Application Security Engineer Job at TEKsystems, Rochester, NY

VlF0WVowbjcxa3hNVzAvOEpIT0I2enli
  • TEKsystems
  • Rochester, NY

Job Description

Job Description

Job Description

3484973

** U.S. Citizen and GC Holders **

 

Top Three Skills:

1) Applications Security - candidate must have 5+ years of experience working with applications security. Must be familiar with the concepts required to build secure applications. Must be somewhat familiar with application development and be able to participate in technical conversations with developers.


2)SAST - Candidate must have 3+ years of experience with static application security testing. Implementing a tool called checkmarx to do this testing. Ideally the candidate will have worked with Checkmarx.


3) Development - Candidate must have 5+ years experience as a mid level developer. Must understand coding and how to read and write it. This person will be working with developers to analyze their code and teach them secure coding practices.


4) Communication - This person will be working with developers to help them make the required changes to their code. They will help train developers, and QA personnel to the appropriate level of software security knowledge to perform their responsibilities 

Job Description: 

This person will be responsible for scanning code with Checkmarx and analyzing the alerts that pop up. They will then need to investigate to see if those alerts are actual areas for concern or if they are just false positives. They will then take the areas of concern back to the development teams and teach them how to make the required changes.

Hands-on role partnering with application development to strengthen application security best practices within the agile SDLC. Review security findings within existing code to identify vulnerabilities and provide recommendations to mitigate the risk. Ensures application security controls in place are adequate or identify those that require improvement. Train developers in secure coding best practices, security testing tools and techniques.
• Collaborate with application development to address security risks and provide mitigation recommendations to align application security best practices within the agile SDLC, based on OWASP Top 10.
• Creation and refinement of rules for SAST and DAST security tools.
• Capability to analyze multiple instances of vulnerability patterns that can be traced to single root causes to eliminate existing risks within software applications.
• Collaborate with Penetration Testers to identify pervasive issues within an application or common trends throughout multiple applications.
• Validation of security controls to adhere with industry best practice and compliance requirements, including OWASP Top 10 and OWASP Application Security Verification Standard.
• Develop and coordinate the testing and deployment of rules for web application firewalls.
• Acts as an application security resource throughout the company, training developers on security tools and techniques.
• Bachelor's degree in Information Security, Software Development or another related technical discipline.
• 5 years of experience in Information Security, Cyber Security is preferred.
• 5 years of experience in object oriented programming languages: C#, Java, or Javascript. Knowledge of back-end frameworks such as Spring, .NET or Node, as well as familiarity with modern front-end frameworks such as Angular or React is preferred. 

Job Tags

Similar Jobs

North Kern State Prison

Jewish Chaplain Job at North Kern State Prison

 ...Job Description and Duties Under the direction of the Community Resource Manager (CRM) D.O.C., the Jewish Chaplain provides religious services. The Chaplain interviews and counsels incarcerated people (IP) on ethical and moral problems and spiritual matters; prepares... 

Restaurant Technologies

Delivery Service Driver Job at Restaurant Technologies

 ...Delivery Service Driver I Location: The RT Depot is located in Sharonville, OH. Schedules: 4/10s, Wednesday - Saturday, 8:00 PM - 6:30 AM, 1 overnight, hotel stay optional. Compensation: $26.00 per hour + Shift Differential + Quarterly Safety Bonus. Shift... 

GOODWILL IND OF THE CHESAPEAKE INC

Family Advocate Case Manager Job at GOODWILL IND OF THE CHESAPEAKE INC

 ...Job Description Job Description Family Advocate Case Manager Full-Time JOB SUMMARY: The family advocate creates, provides, and coordinates services and activities with families and communities that foster strength, healthy living, and overall well-being. Staff... 

State of New Mexico

Chaplain (NMCD #16901) Job at State of New Mexico

 ...community outside the institution Visits living, segregation mental health and infirmary units as well as inmates in community hospitals Manages chapel, staff contact and consultation Conducts orientation and continuous training of volunteers Who are... 

Vohra Wound Physicians - St. Louis, MO - Vohra Wound Physici...

Wound Care - Physician Job at Vohra Wound Physicians - St. Louis, MO - Vohra Wound Physici...

 ...Full time work: Monday - Friday (7am-4pm) or part time available. No call / No weekend clinical responsibilities. Physicians...  ...wound care fellowship W2 employment contract (No work visa sponsorship is available) Benefits: Full health and...