Application Security Engineer
Core
Implement application security controls, perform vulnerability assessments and penetration testing, and automate security testing within CI/CD pipelines.
Role type
Application Security Engineer
Builds
Secure application integrations and configurations
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SAST, DAST, IAST testing, vulnerability assessment, penetration testing, secure coding practices, CI/CD pipeline automation, security incident response, OWASP framework, defensible architectures, ISO 27001, NIST standards
Preferred skills
CISSP, OSCP, AWS, Azure, GCP cloud certifications
Technologies
vulnerability scanners, code analysis tools
Responsibilities
Implement application security controls and tools for SAST, DAST, and IAST testing; Perform application vulnerability assessments and penetration testing; Collaborate with developers to remediate security issues and enforce secure coding practices; Automate security testing within CI/CD pipelines; Monitor and respond to application security threats and incidents; Maintain security documentation, policies, and compliance requirements; Support the secure integration and configuration of new applications and technologies; Assist with security awareness programs for development teams
Seniority
Mid-level, hands-on IC