> Markdown version of [/jobs/ext/2852789-security-engineer-application-security-testing](https://www.wearedevelopers.com/jobs/ext/2852789-security-engineer-application-security-testing). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer (Application Security Testing) - **Company:** Truist Inc - **Location:** Atlanta, GA, United States - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Java (Programming Language), .NET Framework, Agile Methodology, Software System Penetration Testing, Cloud Computing, Cloud Engineering, Cyber Security, Computer Programming, DevOps, Python (Programming Language), Secure Coding, Software Engineering, Software Vulnerability Management, Scripting, Software Security, Infrastructure as Code (IaC), Gitlab, Git, Software Version Control, Static Application Security Testing, Vulnerability Analysis - **Published:** September 11, 2026 - **Apply:** https://www.atlantacareerpath.com/job.asp?id=3386423869&tx=KK9393FFU&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Strong experience with application security testing methodologies and tools, including SAST, SCA, Secrets Detection, and Infrastructure as Code (IaC) Security. * Solid understanding of vulnerability management, risk assessment, and remediation practices. * Proficiency in one or more programming or scripting languages, such as Python, Java, .NET, or similar technologies. * Experience with Git-based development workflows, source control management, and CI/CD pipeline integration. * Hands-on experience with application security and vulnerability scanning platforms such as GitLab Advanced SAST, JFrog Xray, or equivalent solutions. * Experience with cloud platforms and cloud-native application security practices is preferred. * Ability to collaborate effectively with developers, DevOps engineers, and security teams to integrate security throughout the software development lifecycle., The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. * Bachelor's degree or equivalent education, training, and work-related experience. * Minimum of 5 years of experience in security engineering or related cybersecurity roles. * Advanced knowledge in cybersecurity principles, theories, and concepts. * Proven experience in software development lifecycle security practices. * Advanced knowledge of threat modeling, security testing, and penetration testing. * Experience implementing and managing complex information security technologies. Preferred Qualifications * Understanding of security controls, risk management, and compliance requirements. * Strong analytical, communication, documentation, and problem-solving skills. * Industry certifications such as CISSP, CEH, or similar certifications are a plus. * Experience working in an Agile development environment is preferred. * Demonstrated eagerness to learn new technologies and grow within the application security field. ## Description Builds and enhances scalable, reliable, and secure technology solutions by analyzing trends, establishing security baselines, and preparing for future requirements. Collaborates closely with developers, DevOps engineers, and security teams to identify, assess, and remediate security vulnerabilities across diverse technologies and platforms., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time. * Designs and implements application security solutions to protect critical assets and support secure software development. * Analyzes, prioritizes, and tracks remediation of vulnerabilities identified through security scanning tools. * Partners with development and DevOps teams to promote secure coding practices and integrate security controls into CI/CD pipelines. * Supports security testing, control validation, audits, compliance activities, and evidence collection. * Develops and maintains security standards, baselines, procedures, metrics, reports, and documentation. * Serves as a technical escalation point for complex security issues, providing root cause analysis and remediation guidance. * Evaluates emerging threats, security tools, and architecture options to improve security posture. * Provides technical leadership, mentoring, and knowledge sharing across engineering and security teams. * Leads application security initiatives and coordinates security engineering efforts to ensure quality, consistency, and compliance. ## Related Videos - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)