Application Security Engineer

Russell Tobin

New York (NY)

Hybrid

USD 96,000 - 103,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare coverage
401k plan
Life & disability insurance
Employee discounts

Job summary

Russell Tobin is seeking an Application Security Engineer in New York, NY. Hybrid work arrangement with a 12-month contract and potential extension or C2H. Pay rate $70-$75/hr. You will help implement security controls in CI/CD pipelines and collaborate with cross-functional teams.

The role requires 5+ years Python development, strong Linux skills, and experience with CI/CD, REST APIs, and security tooling. A bachelor’s in IT is expected with broad security and software background.

Qualifications

  • 5+ years software development experience with Python.
  • Experience with API usage, REST interfaces and testing.
  • Proficient in Linux and bash scripting.
  • Strong understanding of CI/CD pipelines and DevSecOps.
  • Experience with unit testing frameworks is required.

Responsibilities

  • Implement Brokerage security policies in CI/CD tooling (SAST, OSS, SCA).
  • Collaborate with Dev, DevOps and Security teams on automation for security/compliance.
  • Define code-level security rules for web/mobile apps built in .NET, Java, React, Python.
  • Provide secure platforms for enforcing app security controls.
  • Support architectural patterns to scale the security platform.

Skills

Python
Linux
REST
Unit testing
Bash scripting
CI/CD pipelines
APIs

Education

Bachelor's degree in IT

Job description

Role: Application Security Engineer

Duration: 12 months contract with possibility of extension or C2H.
Location: New York, NY (Hybrid)
Pay rate range: $70 - $75/hr


Job Description:
About the Team:
The mission of the Cloud Security & Developer Enablement team is to implement the Firm's Cybersecurity Strategy by architecting, engineering, deploying and operating technical security controls and capabilities for the Enterprise. This is achieved by continued focus on architectural rigor, automation, agile delivery and adoption of Cloud and application security control implementations by development community.


What You\'ll Do:
Be part of a team of engineers to implement Brokerage specific security policies in the CI/CD security tools including but not limited to SAST, OSS and SCA applications.
Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevSecOps processes.
Define the security rules that needs to be adhered to at a code level in web and mobile applications written in .NET, Java, React, Python and other languages.
With your development background and security knowledge, provide secure stable platform for enforcing application security controls.
Support security standards, design & implement architectural patterns to increase the resiliency and scalability of security platform.
Work with our partners to implement, manage, and optimize security measures within our GitHub repositories to continuously improve code integrity and protect against vulnerabilities.


Required skillset:
Must have: 5+ years software development experience using Python
Working with APIs, including but not limited to ReST
Unit testing frameworks
Multi-process and multi-thread architecture
Must have: 5+ years in linux, strong bash scripting skills.
Deep understanding of CI CD pipelines
Working knowledge of windows environment, simple scripting dos-batch etc.
Bachelor\'s degree with 10+ years of work experience in the IT field
Ability to process large datasets for reporting and analysis.


Desired Skillset:
A self-starter, with a strong desire for learning new technologies and applying them to solve problems
Knowledge of SAST, OSS technologies
Ability to perform Python code reviews with minimal assistance
Expertise in monitoring, alerting, reporting, data analysis is desired.
Experience with application build environments like Jenkins, GitHub Actions, Teamcity etc.
DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
Experience with evaluation, integration and onboard of security tools such as DAST, RASP, WAF, vulnerability scanner results, container analyzers, open source scanning is a plus


PrideGlobal and it\'s affiliates offers eligible employee\'s comprehensive healthcare coverage (medical, dental, and vision plans), supplemental coverage (accident insurance, critical illness insurance and hospital indemnity), 401(k)-retirement savings, life & disability insurance, an employee assistance program, legal support, pet insurance and employee discounts with preferred vendors.


Equal Employment Opportunity PrideGlobal and it\'s affiliates are an equal opportunity employer. We do not discriminate on the basis of the race, religious creed, color, national origin, ancestry, physical disability, mental disability, reproductive health decision making, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other characteristic protected by applicable federal, state, or local law.


Fair Chance Employment PrideGlobal and it\'s affiliates are a Fair Chance employer. We consider all qualified applicants, including those with criminal histories, in a manner consistent with applicable state and local Fair Chance laws and ordinances, including, the California Fair Chance Act and all applicable local Fair Chance ordinances.


Accommodations We are committed to providing reasonable accommodations to applicants and employees with disabilities. If you require a reasonable accommodation to participate in the application or interview process, or to perform the essential functions of this role, please contact us.


Only applicable for San Francisco Candidates: Under the San Francisco Lactation in the Workplace Ordinance, we will provide written notice of lactation accommodation rights, and this notice will automatically be given upon hiring, any inquiry of parental leave or lactation accommodation.


#RTA

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

Russell Tobin • New York (NY)

Hybrid
USD 96,000 - 103,000
Health coverage
Retirement 401(k)
Life & disability
+1
Application Security Engineer
Application Security Engineer

Russell Tobin • Alpharetta (GA)

On-site
USD 96,000 - 103,000
Human Resources Operations Specialist
Human Resources Operations Specialist

Russell Tobin • West Palm Beach (FL)

On-site
USD 54,443,000 - 68,770,000
Healthcare coverage
401(k) retirement plan
Life & disability insurance
+1
Staff TDI Site Reliability Engineer, Okta Federal
Staff TDI Site Reliability Engineer, Okta Federal

United States Digital Space LLC • San Francisco (CA)

Hybrid
USD 174,000 - 239,000
Staff Backend Engineer, Identity Threat Protection
Staff Backend Engineer, Identity Threat Protection

United States Digital Space LLC • San Francisco (CA)

On-site
USD 194,000 - 267,000
Equity
Bonus
Health, dental, and vision insurance
+3
Sr. Technical Program Product Manager in Seattle WA (Hybrid)
Sr. Technical Program Product Manager in Seattle WA (Hybrid)

Russell Tobin • Seattle (WA)

Hybrid
USD 90,000 - 103,000
Healthcare coverage
401(k)
Life & disability insurance
+1
Application Developer Security Analyst
Application Developer Security Analyst

Beacon Hill • Indianapolis (IN)

On-site
USD 120,000 - 170,000
Application Security Engineer-68257
Application Security Engineer-68257

Worky • Dallas (TX)

On-site
USD 120,000 - 180,000
Technical Editor/Writer
Technical Editor/Writer

Russell Tobin • South Jordan (UT)

Hybrid
USD 52,000 - 76,000
Platform Engineer III
Platform Engineer III

Pride Global • SeaTac (WA)

Hybrid
USD 200,579,000 - 229,233,000