Application Security Engineer

IBA InfoTech Inc.
Greensboro, NC, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Java (Programming Language) Agile Methodology Burp Suite Code Review DevOps Dynamic Program Analysis Mobile Application Software Network Architecture Systems Development Life Cycle Fortify (Software) Web Application Security Software Engineering
+9 more
Webinspect Software Security Veracode Firewalls (Computer Science) GWAPT Information Technology Checkmarx Appscan Burpsuite

Job description

  • Responsibility for the security of LFG applications and services
  • Conduct design review, code review, and dynamic analysis
  • Identify, communicate, and drive the resolution of vulnerabilities
  • Serve as a subject matter expert for application development and infrastructure teams
  • Communicate effectively with a wide variety of technical levels
  • Perform security assessments of web and mobile applications
  • Research and advocate for new security solutions and technologies
  • Stay current on security trends, vulnerabilities, and testing methods
  • Contribute to related policies, standards, and supporting documentation

Requirements

  • Undergraduate degree or 4+ years of comparable work experience
  • OSCP, OSWE, ISC2 CISSP, CSSLP, GIAC GWAPT, GIAC GSSP-Java, GIAC GSSP-NET Preferred, * 5-7+ years of experience in Information Technology that directly aligns with the specific responsibilities for this position
  • Extensive experience in web application security
  • Strong knowledge of application security throughout the SDLC
  • Experience with agile delivery practices
  • Experience integrating security into DevOps practices.
  • Experience conducting source code review preferred
  • Experience using static application security testing tools such as Fortify, Checkmarx, Veracode, etc.
  • Experience dynamic analysis with tools such as AppScan, Webinspect, BurpSuite, and OWASP ZAP, etc.
  • Familiarity with related network infrastructure, such as firewalls, WAFs, and IPS
  • Familiarity with common DMZ architectures
  • Prior financial services experience preferred
  • Agile Mindset; awareness/understanding of Agile methodologies

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on ibainfotech.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

2:30 min

Establishing shared definitions for devops and cloud architectures

Bruno Amaro Almeida · WWC 2022

Videos

See all

Related articles

See all