Stand out for this role — generate a tailored resume and cover letter in about a minute.
American business solutions inc is seeking an experienced security professional to Own application security across web and mobile apps. You will work with SAST/DAST/SCA tools, analyze request/response headers, and explain OWASP Top 10 vulnerabilities in detail.
Candidates should have 5+ years IT experience and 3+ years applying federal and industry security guidance. You will engage in secure coding practices, work with API security and modern stacks (Java/.NET/Node/React), and leverage
Experience with Application Security scanning tools (SAST, DAST, SCA, ASOC, Container/Cloud) a must.
HTTP Request/Response headers for web and Restful API calls
Ability to explain in detail any of the OWASP top 10 vulnerabilities
Minimum of 5+ years of total IT related experience
3+ years implementing/utilizing Federal, Industry and Open-Source Security Guidance and Secure Coding Practices (OWASP Top 10, SANS, CERT, CWE Top 25, Critical Security Controls, Cloud Security Alliance, SafeCode etc.)
3+ years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks
3+ years with networking, infrastructure, secure application development and security automation (DevSecOps).
3+ years of hands-on knowledge building and deploying secure complex distributed web and mobile applications.
Chrome/Firefox/Edge Development tools to see the request/response headers
Experience with Coverity, BlackDuck, SRM, Fortify a plus
API Security
JWT
OAUTH/OIDC/PKCE
Web, API replay attacks
High-level understanding of containers
Skills :
years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks