Security Application Engineer-Need GC and USC

USM

Seattle (WA)

On-site

USD 80,000 - 120,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

A technology solutions provider in Seattle is looking for a Security Application Engineer to assess applications for security compliance. The ideal candidate should possess expertise in tools like IBM App Scan, Fortify, and BURP Suite, and must effectively communicate with both technical and non-technical stakeholders. Responsibilities include conducting risk assessments, supporting security reviews, and improving information security policy implementation throughout the organization.

Qualifications

  • Must have expertise in security compliance testing for applications.
  • Experience working with enterprise applications and information security.
  • Ability to communicate clearly with technical and non-technical stakeholders.

Responsibilities

  • Perform security, compliance, and risk assessments.
  • Support information security review of new technologies.
  • Investigate security needs and implement improvements.
  • Maintain visibility with various operational and management groups.
  • Supports security projects across different teams.

Skills

IBM App Scan
Fortify
BURP Suite
Kali Linux
SOAP UI
Application Test
Penetration Test

Job description

Security Application Engineer---------------Need GC and USC

Security Application Engineer

Seattle (Bellevue, WA)

Long Term Project

Need GC and USC

Must have IBM App Scan, Fortify, BURP Suite, Kali Linux, SOAP UI, Application Test, Penetration Test expertise

Top Three Skills:

Job Description:

Security team is seeking an enthusiastic Security Application tester who will test applications for security compliance. The successful candidate will have experience with Enterprise Applications and Information Security. The scope of applications to be tested are software that are used to run its business, not software which is sold or provided to end customers. The type of applications range from web services to line of business applications to mobile or cloud applications. Candidates will be responsible for insuring all applications meet enterprise minimum security specifications and elevate for potential deviations when they do not. Being able to communication clearly, establish partnerships with team members and stakeholders as well as potentially offload portions of the work to staff augmentation resources will be required.

Essential Functions
  • Perform security, compliance, and risk assessments on projects throughout project lifecycle using sdlc, waterfall or rup methodologies
  • Support information security review of new technologies, designs, and remediation planning efforts
  • Investigates and identifies security needs & recommends plans/resolutions. Implements, tests & monitors info security improvements.
  • Maintain visibility inside & outside of info security, interfacing with groups such as billing ops, application support, engineering ops, finance, legal, privacy, risk management, etc.
  • Support info security policy lifecycle throughout, including intake, creation, review, approval, implementation, publishing, communication & maintenance
  • Supports security projects driven by groups both internal and external to info security
  • Experience with static and dynamic vulnerability identification using industry leading scanning tools and manual code reviews
  • Experience with the Top 10 OWASP (Open Web Application Security Project) vulnerabilities (most critical web vulnerabilities) and how to identify and remediate them
  • Solid understanding of Information Security in general and the specific behaviors that would secure Intel's information assets
  • Ability to translate Information Security policies and procedures into language that a business and/or technical person can understand; and ability to effectively communicate with both non-technical and technical people
  • Strong problem solving with the ability to methodically and objectively analyze and resolve Information Security challenges
  • Ability to work well inside and outside the team. Exchanging ideas, knowledge, experience and thoughts can boost the quality and the efficiency of the solution, so great testers must always be eager to coordinate well with their team members and other teams as well.
  • Great stakeholder management skills and experience due to the escalation process

If you are interested in the below position please forward your profile to preethib@usmsystems(dot)com or call me on 703 468 0398.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Analyst - US Cit, GC, GC/EAD- no H1B candidates
Application Security Analyst - US Cit, GC, GC/EAD- no H1B candidates

USM • Vienna (VA)

On-site
USD 80,000 - 120,000
Sr. Security Engineer-Need GC and USC
Sr. Security Engineer-Need GC and USC

USM • Brooklyn Park (MN)

On-site
USD 95,000 - 130,000
Endpoint Security Engineer-Need GC and USC
Endpoint Security Engineer-Need GC and USC

USM • Walnut Creek (CA)

On-site
USD 80,000 - 120,000
Application Security
Application Security

Sonsoft Inc • Exton (PA)

On-site
USD 90,000 - 120,000
Security Architect-Need GC and USC
Security Architect-Need GC and USC

USM • Seattle (WA)

On-site
USD 120,000 - 160,000
Palo Alto Firewall Engineer-Need GC and USC
Palo Alto Firewall Engineer-Need GC and USC

USM • Fort Worth (TX)

On-site
USD 80,000 - 100,000
Application Security Engineer
Application Security Engineer

BridgeView • New York (NY)

On-site
USD 120,000 - 160,000
Security Engineer-NEED
Security Engineer-NEED

USM • Chattanooga (TN)

On-site
USD 90,000 - 110,000
Security Engineer – SAST & SCA (Application Security)
Security Engineer – SAST & SCA (Application Security)

US staffing Inc • San Jose (CA)

On-site
USD 150,000 - 210,000
Selenium Engineer-Need GC and USC
Selenium Engineer-Need GC and USC

USM • Malvern

On-site
USD 90,000 - 120,000