Senior Application Security Engineer – Secure Code Scanning Implementation
Core
Lead the implementation and onboarding of Secure Code Scanning platforms across the software development lifecycle.
Role type
Senior IC application security engineer (secure code scanning)
Builds
Automated security scanning and policy enforcement integrated into CI/CD pipelines
Domain
Software development lifecycle + DevSecOps
Required skills
Secure code scanning platforms (Snyk, Fortify, Checkmarx, Veracode), CI/CD pipeline integration, vulnerability management, SAST, DevSecOps practices, secure coding standards
Preferred skills
Experience with GitHub and GitLab integrations, risk prioritization, SLA definition, mentoring development teams
Technologies
Snyk, Fortify, Checkmarx, Veracode, GitHub, GitLab
Responsibilities
Design and implement integrations with GitHub, GitLab and CI/CD pipelines; Establish vulnerability management processes including triage and remediation tracking; Provide hands-on support during implementation and post-go-live stabilization; Develop technical standards and governance processes for platform adoption
Seniority
Senior, hands-on IC