Application Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+19 more
Job description
Application Security Engineer (SAST/DAST Focus)OverviewWe are seeking an Application Security Engineer to support Chevron’s secure software development initiatives This role will focus on implementing and managing SAST/DAST tooling, integrating security into the SDLC, and improving application-level risk postureKey Responsibilities* Implement, Manage, and optimize SAST and DAST tools across application environments* Integrate security testing into CI/CD pipelines (DevSecOps practices)* Perform code reviews and vulnerability assessments* Identify, triage, and remediate application vulnerabilities (OWASP Top 10)* Partner with development teams to embed secure coding practices* Support threat modeling and security design reviews* Monitor and report on application security posture and risk trends* Assis, Checkmarx, veracode, Fortify, SonarQube)o DAST tools (eg, BurpSuite, OWASP ZAP)* Solid understanding of:o OWASP Top 10 / secure coding practiceso Web application architecture (APIs
Requirements
microservices)* Experience integrating security into:o CI/CD pipelines (Azure DevOps, GitHub, Jenkins, etc)* Familiarity with:o Container security (Docker, Kubernetes)o Open-source scanning (SCA tools)* Programming/scripting knowledge (Java, Python, NET, or similar)* Experience working with developers in an agile environmentNice to Have* Cloud security exposure (Azure preferred)* Experience with IaC security scanning* Certifications (eg, CSSLP, GWAPT, Security+)
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.iic.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 121 - AI goes offline
Dev Digest 138 - Are you secure about this?