Java Developer/Programmer III

Spectraforce
Newark, NJ, United States
1 day ago
Apply on leoforce.us
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Amazon S3 Apache Tomcat Software System Penetration Testing Automation of Tests Unit Testing Cloud Computing Cloud Engineering Code Review
+57 more
Continuous Integration Data Validation Data Integration Software Debugging Gradle Monitoring of Systems IBM WebSphere MQ IntelliJ IDEA PostgreSQL Log Analysis Apache Maven Microsoft SQL Server OAuth Performance Tuning Scrum Methodology Regression Testing Openid Connect Cloud Services JSON Web Token Security Assertion Markup Language (SAML) Secure Coding Selenium Amazon Simple Notification Service (SNS) Software Engineering Systems Integration Visual Studio Online Software Vulnerability Management Transport Layer Security Enterprise Software Applications Application Enhancement Tool Cloud Platform System Postman Microsoft Power Automate Spring-boot Software Security AWS Lambda Backend Git Amazon Relational Database Service Playwright Data Management Hardware Infrastructure SQL Server Management Studio (SSMS) Functional Programming Cloudwatch Restful APIs Amazon Simple Queue Service (SQS) Splunk Software Version Control Dynatrace Devsecops Serverless Computing Database Tools and Utilities Static Application Security Testing Vulnerability Analysis Microservices Dynamic Application Security Testing

Job description

We are seeking two proactive and accountable Java Developer Consultants to join a cross-functional Agile delivery team. The immediate priority is to identify, analyze, remediate, test, and prevent application security vulnerabilities across enterprise applications and supporting components. After the security remediation work, the consultants will support ongoing Spring Boot development stories and Playwright automation stories. This includes application enhancements, API and microservice development, defect resolution, regression automation, modernization work, and production support. Practical and responsible use of Microsoft Copilot and Claude is required., * Analyze security findings and remediate vulnerabilities in Java and Spring Boot application code, third-party libraries, frameworks, Apache Tomcat, and cloud components.

  • Upgrade vulnerable dependencies and platform components; apply secure coding practices; complete impact analysis, code review, documentation, and remediation evidence.
  • Execute unit and integration testing and partner with testers on functional, regression, and security validation to protect application stability.
  • After security work, develop and deliver Spring Boot stories, including REST APIs, microservices, backend services, database integrations, defect fixes, and technical enhancements.
  • Develop and maintain Playwright automation stories to improve regression coverage, repeatability, and testing efficiency; support Selenium tests where applicable.
  • Design, develop, test, deploy, and support enterprise applications using Java, Spring Boot, SQL Server, IBM MQ, Apache Tomcat, and AWS.
  • Build and support event-driven and message-based integrations using IBM MQ, Amazon SQS, and Amazon SNS.
  • Use AWS Lambda, S3, CloudWatch, SQS, SNS, and RDS to develop, monitor, troubleshoot, and support cloud workloads.
  • Monitor application health, analyze logs and traces, identify root causes, and support incident resolution using Dynatrace, Splunk, and CloudWatch.
  • Use Git for source control and team development workflows; use IntelliJ IDEA, VS Code, Postman, WinSCP, SSMS, and pgAdmin 4 as applicable.
  • Collaborate daily with the Product Owner, Technical Lead, Business Analyst, testers, and developers during refinement, sprint planning, standups, reviews, and retrospectives.
  • Use Microsoft Copilot and Claude for approved engineering work including analysis, coding, debugging, test creation, and documentation while following security and data-handling standards.
  • Take ownership of assigned work, communicate risks and dependencies early, and drive work through testing and completion with minimal follow-up., Because security remediation is the immediate engagement priority, preference will be given to candidates with hands-on experience in several of the following areas:
  • Remediating findings from security scans, penetration testing, static application security testing, dynamic application security testing, or software composition analysis.
  • Secure coding for authentication, authorization, input validation, secrets handling, encryption, transport security, and API protection.
  • Upgrading Java, Spring Boot, third-party libraries, Tomcat, and related components to supported and secure versions.
  • OAuth 2.0, OpenID Connect, SAML 2.0, JWT, certificates, TLS/SSL, and API security controls.
  • DevSecOps practices, CI/CD security gates, security code reviews, regression testing, and remediation documentation.
  • Balancing vulnerability remediation with backward compatibility, application stability, and release risk.

Requirements

  • 5+ years of professional software development experience with strong hands-on Java and Spring Boot expertise.
  • Experience remediating application security or dependency vulnerabilities and applying secure coding practices.
  • Experience designing and supporting REST APIs, microservices, and enterprise application integrations.
  • Strong SQL Server experience, including complex query development, troubleshooting, and performance optimization.
  • Hands-on experience with IBM MQ, message-driven integration patterns, and Apache Tomcat.
  • Hands-on AWS experience with Lambda, S3, CloudWatch, SQS, SNS, and RDS.
  • Experience developing or maintaining automated tests using Playwright; Selenium experience is also valuable.
  • Experience using Dynatrace and Splunk for monitoring, log analysis, troubleshooting, or root cause analysis.
  • Experience with Git-based source control and development workflows.
  • Experience with developer and database tools such as IntelliJ IDEA, VS Code, Postman, WinSCP, SSMS, and pgAdmin 4.
  • Practical experience using Microsoft Copilot and Claude as part of software engineering delivery.
  • Experience working in Agile/Scrum teams with strong communication, collaboration, ownership, and accountability., * Experience modernizing or migrating enterprise applications from on-premises infrastructure to AWS Cloud.
  • Experience in insurance, financial services, or another regulated industry domain.
  • Knowledge of cloud-native, serverless, event-driven, and microservices architecture patterns.
  • Experience with CI/CD pipelines, observability, production support, and legacy-platform modernization.

Technology Environment:

  • Core engineering: Java, Spring Boot, REST APIs, microservices, Maven/Gradle
  • Security: Secure coding, dependency remediation, SAST/DAST/SCA, DevSecOps
  • Data & messaging: Microsoft SQL Server, IBM MQ, Amazon SQS, Amazon SNS, Amazon RDS
  • Cloud & runtime: AWS Lambda, Amazon S3, Amazon CloudWatch, Apache Tomcat
  • Automation testing: Playwright, Selenium, unit, integration, functional, regression testing
  • Monitoring & observability: Dynatrace, Splunk, AWS CloudWatch
  • Developer & database tools: Git, IntelliJ IDEA, VS Code, Postman, WinSCP, SSMS, pgAdmin 4
  • AI-assisted engineering: Microsoft Copilot and Claude (required)All the best

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on leoforce.us
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Developer experience and project variety at scale

Alexandra Petri · World Congress 2023

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all