About the company
- Backed by a publicly traded parent company and undergoing a digital modernization effort.
- A highly skilled Information Security team focused on application security, DevSecOps, threat detection, and vulnerability remediation.
- A tech-forward organization prioritizing secure development, cloud adoption, and scalable API infrastructure.
- A trusted brand with a long-standing commitment to safety, operational excellence, and delivering solutions that keep critical industries running.
Location
Fort Mill, SC (Hybrid schedule available)
What they offer you
- A highly visible opportunity to impact the security posture of enterprise applications and APIs used by thousands across North America.
- Exposure to modern security platforms including Veracode, Burp Suite, Azure DevOps, Kubernetes, and more.
- A collaborative environment with opportunities to work alongside developers, cloud engineers, and business stakeholders.
- Ongoing investment in professional development, certifications, and hands-on experience with security testing and CI/CD integration.
- A purpose-driven culture with competitive compensation, strong benefits, and long-term career growth potential.
Why this role is important
- Leads application and API testing efforts, identifying, validating, and reporting vulnerabilities across desktop, mobile, and web environments.
- Supports DevSecOps by automating scans, integrating tools into CI/CD pipelines, and conducting secure code reviews.
- Partners closely with development teams to advise on secure coding practices and assist with remediation strategies.
- Conducts penetration tests, red/purple team assessments, and supports incident response when security events arise.
- Enhances dashboards and metrics that track vulnerability trends, asset management, and application risk exposure.
The background that fits
- 2–5 years of experience in IT, with a focus on application security, DevSecOps, or vulnerability management.
- Proficiency with SAST, DAST, and SCA tools such as Veracode, Checkmarx, AppScan, or Fortify.
- Experience with source control (GitHub), CI/CD tools (Jenkins, Azure DevOps), and cloud environments (Azure, AWS, or Google Cloud).
- Ability to communicate security risks clearly, collaborate across teams, and continuously evolve testing strategies and tooling.
- Experience with RPGLE and RPG-FREE application development
Seniority level
Employment type
Job function
Industries