Application Security Engineer
Role details
Job location
Tech stack
Job description
A healthcare client is looking for two junior level Application Security Engineers and one senior level resource to sit fully remote. The team of engineers are going to be joining the Application Security team, working alongside their team of developers/engineers., They will be part of an initiative of migrating all application security scanning tools into SNYK. The engineers responsibilities will be split into two categories. The primary responsibility will be protecting the experience of the developers by managing their service now portal for tickets from the developers. Additionally, they will be using Snyk for their web application security scans, Datatherum for their mobile scans and will be using a new utility for supply chain, "Koi" a tool purchased by Palo Alto which will be implemented on this team. An all-star will have experience with automation, writing scripts, creating automation and making the steps the developers need to take better.
Requirements
2-4 years of experience working as an Application Security Engineer -Experience with various SAST tools - Nexus IQ, CheckMarx, SNYK (primarily) -Experience with GitHub Actions -Ability to work with developers & talk through vulnerabilities in their code -SAST/DAST/SCA
Benefits & conditions
Terraform Experience building out CICD pipelines MAST - Mobile Application Security
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.