
Application Security Consultant – OWASP
Posted Jul 31

Posted Jul 31
This is a fully remote position, open to applicants in United States.
• Spearhead the design of application security across web, mobile, and AWS cloud-native systems, which includes conducting secure architecture reviews and integrating security within CI/CD processes.
• Manage and enhance SAST/SCA tools (such as Checkmarx and Snyk), assess vulnerabilities, and lead remediation efforts in accordance with the OWASP Top Ten guidelines.
• Ensure the security of cloud environments (particularly AWS Lambda, API Gateway, IAM, and S3) while supporting protections at both runtime and application layers.
• Collaborate with release and change management teams to guarantee secure and stable production deployments, facilitating go-live readiness.
• Offer security insights during architecture and project planning phases, ensuring that requirements are integrated early in the design and development process.
• Monitor vulnerabilities, generate reports, and oversee the progress of remediation across engineering teams.
• A minimum of 3 years of experience in application security (both offensive and defensive) with practical SAST/SCA experience.
• In-depth understanding of the OWASP Top Ten and web/API security vulnerabilities along with their remediation strategies.
• Proficient in securing AWS cloud services and familiar with cloud security platforms (like Wiz, Prisma Cloud, and Orca).
• Capability to read and analyze code in Java, JavaScript/Node.js, or Python for security validation purposes.
• Experience with CI/CD pipelines, DevSecOps methodologies, and the integration of secure SDLC practices.
• Excellent communication skills, with the ability to influence both technical and business stakeholders.
• Background working with change and release management in production settings.
• Fully Remote - US
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.