and mitigating application security vulnerabilities.
  • 2 years of experience reviewing source code written in JavaScript, Python, Java, C++, PHP, or C#.

Benefits

  • 100% remote work from within the U.S., with primarily remote work and some travel for certain roles.
  • Group medical insurance options, including a Zero Deductible PPO plan and a High Deductible Health Plan with HSA contributions.
  • Group dental insurance with GuidePoint covering 100% of employee premiums and 75% of family plan premiums.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Application Security Engineer

Beyond Finance 251-1K Banks

Beyond Finance is hiring a Staff Application Security Engineer to own and advance application security across its product and cloud engineering teams.

AWS CI/CD CloudFormation Go Python React Native Ruby on Rails Secrets Management Terraform
16 hours, 8 minutes ago

Senior Application Security Engineer

Canopy 51-250 Internet Software & Services

Canopy is hiring a Senior Application Security Engineer to help secure its remote Utah-based SaaS platform for accounting firms, with a focus on hardening infrastructure, applications, observability, and the software supply chain.

AWS CI/CD Kubernetes Network Security SIEM WAF
16 hours, 53 minutes ago

Senior Security Engineer - Product Security

Ondo Finance 11-50 Diversified Financial Services

Ondo Finance is hiring a Senior Security Engineer for Product Security to secure its tokenized real-world asset platform by partnering with product engineering on threat modeling, secure reviews, and security-by-default delivery.

CI/CD Encryption Go JavaScript OAuth OpenID Connect Penetration Testing Python Rust Terraform TypeScript
2 days, 15 hours ago

Senior Application Security Engineer

Counterpart Health 51-200 hospital & health care

Counterpart Health is hiring a Senior Application Security Engineer to secure its AI-enabled primary care platform, Counterpart Assistant, by finding and fixing vulnerabilities that affect clinicians during live patient visits.

Penetration Testing
2 days, 16 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers