Application Security Engineer-68257

Hitachi, Ltd.
Dallas, TX, United States
about 1 month ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Kubernetes Security Java (Programming Language) JavaScript (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Microsoft Azure Burp Suite C Sharp (Programming Language) Cloud Computing Security Cloud Engineering Computer Programming
+28 more
Continuous Integration Cursor (Graphical User Interface Elements) Github Python (Programming Language) Open Web Application Security Windows PowerShell Systems Development Life Cycle Fortify (Software) Secure Coding Software Engineering SonarQube Software Vulnerability Management Scripting Spring Cloud GitHub Copilot Large Language Models Software Security Veracode Cloudformation Gitlab-ci Tenable Nessus Bicep Checkmarx Terraform Devsecops Jenkins Static Application Security Testing Dynamic Application Security Testing

Job description

  • Perform application security assessments for web, API, cloud-native, and AI-enabled applications.
  • Conduct secure code reviews and support vulnerability remediation efforts.
  • Integrate security controls into CI/CD pipelines and DevSecOps workflows.
  • Analyze findings from SAST, DAST, SCA, container security, and secret scanning tools.
  • Participate in threat modeling and application security design reviews.
  • Provide guidance on secure coding practices, OWASP Top 10, and OWASP API Security Top 10.
  • Collaborate with development teams to improve security posture and adopt secure-by-design principles.

Requirements

Hitachi Digital Services is seeking an Application Security Engineer to support application security, DevSecOps, secure software development, and AI-enabled security initiatives. The ideal candidate should have hands-on experience with application security testing, CI/CD security, vulnerability management, secure code reviews, and OWASP-based security practices., * Minimum 2 years of experience in Application Security, DevSecOps, Secure Development, or Software Security.

  • Strong understanding of:
  • OWASP Top 10
  • Secure SDLC
  • Threat Modeling
  • Secure Code Review
  • API Security Fundamentals
  • Familiarity with CI/CD platforms such as:
  • Azure DevOps
  • GitHub Actions
  • Jenkins
  • GitLab CI/CD
  • Hands-on experience with one or more:
  • SAST: Checkmarx, Veracode, Fortify, SonarQube
  • DAST: Burp Suite, OWASP ZAP
  • SCA: Snyk, Mend, Black Duck
  • Knowledge of containers and Kubernetes security fundamentals.
  • Basic scripting/programming skills (Python, PowerShell, JavaScript, Java, C#, etc.).

Preferred Qualifications

  • Experience with Azure and/or AWS cloud environments.
  • Knowledge of DevSecOps automation and Infrastructure-as-Code security (Terraform, Bicep, ARM, CloudFormation).
  • Experience securing containerized and cloud-native applications.
  • Familiarity with AI-assisted development tools (GitHub Copilot, Amazon Q, Cursor, etc.).
  • Understanding of AI/LLM security concepts, including prompt injection, sensitive data exposure, model misuse, and OWASP Top 10 for LLM Applications.
  • Experience with vulnerability management and application security governance programs.

Preferred Certifications

  • Security+
  • SSCP
  • CySA+
  • CEH
  • CSSLP
  • AZ-500
  • AWS Certified Security - Specialty
  • Relevant Application Security, DevSecOps, or Cloud Security certifications

About the company

We’re a global, team of innovators. Together, we harness engineering excellence and passion to co-create meaningful solutions to complex challenges. We turn organizations into data-driven leaders that can make a positive impact on their industries and society. If you believe that innovation can bring a better tomorrow closer to today, this is the place for you. Fostering innovation through diverse perspectives

Hitachi is a global company operating across a wide range of industries and regions. One of the things that sets Hitachi apart is the diversity of our business and people, which drives our innovation and growth.

We are committed to building an inclusive culture based on mutual respect and merit-based systems. We believe that when people feel valued, heard, and safe to express themselves, they do their best work. How we look after you

We help take care of your today and tomorrow with industry-leading benefits, support, and services that look after your holistic health and wellbeing. We’re also champions of life balance and offer flexible arrangements that work for you (role and location dependent). We’re always looking for new ways of working that bring out our best, which leads to unexpected ideas. So here, you’ll experience a sense of belonging, and discover autonomy, freedom, and ownership as you work alongside talented people you enjoy sharing knowledge with.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:22 min

Addressing the shortage of application security specialists

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

1:02 min

Applying an ETL methodology to infrastructure configuration management

Axel Barbier · World Congress 2023

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

57 sec

Extracting API schemas automatically during continuous integration builds

Axel Barbier · World Congress 2023

4:09 min

Selecting infrastructure tools and determining proper abstraction layers

Alayshia Knighten Alayshia Knighten · World Congress 2024

Videos

See all

Related articles

See all