Software Security Engineer

Everforth Apex
United States
1 day ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$104,000.0 - $145,600.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) JavaScript (Programming Language) Spring Security Amazon Web Services Apache Tomcat Software System Penetration Testing Microsoft Azure Burp Suite Cloud Computing Configuration Management Cyber Security Data Integrity
+28 more
Linux DevOps Identity and Access Management Information Systems Security Architecture Professional Python (Programming Language) Network Security Networking Basics Systems Development Life Cycle Salesforce.Com Secure Coding Software Engineering TCP/IP Web Applications Pega Data Logging Google Cloud ReactJS Spring-boot Software Security Technical Debt Information Technology Web Technologies Restful APIs Dynatrace Static Application Security Testing Vulnerability Analysis Programming Languages Dynamic Application Security Testing

Job description

This position is responsible for ensuring the security of software products throughout the development lifecycle. The engineer will partner with product, software development, architecture, DevOps, and cybersecurity teams to integrate security tools and practices into development processes while ensuring compliance with industry standards and regulations., * Perform security plan reviews and secure code reviews for flagship services, products, and partner applications.

  • Guide development teams in triaging and remediating findings from SAST, DAST, SCA, bug bounty programs, and vulnerability assessments.
  • Develop automation scripts and tools to help identify and remediate security vulnerabilities.
  • Serve as a security advocate within development teams and promote secure software development practices.
  • Collaborate with software architects, developers, and DevOps teams to integrate security throughout the SDLC and CI/CD pipelines.
  • Provide guidance on secure architecture, API security, IAM, logging, encryption, data protection, and secure coding practices across Azure, Google Cloud Platform, and AWS environments.
  • Define and maintain security best practices based on current threats and vulnerabilities.
  • Ensure access controls, data encryption, and data anonymization requirements are followed.
  • Partner with incident response teams during security incidents and incorporate lessons learned into product and system hardening.
  • Work with engineering teams to ensure security vulnerabilities are addressed within established SLAs.
  • Support software supply-chain security, SBOM requirements, technical debt, and upgrade planning.
  • Maintain security requirements, test plans, and other cybersecurity documentation.
  • Support cybersecurity compliance activities, risk assessments, and related security requirements.
  • Communicate complex technical risks clearly to both technical and business stakeholders.

Requirements

  • Cybersecurity / Application Security
  • Software Development and Secure SDLC
  • Scripting and automation
  • Web applications and web technologies
  • TCP/IP and network fundamentals
  • Software development lifecycle
  • Troubleshooting and problem solving
  • Data integrity and data modeling
  • Security vulnerability remediation
  • Experience working with developers and DevOps teams
  • Experience with at least two programming languages, or advanced proficiency in one
  • Strong communication and analytical skills

Preferred Skills

Experience with Java, JavaScript, Python, Spring Security, Spring Boot, Linux, React, REST/API security, IAM, cloud computing, Azure, Google Cloud Platform, AWS, Burp Suite, Dynatrace, Salesforce, Pega, Apache Tomcat, penetration testing, network security, risk management, ISO 27001, configuration management, and security compliance., * Engineer 3 level

  • 6+ years of IT experience
  • 4+ years of software development experience
  • Practical experience in two coding languages or advanced practical experience in one
  • Experience with application security, cybersecurity, or secure software development preferred
  • Experience supporting cybersecurity compliance activities is a plus
  • CISSP, CISA, CISM, or similar certifications are highly valued

Education

  • Bachelor’s degree required
  • Master’s degree preferred

Ideal Candidate

The ideal candidate will have broad experience across software development, cybersecurity, cloud, DevOps, and IT. This role is well suited for a technical “jack of all trades” who can understand development and security while working closely with engineering teams. The candidate should be comfortable translating security risks into practical solutions, helping developers remediate vulnerabilities, automating security processes, and supporting cybersecurity compliance activities.

About the company

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.

Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all