Security Engineer (AppSec)

SYSLOGIC INC
Brookfield, WI, United States
about 2 months ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) .NET Framework Software Applications Software System Penetration Testing Microsoft Azure C Sharp (Programming Language) C++ (Programming Language) Cloud Computing Security Cyber Security Python (Programming Language) Open Web Application Security Secure Coding
+10 more
Web Application Security Software Engineering .NET Core Sonatype Software Security Information Technology Burpsuite Qualys Vulnerability Analysis Programming Languages

Job description

SysLogic, Inc. is looking for a talented and experienced Security Engineer (Software Focus) to join our team. As a Security Engineer (Software Focus) at SysLogic, you will be responsible for identifying and mitigating potential security vulnerabilities in for our managed services clients. You will work closely with development teams to ensure that our applications are secure from external threats and meet industry security standards.

Responsibilities

  • Conduct regular security assessments and penetration testing of software applications and products.

  • Identify and prioritize potential security vulnerabilities and develop plans for remediation.

  • Collaborate with development team to implement secure coding practices and ensure security best practices are followed.

  • Stay up to date with the latest security vulnerabilities, trends, and best practices.

  • Participate in security architecture design and application design reviews.

  • Provide training and mentorship to Developers on coding practices to remediate identified vulnerabilities.

  • Be an informed Security partner by presenting past experience working as a hands-on software developer. Ideally utilizing the Microsoft Development stack.

  • Actively participate in the deep review of pen test and vulnerability assessments both in person with clients and remotely.

  • As needed provide training on secured development principals in both remote and in person settings.

Requirements

  • Bachelor’s degree in computer science, related field or equivalent experience.

  • 5+ years of experience in application security or related role.

  • Strong knowledge of web application security vulnerabilities and best practices.

  • Direct knowledge of pen testing processes and tools, with responsibility for remediating vulnerabilities. (Such as Qualys, BurpSuite, Snyk, SCA)

  • Experience with security assessment tools and techniques.

  • A minimum of two years working as a Full Lifecycle Developer creating enterprise-based applications, preferably using the Microsoft Development stack (.NET, .NET Core, Azure).

  • Knowledge of secure coding practices and familiarity with common programming languages (e.g., C#, Java, C++, Python).

  • Familiarity with security frameworks and standards (e.g. OWASP, NIST).

  • Excellent problem-solving and analytical skills.

  • Strong oral and written communication and collaboration skills.

  • Experience working with embedded systems or device controls is a plus.

  • Certifications a plus, such as: Certified Ethical Hacker, Certified Information Security System Professional, Certified Cloud Security Professional.

  • Ability to travel 4-6 times per year with no more than 20 days away from home in a calendar year.

Benefits & conditions

  • Health Care Plan (Medical, Dental & Vision)

  • Retirement Plan (401k)

  • Life Insurance (Basic, Voluntary & AD&D)

  • Paid Time Off (Vacation, Sick & Public Holidays)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:37 min

Executing verified publishing workflows on Sonatype Maven Central

Johan Hutting Johan Hutting · World Congress 2024

3:44 min

Integrating static security scanning in the build phase

Milecia Mcgregor · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all