A technology consulting firm located in Minnesota is seeking a professional with extensive experience in SAST and SCA security tools. The ideal candidate has over 5 years of experience in vulnerability analysis, application onboarding, and hands-on development of RESTful APIs. Candidate must possess strong skills in managing SDLC workflows using tools like Jira and Confluence.
Qualifications
5+ years of experience with SAST and SCA security tools.
Experienced in customizing security tools queries to find vulnerabilities.
Conducted end-to-end SAST and SCA analysis using commercial application scanning tools.
Skills
Experience with SAST and SCA security tools
Expert-level skills in SDLC workflow management tools
Hands-on development experience with RESTful APIs
Tools
Checkmarx
Nexus IQ
Jira
Confluence
Job description
Experience Qualifications
5+ years of experience SAST and SCA security tools; Checkmarx and CheckmarxOne, and Nexus IQ
5+ year of experience developing new queries and customizing the existing security tools queries that are not out of the box to find new vulnerabilities
5+ years of experience conducting end-to-end SAST and SCA analysis, using commercial application scanning tool.
5+ years of experience application onboarding, triaging, remediation with application teams and verifying proposed findings.
3+ years of recent, hands-on development experience, working with, or developing RESTful APIs in a modern, automated development environment – including a deep understanding of CI/CD.
3+ years, with expert-level skills, in SDLC workflow management tools like Jira, Conftuence, SharePoint or similar.