Application Cybersecurity Engineer
Purplejack Technologies Llc
Dallas, United States of America
yesterday
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Dallas, United States of America
Tech stack
Java
.NET
Artificial Intelligence
Amazon Web Services (AWS)
Software System Penetration Testing
Azure
Software Bug Management
Cloud Computing Security
Computer Security
Identity and Access Management
Python
Node.js
Open Web Application Security
Secure Coding
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Delivery Pipeline
Software Security
GWAPT
Information Technology
Devsecops
Vulnerability Analysis
Job description
- Security by Design: Implement and consult on secure development practices.
- DevSecOps Integration: Integrate security practices into DevOps pipelines.
- Vulnerability Management: Manage, analyze, and track security risks to remediation using tools like CodeQL, Rapid7, penetration testing outputs, and bug bounties.
- Developer Collaboration: Serve as a trusted advisor to software engineers, architects, and product owners, providing context-aware guidance and documenting security architectures.
- Security Test Onboarding: Collect and communicate scope/access details for penetration testing and handle assessment outputs through defect management.
Requirements
< data-path-to-node="14">Education & Experience
- Bachelor''s Degree in Computer Science or a related field with 8+ years in information security, OR
- Master''s Degree with 6+ years of experience.
< data-path-to-node="16">Technical Skills (Required)
- Application Security: Deep understanding of vulnerabilities and remediation (OWASP, CWE/CVE, SANS 25).
- Broad Security Knowledge: Enterprise security architecture, threat modeling, vulnerability assessment, risk analysis, defense-in-depth, IAM, and API security.
- Cloud Security: Hands-on experience with AWS and/or MS Azure.
- Development & Scripting: Proficiency in one or more languages (Java, Python, .NET, JS) and automation scripting to streamline security processes.
- Certifications: Professional certification such as CISSP, CCSP, GWAPT, GWEB, or AWS Security Specialty.
< data-path-to-node="18">Technical Skills (Desired / Nice-to-Have)
- Professional certifications (CSSLP, GISCP, etc.).
- AI Fluency is preferred.
< data-path-to-node="20">Soft Skills
- Excellent written and verbal communication skills with the ability to translate technical security concepts for non-technical audiences.