Cloud Application Software Security Engineer, Contractor

Apex Systems

St. Louis (MO)

Hybrid

USD 120,000 - 160,000

Full time

17 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

ESPP
401K
Health insurance
HSA

Job summary

Everforth Apex is seeking a Cloud Application Software Security Engineer, Contractor, in St. Louis with partial remote options to evaluate, prioritize, and remediate vulnerabilities across custom applications and IaC.

You will collaborate with development teams to implement secure coding practices, address KEVs/CVEs, support SA&A, and ensure cloud configurations meet federal standards in AWS GovCloud, delivering ongoing security hardening.

Qualifications

  • Bachelor's degree in CS/Software Eng/ Cybersecurity or equivalent experience.
  • 3–5 years in application security or secure software development.
  • U.S. Citizenship required.

Responsibilities

  • Perform security assessments and remediate findings in code and IaC.
  • Remediate KEVs/CVEs in applications and cloud resources.
  • Support SA&A processes with documentation and evidence.
  • Harden AWS CDK infrastructure and cloud configurations.
  • Collaborate with development teams to implement secure coding.
  • Maintain security docs and track remediation progress.

Skills

Python
SQL
VB.NET
AWS CDK
CloudFormation
Terraform
AWS GovCloud
GuardDuty
Security Hub
Inspector
Config
SBOM
SAST
DAST
Penetration testing

Education

Bachelor's degree in CS/Software Engineering or Cybersecurity

Tools

Terraform
CloudFormation
Jenkins

Job description

Job Description: Cloud Application Software Security Engineer, Contractor

Job#: 3051324

Job Description: Cloud Application Software Security Engineer, Contractor

Location: St. Louis, Missouri (Partial Remote)

Role Overview

We are seeking an application/software engineer with a strong security focus to evaluate, prioritize, and remediate vulnerabilities and compliance findings across custom applications and infrastructure as code (IaC). This position will support the remediation of findings related to custom code and IaC, as well as maturing pipelines to address known SDLC findings. The role sits at the intersection of secure application development, cloud security engineering, and risk/compliance, driving both code-level fixes and cloud configuration hardening to maintain a strong security posture.

Key Responsibilities
  • Conduct security assessments using scanning tools and implement recommended remediations.
  • Evaluate and remediate Known Exploited Vulnerabilities (KEVs) and Common Vulnerabilities and Exposures (CVEs) in custom applications and infrastructure.
  • Support Security Assessment and Authorization (SA&A) processes, including documentation and evidence collection.
  • Analyze Software Bill of Materials (SBOM) findings to identify vulnerable dependencies and recommend updates or alternatives.
  • Review and remediate security vulnerabilities in custom VB.NET, SQL, and Python code.
  • Perform security analysis and hardening of AWS Cloud Development Kit (CDK) infrastructure as code.
  • Collaborate with development teams to implement secure coding practices and address identified vulnerabilities.
  • Maintain security documentation and track remediation efforts through completion.
  • Ensure compliance with federal security standards and frameworks within the AWS GovCloud environment.
  • Participate in security scanning automation and continuous monitoring initiatives.
Required Qualifications

Education: Bachelor's degree in Computer Science, Software Engineering, Cybersecurity, or a related field; or equivalent work experience.

Experience: A minimum of 3-5 years of experience in application security or software development with a security focus. Proven experience with vulnerability assessment and remediation methodologies is required.

Other Requirements: U.S. Citizenship is required for this position.

Technical Skills
  • Working proficiency with Python, SQL, and VB.NET or legacy .NET frameworks.
  • Experience with AWS Cloud Development Kit (CDK) or similar IaC tools (Terraform, CloudFormation).
  • Hands-on experience working in AWS environments, preferably AWS GovCloud.
  • Experience with AWS security services (GuardDuty, Security Hub, Inspector, Config).
  • Understanding of CVE/KEV identification and remediation processes.
  • Knowledge of SBOM generation and analysis.
  • Experience with static application security testing (SAST), dynamic application security testing (DAST), and penetration testing.
Preferred Qualifications
  • Professional security certifications (CISSP, CEH, GIAC GSEC, AWS Security Specialty, or equivalent).
  • Knowledge of container security (Docker, ECS, EKS).
  • Experience with CI/CD pipeline security integration (Jenkins, GitLab CI, AWS CodePipeline).
  • Familiarity with DevSecOps practices and tooling.
  • Knowledge of secure software development lifecycle (SSDLC) practices.
  • Understanding of zero trust architecture principles.
  • Background in both application development and security operations.
Company Overview

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing® in Talent Satisfaction in the United States and Great Place to Work® in the United Kingdom and Mexico.

Benefits Overview

Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our ‘Welcome Packet’ as well, which an Everforth Apex team member can provide.

Equal Opportunity Employer Statement

Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.

Accommodation for Disability

If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at [email protected] or 804-523-8228. Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AWS Cloud Security Engineer
AWS Cloud Security Engineer

Apex Systems • Stafford (VA)

Hybrid
USD 110,000 - 170,000
ESPP
401K
HSA
+3
Security Engineer - AWS
Security Engineer - AWS

Apex Systems • Raleigh (NC)

Hybrid
USD 104,000 - 177,000
Medical, dental, vision
401K with company match
HSA
Technology - Developer/Software Engineer
Technology - Developer/Software Engineer

Apex Systems • Orlando (FL), Northern (KY)

Hybrid
USD 120,000 - 180,000
Medical insurance
Dental insurance
Vision insurance
+6
Sr Cloud Architect
Sr Cloud Architect

Apex Systems • Arlington (VA)

Hybrid
USD 266,483,000 - 286,541,000
401K program
ESPP
Health Savings Account (HSA)
+1
Full Stack Software Engineer
Full Stack Software Engineer

Apex Systems • Tucson (AZ)

Hybrid
USD 96,000 - 124,000
Sr Software Engineer (Cloud)
Sr Software Engineer (Cloud)

Apex Systems • Orlando (FL)

On-site
USD 120,000 - 160,000
Medical, dental, vision
ESPP (employee stock purchase)
401K with company match
+3
Security Engineer/Tester
Security Engineer/Tester

Apex Systems • Seattle (WA)

On-site
USD 87,000 - 90,000
Medical insurance
401K with company match
Employee stock purchase program
Security & Identity Engineer
Security & Identity Engineer

Apex Systems • Town of Florida (NY), Northern (KY)

Hybrid
USD 83,000 - 124,000
Medical coverage
Dental coverage
Vision coverage
+6
Technical Security Consultant
Technical Security Consultant

Apex Systems • Mountain View (CA)

Remote
DevOps Engineer - AWS Cloud Support
DevOps Engineer - AWS Cloud Support

Apex Systems • Tampa (FL)

Hybrid
USD 120,000 - 180,000
Medical insurance
Dental insurance
Vision insurance
+7