user avatar

Application Security Engineer

Dunhill Professional Search

Posted today
Secret
Unspecified
Unspecified
IT - Security
Alexandria, VA (On-Site/Office)

Job Details

The Application Security Engineer will perform the following:
  • *Defines, maintains, and enforces application security best practices
    *Conduct vulnerability assessment and manual/automated code reviews
    *Demonstrate vulnerabilities to application owners and provide mitigation recommendations
    *Proficient in any SAST, DAST, and OSA tools.
    *In depth knowledge with any programming language like Java, .NET, C#, etc.
    * Performs and conducts penetration tests and manual/automated code reviews.
    *Writes comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement
    *In depth Knowledge of Secure Coding best practices and OWASP top 10, SANS 25, CVE, etc.
    *Identify AppSec related tools/conduct tool analysis, and provide recommendations
  • Vulnerability Management Specialist will have at least five years of working knowledge and hands-on experience with five or more of the following tools: BurpSuite, SonarQube, OWASP/Maven, Fortify, Tenable, STIG Viewer, AWS Security Hub, AWS Inspector, ePO, ServiceNow, Jira, ADO, eMASS or equivalent GRC Tools.

Minimum Qualifications
  • Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical discipline and a minimum of 5 years of working knowledge and hands-on equivalent relevant experience.
  • Candidates must have a Security+ certification or similar
  • Candidates must have an active secret security clearance.
  • Position requires on-site work in Alexandria VA 2-3 days/week.

Other Job Specific Skills
  • Working knowledge and hands-on experience with the following:
    • BurpSuite
    • SonarQube
    • OWASP/Maven
    • Fortify, Tenable
    • STIG Viewer
    • AWS Security Hub
    • AWS Inspector
    • ePO, ServiceNow
    • Jira
    • ADO
    • eMASS or equivalent GRC Tools

#CJPost

Job Requirements:

  • Review security controls or perform security systems
  • Satisfy security needs and mitigate security vulnerabilities
  • Perform security and vulnerability assessments
  • Conduct regular security vulnerability assessments
  • Performing network-based security assessments
  • Implement network security system configurations
  • Formulating security architecture recommendations and design security services
  • Configure security settings and security logs to report security problems
  • Maintain customer network security devices
  • Incorporate security tools in to security program
  • Evaluating network and security technologies
  • Identify security requirements and implement necessary security controls
  • Provide security assurance support for security incidents/investigations
  • Implement security solutions to complement security suite
  • Execute changes to network security infrastructure
  • Provide technical security leadership when investigating security incidents
  • Manage network security and policies
  • Configure network and security devices
  • Assessing the security infrastructure and network and systems design to ensure system/network security
  • Manage the network security scans
group id: 10238000

Match Score

Powered by IntelliSearchâ„¢
image match score
Create an account or Login to see how closely you match to this job!