Principal Application Security Specialist
Core
Principal Application Security Specialist leading application security testing, DevSecOps, and secure SDLC integration for enterprise cloud archiving and surveillance solutions.
Role type
Principal individual contributor (Application Security & DevSecOps)
Builds
Automated security frameworks, CI/CD security controls, and novel security testing methodologies for web, API, mobile, and AI/LLM applications.
Domain
Cybersecurity (Application Security, DevSecOps, Cloud Archiving)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Application security testing, DevSecOps leadership, threat modeling, security frameworks (OWASP, MITRE, NIST), scripting (Python, Java, Bash, PowerShell), CI/CD tooling (Git, Jenkins, Docker/Kubernetes), SAST/DAST/SCA tools, vulnerability management, secure coding practices
Preferred skills
AI/LLM security expertise, offensive security/penetration testing, cross-functional influence, mentorship
Technologies
Python, Java, Bash, PowerShell, Git, Jenkins, Docker, Kubernetes, SAST, DAST, SCA
Responsibilities
Develop and own application security testing methodology and standards; lead complex security assessments and original research; drive integration of automated security controls into CI/CD pipelines; act as final technical escalation point for application security; design automated security frameworks; review and analyze vulnerability data; mentor and develop security specialists.
Seniority
Principal, hands-on IC with strategic leadership
