Applications Securty Engineer Information Technology (IT) - Tempe, AZ at Geebo

Applications Securty Engineer

Application Security Engineer

Looking for a candidate to conduct code reviews, penetration testing, application security frameworks, OWASP Top 10, work with application secrity tools, Java, Groovy, Ruby, Agile, test driven development. So find a application securityperson or a Java developer who has a good understanding of security and can learn app security.

Job Description

Work closely with application development and QA teams to help formulate and implement a strategy for software security that is tailored to the specific risks facing the organization, including threat modelling and applications security advisement services.

Develop and maintain a balanced application security program based on a well-defined application security framework

Conduct application security assessments/penetration tests and implement tools for dynamic/automated code reviews

Ensure application design and implementation best-practice with role-based and appropriate access standards, as well as integration with Identity and Access Management environments.

Ensure compliance with society, regulatory, and industry standards for application security.

Continuously evaluate the organization's existing application security practices, define and measure security-related activities, and demonstrating concrete improvements to the application assurance program within the organization.

Provide secure application development training to developers and provide guidance on the development of web-based training for ongoing awareness.

Conduct code reviews and penetration testing

Develop and maintain unit and integration tests designed to ensure security controls are tested on every build

Job Qualifications

5 years' experience in application development and security

Must have strong business acumen with ability to work with application development, QA and security teams.

A strong understanding of application security frameworks
Thorough knowledge of the OWASP Top 10
Must have a solid understanding of application security code reviews and penetration testing.
Practical understanding and use of commercial application security tools
Must be fluent in write technical reports based on findings.
Highly proficient with development languages including Java, Groovy, Ruby.
Strong self-starter who has the ability to operate independently.
Has solid understanding and experience with establishing application security policies across an organization.
Excellent oral/written presentation skills with ability to communicate effectively with Senior Executive leadership; proficiency in preparation of presentations, analytical reports, and documents regarding program operational status, achievement and performance.
Understanding and Passion for Agile/XP/Scrum/Kanban
Understanding of Test Driven Development built on User Stories
Understanding of Continuous Integration/Testing/Delivery
Familiarity with Metasploit, Burp Suite, Fuzzing, Gaunlt, and Jenkins is preferred.
College degree

Estimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.