Application Security Consultant

Directdefense, Inc.
United States
15 days ago
Apply on www.workingnomads.com
Prepare application

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$145,600.0 - $187,200.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Software System Penetration Testing Application Testing User Authentication Burp Suite Code Review Cyber Security DevOps Open Web Application Security Software Engineering Software Quality Assurance (SQA) Web Applications
+4 more
Software Security GWAPT Information Technology Vulnerability Analysis

Job description

  • Conduct thorough analysis to identify and exploit vulnerabilities in customer applications.
  • Collaborate with development teams to creatively remediate identified vulnerabilities and enhance application security.
  • Perform dynamic testing and static code reviews to identify security vulnerabilities and weaknesses.
  • Utilize industry-leading tools, with a focus on application testing workspaces such as Burp Suite.
  • Stay abreast of the latest developments in application security, tools, and methodologies such as OWASP ASVS, We aim to secure organizations across all industries against advanced threats and attacks in today’s world. Partnering with organizations, we provide unmatched information security services designed to improve your overall security posture, close gaps, and continuously track vulnerabilities through ongoing education and support.

Requirements

Are you passionate about application security and ready to make an immediate impact in a contract role? We are seeking a motivated Application Security Consultant with experience in software development, DevOps, or software quality assurance-or a strong foundation in application security. In this role, you will assess customer applications, identify and validate vulnerabilities, leverage innovative security tools, and recommend practical remediation strategies., * 1-3 years of hands-on experience in network/infrastructure security and penetration testing.

  • Bachelor’s degree in Computer Science, Engineering, Math, or a related field (or equivalent hands-on experience, classroom project work, or internship).
  • Strong understanding of application security principles and common vulnerabilities.
  • Experience in performing dynamic and static code reviews.
  • Familiarity with vulnerability scanning tools, specifically Burp Suite.
  • Excellent written and verbal communication skills, with the ability to convey complex security topics clearly and concisely to diverse audiences.
  • Experience in automated and manual application testing is a big plus. *

Preferred Skills:

  • Certifications such as OSCP, BSCP, OSWE, GWAPT or related offensive security certifications are a strong plus.
  • Knowledge of common web application vulnerabilities and exploitation techniques.
  • Understanding of cryptography, authentication, and authorization mechanisms.
  • Excellent problem-solving skills and a proactive approach to addressing security concerns.
  • Effective communication and collaboration skills to work with cross-functional teams.
  • Experience with automated and manual application testing is a significant plus.
  • AWS experience is a big plus.

About the company

Since coming together in 2011 to form DirectDefense, our team has been committed to offering Cybersecurity defense strategies that are unmatched in the industry. Whether we are performing assessments of networks, platforms, and applications or applying managed services to improve your organization’s security posture, we are focused on providing world-class services that don’t just work-they work for you.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.workingnomads.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:22 min

Addressing the shortage of application security specialists

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

4:36 min

Exploiting e-commerce basket identifiers with Burp Suite

Anna Bacher · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all