Security Application Engineer---------------Need GC and USC
Core
Security Application tester responsible for testing enterprise applications (internal business software) for security compliance and risk assessments.
Role type
Security Application Engineer (Application Security Tester)
Builds
Security compliance for internal enterprise applications (web services, line of business, mobile, cloud)
Domain
Information Security / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
IBM App Scan, SOAP UI, BURP Suite, Kali Linux, static and dynamic vulnerability identification, OWASP Top 10 remediation, SDLC/Waterfall/RUP methodologies, security policy lifecycle management
Preferred skills
Experience with Enterprise Applications, Information Security, manual code reviews
Technologies
IBM App Scan, SOAP UI, BURP Suite, Kali Linux
Responsibilities
Perform security, compliance, and risk assessments on projects throughout project lifecycle; Support information security review of new technologies, designs, and remediation planning; Investigate and identify security needs and recommend plans/resolutions; Maintain visibility inside and outside of info security by interfacing with various groups; Support info security policy lifecycle including intake, creation, review, approval, implementation, publishing, communication & maintenance; Experience with static and dynamic vulnerability identification using industry leading scanning tools and manual code reviews
Seniority
Mid-level, hands-on IC