Security Analyst - Security, Testing, Analysis, Firewall, Waf, Ips

Security Analyst - Security, Testing, Analysis, Firewall, Waf, Ips
Company:

Software Management Consultants, Inc.


Place:

Florida


Area:

Programmer

Security Analyst - Security, Testing, Analysis, Firewall, Waf, Ips

Details of the offer

Job Description:

Application Security Engineer
The Application Security Engineer will serve as the Application Security lead and work with application development and infrastructure teams to ensure applications are designed, coded, and implemented securely.
Duties and responsibilities
The Engineer will act as a subject matter expert on design review, code review, and dynamic analysis and drive the improvement of policies, standards, and other supporting documentation. This is a hands-on technical position that you will find you collaborating with multiple groups across the organization. Strong communication skills are needed to explain complex application security topics to a wide variety of technical levels.
Experience as a developer is preferred, but not required.
Managing end to end ownership of application security
Conduct design review, code review, and dynamic analysis of applications
Act as application security champion and educate others within the organization on secure coding best practices
Identify, communicate, and drive the resolution of vulnerabilities
Serve as a subject matter expert for application development and infrastructure teams
Communicate effectively with technical levels
Perform security assessments of web and mobile applications
Help customers understand and apply information security concepts, processes, and technologies
Maintain current knowledge of information security concepts, technologies, and practices
Qualifications:
An individual must be able to perform each Essential Function of the job satisfactorily. Reasonable accommodations may be made to enable individuals with disabilities, who are otherwise qualified, to perform the Essential Functions.

5+ years general information security experience
2+ years application security experience
Extensive experience in web application security
Experience applying knowledge of application security throughout the SDLC
Experience conducting source code reviews
Hands-on experience with integrating security into DevOps pipelines
Experience with static application security testing tools such as Veracode, Coverity, Checkmarx
Experience with dynamic analysis tools such as WebInspect, BurpSuite, OWASP ZAP and AppScan
Familiarity with key network security solutions such as firewalls, WAF and IPS
Understanding and awareness of Agile methodologies
Hands on experience with web services security penetration testing preferred
Knowledge of cloud environments and technologies including Azure/AWS
Education:
Bachelor s degree or equivalent work experience and training
License / Certification Preferred:
CISSP, SANS GIAC, CISA, CISM
Physical Requirements:
Physical Requirements for this position include being able to operate a computer for up to eight hours per workday.
Required Skills: AGILE; WebInspect, BurpSuite, OWASP ZAP, AppScan; AWS, Azure; CISSP, CISM, CISA.

Don't hesitate! Submit your resume today.

SMCI is an EEO employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, national origin, disability, age, genetic information, marital status, military, and veteran status. Members of minority groups, Vietnam Era Veterans and individuals with mental or physical disabilities are encouraged to contact us regarding employment opportunities. In addition, in order to support the provision of business to minority-owned and Women-owned businesses (MWBE), such MWBE are encouraged to contact us regarding subcontracting business opportunities with our firm.

(No third parties, please)
(H1 sponsorship currently unavailable)

Requirements

Apigee lead platform engineer

Location: Charlotte, NC Description: Our client is currently seeking an Apigee Lead Platform Engineer This job will have the following responsibilities...


From The Judge Group, Inc. - North Carolina

Published a month ago

Mobile developer

Mobile Developer - Multiple Hires!! This Jobot Job is hosted by: Chris Gorman Are you a fit? Easy Apply now by clicking the "Apply Now" button and sending us...


From Jobot - Ohio

Published a month ago

Associate mechanical engineer

Location: Mahwah, NJ Description: Our client is currently seeking a Associate Mechanical Engineer for a 6 month + contract. Description/Comment: Support the...


From The Judge Group, Inc. - New Jersey

Published a month ago

Software developer

PHP MySQL Developer This Jobot Job is hosted by: Mark Schluter Are you a fit? Easy Apply now by clicking the "Apply Now" button and sending us your resume. A...


From Jobot - Minnesota

Published a month ago