Direct message the job poster from Mastech Digital
Talent Acquisition Specialist at Mastech Digital
Role: Source Code Review Assessor - SCA (Static code review)/Application Security Consultant
Duration: 12+ Months
Remote - EST
Responsibilities:
- Analyze and identify security vulnerabilities in source code using automated and manual static analysis tools and techniques.
- Train and assist developers in writing secure software and remediating vulnerabilities.
- Develop and review vulnerability descriptions, business impact, and remediation content.
- Research and recommend open source tools for secure code review.
- Contribute to secure coding and remediation training development and delivery.
- Mentor team members to improve assessment delivery and skills.
- Recommend best practices to automate application security testing within SDLC.
Basic Qualifications:
- 3+ years in application security, including secure code review, web application penetration testing, or threat modeling.
- 2+ years in secure code review/static application security testing.
- Understanding of OWASP Top 10 and CWE Top 25 issues, with ability to identify and remediate vulnerabilities.
- Ability to communicate security risks and impacts to diverse audiences.
- Bachelor's Degree in Computer Science or Engineering with GPA of 3.0+.
Preferred Qualifications:
- Experience with static analysis tools like Checkmarx.
- Experience in server-side programming languages.
- Master's degree in relevant fields.
Additional Details:
- Seniority level: Associate
- Employment type: Contract
- Job function: Information Technology
- Industries: IT Services and IT Consulting