
Senior Application Security Engineer
Posted 20 hours ago

Posted 20 hours ago
This is a fully remote position, open to applicants in District of Columbia, +1 more state.
• Strengthen the application security team by taking on the role of Senior Application Security Engineer / Veracode.
• Collaborate with clients and the application community to uphold a robust security posture for high-visibility applications.
• Provide support for SAST, DAST, and IDE Plug-in environments utilizing Burp Suite and Veracode.
• Create and implement comprehensive security controls across applications, systems, networks, or infrastructure services.
• Ensure the security of enterprise web applications in accordance with applicable security standards and frameworks.
• Manage and resolve basic website connectivity challenges within Linux-based environments.
• Assist in the development of pipelines and application security tools.
• Minimum of 6 years of experience in information technology.
• At least 3 years of experience in supporting SAST, DAST, and IDE Plug-in environments with Burp Suite.
• Over 1 year of experience with SAST, DAST, and IDE Plug-in environments using Veracode.
• A minimum of 2 years of experience in Java, Python, .NET, or C#.
• More than 3 years of experience in designing and implementing enterprise-wide security controls for applications, systems, networks, or infrastructure services.
• Familiarity with Eclipse, JDeveloper, as well as pipeline development or Visual Studio.
• Experience in securing enterprise web applications and understanding of OWASP Top 10, CVSS, CWE, WASC, and SANS-25.
• Knowledge of federal compliance standards such as NIST 800-53, FIPS, or FedRAMP.
• At least 2 years of experience in Linux-based environments, including troubleshooting basic website connectivity issues.
• Capability to obtain a security clearance.
• An IT-related Bachelor's Degree.
• Proficiency with IAST capabilities and tools.
• Experience with HackerOne.
• Familiarity with Selenium.
• Ability to write bash scripts.
• Experience with OWASP ZAP or Burp Proxy.
• Military Occupational Specialty codes applicable: 170A, 170D, 17A, 17B, 17C, 17D, 24B, 25B, 47D, 94F, IT, 17, 5309, 6203, 9735, 9740, 9890, 9891.
• Comprehensive benefits package including medical, dental, vision, short-term disability, accident, life, hospital insurance, FSA, HSA, and 401(k) match.
• Professional development stipend.
• Opportunities for community service and employee engagement activities.
• Incentive plans featuring corporate and individual performance bonuses.
• Paid time off (PTO).
• Flexible remote work options.
• Health and wellness initiatives.
• Employee discount programs.
• Reimbursement for learning and development.
Oregon Health & Science University Foundation
Intel Corporation
Ascensus
Anovia
Get handpicked remote jobs straight to your inbox weekly.