Exposure Intelligence Analyst – Applications & APIs (OWASP / SAST-DAST / Auth)
Core
Translate application and API security findings into exposure intelligence and exploitability-based prioritization to reduce exploitable attack paths.
Role type
Senior IC application security analyst (API/AppSec SME)
Builds
Prioritized remediation guidance for web applications, APIs, and authentication flows
Domain
Cybersecurity, Application Security, API Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security, API security, Web application security, Authentication, Vulnerability triage, Secure SDLC, Attack path analysis, Remediation guidance
Preferred skills
SAST/DAST tools, OAuth/OIDC patterns, API gateways, Microservices architecture
Technologies
OWASP, SAST, DAST, OAuth, OIDC
Responsibilities
Identify attack paths involving auth flaws and insecure APIs; Produce clear remediation guidance and partner with app owners; Identify systemic patterns like broken auth and injection paths; Translate technical findings into business risk and engineering fixes
Seniority
Senior, hands-on IC