Enable job alerts via email!

Senior Application Security Engineer

Motion Recruitment

Atlanta (GA)

Hybrid

USD 100,000 - 125,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative staffing firm is seeking a skilled Sr. Application Security Engineer to enhance security practices within its development teams. This role is pivotal in implementing DevSecOps methodologies and ensuring secure coding standards are met across various cloud platforms. The successful candidate will leverage their extensive experience in cloud technologies, API testing, and vulnerability assessments to drive security initiatives. Join this forward-thinking organization and contribute to building robust, secure applications that meet industry standards while collaborating with agile teams in a dynamic environment.

Qualifications

  • 7+ years of software experience with 5+ years in DevSecOps.
  • Strong background in cloud technologies and secure coding practices.

Responsibilities

  • Lead projects to implement security tools in CI/CD pipelines.
  • Design and support Cloud DevSecOps processes across business units.

Skills

DevSecOps Technologies
Cloud Technologies
API Testing Tools
DevSecOps Techniques
Secure Coding Best Practices
Vulnerability Risk Assessment
Communication Skills
Problem-Solving

Education

Bachelor's in a technical or scientific field

Tools

GitLab/GitHub
SonarQube
Jenkins
Selenium
Ansible
Docker
Kubernetes
Postman
BurpSuite

Job description

Get AI-powered advice on this job and more exclusive features.

This range is provided by Motion Recruitment. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

$60.00/hr - $62.00/hr

IT Recruitment Lead - Motion Recruitment

Position: Sr. Application Security Engineer

Location: Atlanta, GA 30354 (2-3 days/week onsite)

Term: 12 Months Contract

The successful candidate will use DevOps practices to support the enterprise in adapting its development and DevSecOps methodologies. This role involves building, administering, and supporting modern development tools to help the company’s cloud journey. Additionally, the candidate will apply secure coding best practices to find and address application vulnerabilities. The ideal candidate will have experience in implementing, deploying, and providing support for custom AWS Config Rules, CFN Hooks, and CFN Guard Rules. Be comfortable supporting applications across various cloud platforms, including AWS, Azure, and GCP. A strong background in reviewing open-source components is essential, along with the ability to recommend configuration or environmental changes that enhance security and reduce risk in 3rd Party components used by in-house developed applications. The candidate must be solutions-oriented, employing rigorous logic and methods to effectively tackle complex problems while exploring all available resources for answers. Strong documentation skills and familiarity with the complete software development life cycle are also crucial for success in this role.

Required Skills:
  • B.S. preferably in a technical or scientific field with 7 years of software and development experience, with a minimum of 5+ years of hands-on experience working with DevSecOps Technologies.
  • Minimum 5+ years hands-on experience working with Cloud technologies.
  • Experience in API testing tools (Postman, BurpSuite or any comparable tools)
  • Excellent understanding of DevSecOps techniques and processes, guide integration of various tools in DevSecOps processes (GitLab/GitHub, SonarQube, Jenkins, Selenium, Ansible, Docker, Kubernetes, and containerization).
  • Should be well versed with the AWS well architected framework or TOGAF and able to apply those principles while designing a solution
  • Experience building, engineering and supporting applications in the Cloud (AWS, Azure, GCP)
  • Experience conducting vulnerability risk and impact assessment
  • Understand how to integrate security capabilities in cloud and application lifecycle management platforms especially in a DevOps model
  • Excellent written and verbal communication skills
  • Strong sense of urgency and ownership
Preferred:
  • Extensive experience in application security and/or ethical hacking
  • Experience integrating secure coding techniques with product teams
  • Professional certifications in Security, Cloud, Container or DevOps
Key Responsibilities:
  • Leads projects to implement tools in CICD pipelines to implement automated Static Application Security Test (SAST), Dynamic Application Security Test (DAST) and Source Code Analysis (SCA).
  • Works within the DevSecOps model to secure Containers, withing ROSA, Tekton and OpenShift pipelines
  • Designs, develops, plans, implements, and supports Cloud DevSecOps processes across multiple business units, ensuring alignment with secure coding best practices.
  • Possess extensive knowledge of CI tools such as Jenkins, Tekton, CircleCI, Gitlab, AWS CodePipeline etc.
  • Test driven mindset with experience in automation with development tools
  • Facilitates training on enterprise tools and best practices
  • Collaborate with and across Agile teams to design, develop, test, implement, and support technical solutions in full-stack development tools and technologies
  • Knowledge of OWASP secure coding standards.
  • Experience with Agile methodologies.
  • Experience with AWS and Kubernetes
  • Consult with development Teams to perform security reviews of software designs and help developers to ensure quality and robustness of our internal products
  • Conduct security assessments against web applications and APIs across a variety of technology stacks
  • Performs technical design reviews and code reviews.
  • Drive awareness and knowledge of security in the developer community.
Seniority level:

Mid-Senior level

Employment type:

Contract

Job function:

Consulting

Industries:

Staffing and Recruiting and Airlines and Aviation

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Application Security Engineer (Remote US)

Experian

Costa Mesa

Remote

USD 90,000 - 150,000

6 days ago
Be an early applicant

Sr. Application Security Engineer

Prosper Marketplace

Remote

USD 100,000 - 150,000

5 days ago
Be an early applicant

Senior Application Security Engineer (Remote US)

Experian Health

Costa Mesa

Remote

USD 87,000 - 152,000

11 days ago

Senior Application Security Engineer (Remote US) @ Experian

Cyber Crime

Costa Mesa

Remote

USD 100,000 - 140,000

11 days ago

Sr Application Security Engineer

McKesson

Remote

USD 101,000 - 170,000

16 days ago

Senior Application Security Engineer

SS&C

Fort Wayne

Remote

USD 80,000 - 140,000

25 days ago

Senior Application Security Engineer Remote, US

GitLab Inc.

Remote

USD 124,000 - 217,000

24 days ago

Senior/Lead Application Security Engineer

BioRender

Remote

USD 90,000 - 150,000

6 days ago
Be an early applicant

Senior Application Security Engineer

RavenTek Business Group

Ashburn

Remote

USD 90,000 - 150,000

30+ days ago