Application Security Engineer in Irving

Energy Jobline
Irving, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 114K

Job location

Irving, United States of America

Tech stack

Java
API
iOS
Authentication Protocols
C++
Static Program Analysis
Computer Security
Computer Programming
DevOps
Mobile Application Software
Information Systems Security Architecture Professional
Python
Open Web Application Security
Public Key Infrastructure
X.509
Reverse Engineering
RSA (Cryptosystem)
Security Assertion Markup Language (SAML)
Scala
Software Engineering
SSL Certificate Management
Transport Layer Security
Software Security
Information Technology
Static Application Security Testing
Dynamic Application Security Testing

Job description

The Product Security Team ensures security by design product engineering and architecture. In this role as an Application Security Engineer, you will conduct security assessments for products and solutions. You will collaborate with various cross functional teams and help to create, define, and implement security controls and security tooling in conjunction with internal product development and devops teams.

Responsibilities

  • Evaluate security postures and provide recommendations for improvement and risk reduction for Mobile Platforms (IOS/Android), Al Systems, Internet of Things.

  • Support engineering and development teams in implementing, maintaining and troubleshooting application security tooling automation for SAST, DAST, MAST (OS and Android), OSS, API, etc.

  • Implement security modules, tools, and programing code snippets when needed.

  • Participate in deep dive architectural discussions of new or existing applications, software, and services.

  • Apply cryptographic primitives and protocols for authentication, authorization and data protection.

  • Recommend and manage transmission protection requirements for all environments (e.g., systems, applications, containers) such as encryption, SSL certificate management, RSA key pairs, etc.

  • Continually evaluate new threats and attacks specific to Mobile Platforms, loT, and Al Systems to identify the impact on business and help to develop and implement appropriate security controls.

Requirements

  • Work Authorization: Strictly US (USC) or Green Card (GC) holders only. No H1B, OPT, CPT, or H4-EAD visas accepted.

  • Location: Irving, Texas (Hybrid: 3 days a week in-office).

  • Pay Rate: $45.00 - $55/ hour (depending on experience).

  • Experience: 8 to 10 years of professional Application Security engineering experience., * Bachelor's degree in Computer Science or related fields

  • Eight or more years of relevant work experience.

  • Experience with mobile application security testing, mobile code analysis, vulnerabilities evaluation and remediation.

  • Experience with performing security assessment for secure deployment of large loT, mobile and/or Al systems.

  • Experience with Secure SL including use of obfuscation techniques, Reverse Engineering and Tamper Resistant software development.

  • Experience with OWASP Top 10 vulnerabilities and Cryptographic Algorithms: PKI, X.509

Public Key Certificates, authentication protocols, and transport layer security, OID, Auth, SAML.

  • Understanding of various types of Exploits, Threat Modeling, and Attack surfaces

DESIRED SKILLS:

  • Development experience in Swift, Java, Scala, Python, C/C++ or other and the ability to solve complex operational issues.

  • Mobile, loT or Al application development experience is highly desirable

  • Experience with IT Security Frameworks such as NIST, ISO27001, PCI, DSS, FedRAMP

  • One or more of the following certifications: Certified Ethical Hacker, Python Institute Certifications, C++ Institute Certifications, Mobile Application Penetration Tester (eMAPT),

ISC Certified Information Systems Security Professional (CISSP), or other Security Certification

Apply for this position