Application Security Specialist

Aequor

Cambridge (MA)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Confidential handling of applications

Job summary

Aequor is looking for an experienced Application Security Specialist in Cambridge, MA for a 6-month contract. This role demands expertise in creating application security policies, coordinating with vendors, and ensuring compliance with security requirements.

Ideal candidates should have over 10 years of experience, strong knowledge of IT infrastructure, and relevant certifications. Excellent communication skills are essential for collaborating with cross-functional teams and reporting to management.

Qualifications

  • Undergraduate in Computer Science or relevant field is required.
  • 10+ years of working experience in IT security.
  • Professional information security certification preferred.

Responsibilities

  • Create application security policies and processes.
  • Analyze RFP results and present to stakeholders.
  • Coordinate vendor product demonstrations.
  • Conduct pilot or POC with selected vendors.

Skills

Mediation and facilitation skills
IT Project Management knowledge
Compliance and security requirements experience
Knowledge of risk management frameworks
Understanding of OWASP, SDLC, and Encryption
Ability to design application security processes
10+ years of working experience
3+ years as an IT security expert
Technical and analytical skills
Communication and presentation skills
Understanding of IT infrastructure technology
Process improvement experience
MS-Office proficiency
Knowledge of OWASP top 10 and SANS 25
CISSP, CISM or ISO 27001 certification
CIA, CISA or CRISC certification

Education

Undergraduate in Computer Science
Master’s degree

Job description

Title: Application Security Specialist
Location: Cambridge, MA
Duration: 6 Months (Extendable)

Roles & Responsibilities:
  • Creating application security related policies & processes
  • Creating RFP for selecting a service provider for application security
  • Analysing RFP results and presenting to stakeholders
  • Coordinate vendor product demonstrations and presentations
  • Analysing application security products from various vendors
  • Conducting pilot or POC with selected vendors for threat modelling, architecture reviews, code scanning and penetration testing
  • Collaborating with cross functional teams and getting their buy in for managed project deadlines.
Skills:
  • Good mediation and facilitation skills
  • Good knowledge of IT Project Management
  • Experience with compliance and security requirements related to medical devices, including data privacy.
  • Knowledge of risk management standards or frameworks such as COSO, ISO 2700x, CobiT, ISO 24762, BS 25999, NIST, ISF Standard of Good Practice and ITIL
  • Knowledge of OWASP, SDLC, Encryption, Identity and Access Management, data integrity measures
  • Capability to design application security related policies and processes with deep knowledge of integration between Security and system development life cycle
  • 10+ years of working experience
  • 3+ years as an IT security expert
  • Broad and in-depth technical, analytical and conceptual skills
  • Experience in reporting to and communicating with senior level management
  • Excellent written and verbal communication and presentation skills; interpersonal and collaborative skills; and the ability to communicate information risk-related concepts to technical as well as nontechnical audiences, and to audiences with a risk management profile as well as those with a less outspoken risk management profile.
  • Excellent understanding and knowledge of general IT infrastructure technology, systems and management processes
  • Proven experience to create new processes or improve existing process
  • Application Security, Application Architecture and MS-Office proficiency
  • Understanding of OWASP top 10 and SANS 25
  • Professional information security certification, such as CISSP, CISM or ISO 27001 auditor/practitioner is preferred.
  • Professional (information system) risk or audit certification such as CIA, CISA or CRISC is preferred.
Qualifications

Undergraduate in Computer Science or relevant field is required; Master’s degree is preferred.

Additional Information

All your information will be kept confidential according to EEO guidelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Architect
Application Security Architect

US Tech Solutions • Jersey City (NJ)

On-site
USD 90,000 - 120,000
APPLICATION SECURITY RISK MANAGER
APPLICATION SECURITY RISK MANAGER

Target Labs, Inc • Rockville (MD)

On-site
USD 100,000 - 140,000
Application Security Engineer
Application Security Engineer

Compunnel Inc. • Orlando (FL)

On-site
USD 80,000 - 120,000
Application Security
Application Security

Sonsoft Inc • Exton (PA)

On-site
USD 90,000 - 120,000
Application Security Engineer
Application Security Engineer

Eliassen Group • Washington

On-site
USD 90,000 - 120,000
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Application Security
Application Security

Infojini Inc • Bethesda (MD)

On-site
USD 90,000 - 120,000
Application Security Specialist
Application Security Specialist

Motion Recruitment • Greensboro (NC)

Hybrid
USD 100,000 - 130,000
Application Security Engineer
Application Security Engineer

ManpowerGroup Global, Inc. • Phoenix (AZ)

Hybrid
Medical and Prescription Drug Plans
Dental Plan
Vision Plan
+3
Application Security Analyst
Application Security Analyst

Stellantis • Auburn (AL)

On-site
USD 90,000 - 120,000