Application Security Engineer

Thoughtwave Software and Solutions
Houston, TX, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Java (Programming Language) .NET Framework Application Programming Interfaces (APIs) Microsoft Azure Burp Suite Computer Programming Github Python (Programming Language) Open Source Technology Open Web Application Security Fortify (Software)
+12 more
Secure Coding SonarQube Web Applications Scripting Veracode Kubernetes Checkmarx Docker Jenkins Static Application Security Testing Microservices Dynamic Application Security Testing

Requirements

  • Strong experience with:

  • SAST tools (e.g., Checkmarx, Veracode, Fortify, SonarQube)
  • DAST tools (e.g., Burp Suite, OWASP ZAP)

Solid understanding of:

  • OWASP Top 10 / secure coding practices
  • Web application architecture (APIs, microservices)

Experience integrating security into:

  • CI/CD pipelines (Azure DevOps, GitHub, Jenkins, etc.)

Familiarity with:

  • Container security (Docker, Kubernetes)
  • Open-source scanning (SCA tools)

Programming/scripting knowledge (Java, Python, .NET, or similar)

Experience working with developers in an agile environment

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

1:02 min

Applying an ETL methodology to infrastructure configuration management

Axel Barbier · WWC 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · WWC Europe 2026

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

Videos

See all

Related articles

See all