Application Security Engineer
Core
Build and support remediation of security vulnerabilities, specifically focusing on secrets remediation in source code repositories and migrating hardcoded secrets to vaults.
Role type
Application Security Engineer (Secrets Remediation)
Builds
Internal reusable libraries and utilities for secrets remediation and secure software development lifecycle gates.
Domain
Cybersecurity / Application Security / Secrets Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application development (Java/Python/C#), Backend systems design, Software secrets management lifecycle, Secure SDLC, SCA/SAST/DAST/Secrets scans, Security assessment frameworks
Preferred skills
API credentials management, SDLC tools (IDE, GitHub, Snyk, GitGuardian), Security tool development with scripts/utilities
Technologies
Java, Python, C#, GitHub, Snyk, GitGuardian, AKV, Hashicorp
Responsibilities
Drive secrets remediation program initiatives, Build internal reusable libraries for secrets remediation, Evaluate and design solutions to migrate hardcoded secrets to vaults, Ensure newly built codes pass application security gates, Develop utilities to resolve hardcoded secrets in configuration files, Participate in project meetings for information gathering and solution design
Seniority
Mid-Senior, hands-on IC