Application Security, Specialist
Core
Define and implement Application Security strategy and secure SDLC practices to protect client assets and data across the organization.
Role type
Application Security Specialist (DevSecOps)
Builds
Secure CI/CD pipelines, cloud-native applications, containers, and serverless platforms
Domain
Financial Services / Application Security
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Application Security, Secure SDLC, DevSecOps, CI/CD pipeline security, SAST/SCA/IAST/DAST, API Security, Container Security, Cloud Security, Vulnerability Management, Secure Coding Principles, Security Automation
Preferred skills
None stated
Technologies
SAST, SCA, IAST, DAST, CI/CD tools, Cloud platforms, Containers, Serverless
Responsibilities
Partner with development teams to establish security requirements early in the software development lifecycle; Design and implement security controls and guardrails for continuous and secure application delivery; Assess, prioritize, and drive remediation of application and infrastructure vulnerabilities; Configure, integrate, and onboard teams to application security tools across CI/CD environments; Automate security processes and controls to improve efficiency and developer adoption; Conduct security reviews, threat analysis, and risk assessments for new and existing applications; Provide secure coding guidance, technical consultation, and training to development and cloud engineering teams; Develop security metrics, reporting, and dashboards to measure program effectiveness and maturity.
Seniority
Mid-Senior, hands-on IC