Application Security Engineer

D&H Distributing

United States

On-site

USD 110,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Employee Stock Ownership Plan
401k
Paid Time Off
Medical benefits
Dental benefits
Vision benefits
Gym Reimbursement
Work from Home Reimbursement
Employee Purchase Program
Tuition Assistance

Job summary

D&H Distributing is a leading employee-owned technology distributor with over a century of service to resellers, retailers, and clients across SMB and Consumer markets. We are seeking a Cybersecurity Architect to ensure systems and infrastructure are secure, up-to-date with industry standards, and compliant with security frameworks.

The role requires proficiency in secure SDLC, at least one programming language, and experience with security assessments.

Qualifications

  • Familiarity with secure SDLC practices and security in the software lifecycle.
  • Experience reviewing code from a cybersecurity perspective.
  • Knowledge of OWASP Top 10 and secure coding standards.
  • Experience with third-party security assessments and vendor risk.
  • Knowledge of PCI compliance requirements.

Responsibilities

  • Ensure security controls across systems, applications, and infrastructure.
  • Conduct security assessments including vendor security.
  • Collaborate with IT and business teams to implement security improvements.
  • Develop and update security policies and procedures.
  • Assist in maintaining PCI and other regulatory requirements.

Skills

Secure SDLC understanding
Programming language proficiency
Code reviews
OWASP Top 10 knowledge
PCI compliance awareness
Vulnerability management
Security awareness training
Team liaison

Education

Associates degree in Cybersecurity or related field
Bachelor's degree in Cybersecurity or related field

Tools

OAuth/ADFS
SIEM familiarity
PowerShell scripting
Python scripting

Job description

D&H is growing! Join 100+ year old Employee-Owned technology distributor, offering end-to-end solutions for today's resellers, retailers, and the clients they serve across the SMB and Consumer markets.

  • We are empowered by our employee Co-Owners who provide the industry’s best service, and we promote a collaborative culture.
  • We offer an Employee Stock Ownership Plan, 401k, Paid Time Off, Medical, Prescription, Dental and Vision benefits as well as Gym Reimbursement, Work from Home Reimbursement, Employee Purchase Program, Tuition Assistance and much more!
  • As a D&H Co-Owner you receive numerous discounts on services.
  • We feel strongly about giving back to the community and promoting sustainable, eco-friendly business practices.
Summary

Cybersecurity Architects’ are a group of professionals who ensure that systems, services, applications, and infrastructure work reliably and securely. The Cybersecurity Architect is expected to have a beginning to moderate understanding of complex IT systems and stay up to date with the latest security standards, systems, and authentication protocols, as well as best practice security products.

For this role, applicants should be proficient in assessing application security. This includes an understanding of the security software development lifecycle (SDLC), as well as being proficient in at least one programming language.

Essential Duties and Responsibilities
Core Requirements
  • Familiarity with the secure SDLC
  • Proficiency in at least one programming language
  • Experience conducting code reviews from a cybersecurity perspective
  • Familiarity with the OWASP Top 10 (e.g., XSS, CSRF, etc.)
  • Experience with OAUTH and ADFS
  • Experience conducting security assessments, including assessing the security of third-party vendors
  • Stay up to date on the latest security and industry trends including their compliance requirements
  • Maintain knowledge of cybersecurity frameworks such as NIST and CIS and other security technology by attending workshops and reviewing publications
  • Responsible for overseeing the security controls for the company with minimal oversight
  • Responsible for designing and implementing new security technologies with minimal oversight
  • With minimal oversight, provide training to other members of the team
  • With minimal oversight, maintain complex project tasks and interface with various teams
  • Provide thoughts on and assist in developing new features to be added to the SIEM
  • With oversight, identify and design new security policies for the organization
  • With minimal oversight, assist in maintaining PCI compliance of the organization
  • With minimal oversight, assist in the design and implementation of a vulnerability management program
  • With minimal oversight, aid in the design, implementation, and enhancement of the security awareness program
  • Effectively deal with rapid change in a positive manner
  • Assist in process improvements to enhance the efficiency of current operational procedures
  • Coordinate relations with and serve as a liaison between business and IT staff
  • Assist in developing short-term and long-term department goals which support long-term strategic goals
  • Ensure the coordination and communication of production changes
  • Participate in all company/location driven communication efforts, including huddles, department meetings, and other related efforts
  • Maintain a positive and professional working relationship with peers, management, support resources, and the community with a constant commitment to teamwork and exemplary customer service to present a professional image of D&H Distributing
  • Perform all other duties as assigned by management in a professional and efficient manner
Preferred Skills
  • Proficiency in web development, .NET, and/or Java
  • Familiarity with API security best practices
  • Experience conducting code reviews from a cybersecurity perspective
  • Ability to design and support the implementation of security as part of the continuous deployment process
Education and/or Experience
  • Associates degree in Cybersecurity or similar area of study required or equivalent years of related work experience
  • Bachelor’s degree in Cybersecurity or similar area of study preferred
  • At least 3-5 years of experience in cybersecurity with application security preferred
  • Industry certifications (CSSLP, CASE, CEH, Security+, CISSP, GWEB, , CCNA Security or similar) preferred
  • Scripting experience in PowerShell, Python or Perl preferred
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IAM Cybersecurity Engineer
IAM Cybersecurity Engineer

D&H Distributing Co. • Harrisburg

On-site
USD 140,000 - 190,000
Employee Stock Ownership Plan
401k
Paid Time Off
+7
IAM Cybersecurity Engineer
IAM Cybersecurity Engineer

D&H Distributing • Harrisburg

Hybrid
USD 120,000 - 180,000
Application Security Engineer - SDLC & CI/CD Champion
Application Security Engineer - SDLC & CI/CD Champion

D&H Distributing • United States

On-site
USD 110,000 - 170,000
Employee Stock Ownership Plan
401k
Paid Time Off
+7
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Director, Cyber Security Wanted!
Director, Cyber Security Wanted!

HealthCare Talent • Irvine (CA)

On-site
USD 130,000 - 160,000
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Helmsman Group • Katy (TX)

On-site
USD 100,000 - 130,000
Security Administrator - (Governance, Risk, Compliance)
Security Administrator - (Governance, Risk, Compliance)

Michels Corporation • Milwaukee (WI)

On-site
Security & Compliance Architect (Governance & Risk)
Security & Compliance Architect (Governance & Risk)

Michels Corporation • Milwaukee (WI)

On-site
Advisor- Cyber Security
Advisor- Cyber Security

OP RaaS • Tennessee

On-site
USD 90,000 - 130,000