Application Security Engineer

Open Systems Inc.
New York, NY, United States
12 days ago
Apply on www.opensystemstech.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$150,000.0 - $200,000.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) JavaScript (Programming Language) Cyber Security Computer Engineering Information Management Python (Programming Language) Open Web Application Security Software Vulnerability Management Software Security Information Technology

Job description

  • Perform Application Security scans (e.g. DAST and SCA) on applications and APIs to identify security vulnerabilities and weaknesses
  • Triage security findings and collaborate with development teams to prioritize and remediate identified vulnerabilities
  • Drive threat modelling as a standard part of the SDLC, and develop and maintain threat models for critical applications, identifying potential security risks and proposing mitigations
  • Drive the Security Champions program, and define and promote secure coding practices, patterns, and standards across development teams
  • Conduct security reviews and provide guidance on security requirements for new features and projects
  • Assist in the analysis, selection and rollout of new application security tools, processes, and standards

Requirements

  • Proven experience in application security with a focus on application security testing and vulnerability management
  • Hands-on experience with Application Security tools
  • Strong understanding of common application vulnerabilities (e.g., OWASP Top 10) and mitigation techniques
  • Experience with threat modelling methodologies and tools
  • Proficiency in at least one programming language (e.g., Java, Python, JavaScript)
  • Excellent communication and collaboration skills, with the ability to work effectively in cross functional teams
  • Strong understanding of risk management
  • Degree in a technology discipline (Computer Science, Information Management, Computer Engineering, Cybersecurity or equivalent)
  • Relevant security certifications (e.g. CISSP, CEH, CSSLP) or equivalent is preferred

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.opensystemstech.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

2:14 min

Overcoming age and background to study engineering

Anna John · World Congress 2023

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:55 min

Establishing blameless dialogue surrounding critical software security vulnerabilities

Chris Heilmann +2 · LIVE

Videos

See all

Related articles

See all