Join our Facebook group

👉 Remote Jobs Network

Application Security Engineer

August 27

Apply Now
Logo of GuidePoint Security

GuidePoint Security

We help organizations make smarter cybersecurity decisions that minimize risk.

Application Security • Cloud Security • Data Security & Privacy • DLP • GRC

201 - 500

Description

• GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations minimize risk. • Taking a three-tiered, holistic approach for evaluating security posture and ecosystems.

Requirements

• Proficiency with the implementation, operationalization, and troubleshooting of Static Application Security Testing (SAST) tools such as Semgrep, Snyk, CodeQL, Checkmarx, Veracode, etc. • Understanding of Continuous Integration / Continuous Delivery (CI/CD) pipeline tools and processes (e.g. GitHub Actions, GitLab Runners, Azure DevOps, Jenkins, CircleCI, etc.) • Experience in software engineering, ideally full stack software development, including modern technologies and application architectures • Strong scripting and automation experience using one or more programming languages • Solid working knowledge of application security fundamentals including the OWASP Top 10, threat modeling, and implementing secure coding practices throughout the Software Development Lifecycle (SDLC) • Excellent written and verbal communication skills • Experience writing or adapting custom SAST rules (Semgrep or CodeQL) • Familiarity with additional Application Security tools (e.g. Interactive (IAST), Dynamic (DAST) and API security, SCA, etc.) • Familiarity with API Security tools (e.g., NoName, Traceable, Salt, Cequence) • Practical hands-on experience validating vulnerabilities and proficiency with Burp Suite • Strong working knowledge of Secure Development Lifecycles and experience triaging and remediating technical vulnerabilities identified by web application scanning tools • Understanding of automated security testing approaches and tools • Experience in building and operating security tools within CI/CD pipelines • Experience with proactive integration of security into the development process • Past experience as an application security practitioner or software engineer

Benefits

• Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions) • 100% employer-paid medical premiums (employee only $0 deductible and HSA plans) along with 75% employer-paid family contributions • 100% employer-paid dental premiums (employee only) along with 75% employer-paid family contributions • 12 corporate holidays and a Flexible Time Off (FTO) program • Healthy mobile phone and home internet allowance • Eligibility for retirement plan after 2 months at open enrollment • Pet Benefit Option

Apply Now

Similar Jobs

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com