Job Closed

This listing is no longer active.

Coalfire logo
Coalfire

Cyber solutions that move you forward, faster.

Consultant, Application Security

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 1,001-5,000Since 2001H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

131 days ago

Salary

$105K - $138K / year

Seniority

Senior

Bachelor Degree3 yrs expEnglish

Job Description

Consultant, Application Security

Coalfire

• Working independently and collaboratively with a team to both lead and support • Perform penetration testing on applications with complex technology stacks from both a: Unauthenticated perspective and Authenticated perspective • Dynamically flex your skills when assessing emerging or custom technologies. • Lead complex engagements to provide a technical consistency approach across multiple tests. • Contextualize vulnerabilities and assess realistic impact to a client accounting for mitigating and aggravating factors. • Manage priorities and tasks to achieve utilization targets. • Operate with professionalism both internally and with clients. • Ensure quality reports and services are delivered efficiently and on time. • Support sales and business growth by scoping out potential opportunities. • Maintains strong depth of knowledge in the practice area. • Collaborate with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.

Job Requirements

  • Application penetration testing and assessment tradecraft and methodologies (including browser-based, API)
  • Strong working knowledge of at least two programming or scripting languages
  • Strong understanding of security principles and industry best practices.
  • Minimum of 3 years’ experience in a consulting/professional services role
  • Minimum of 3 years’ experience in Application Security and/or Software Development
  • Excellent consulting skills including:
  • Time management, performing adjacent tasks while ensuring on-time delivery, escalating issues as needed
  • Verbal communication, leading client calls for project kickoffs and debrief
  • Written communication
  • Report writing, for both executive audiences and technical staff
  • Expert proficiency in Web Application Penetration Testing
  • Excellent overall technical skills, with strong expertise in at least one of the following:
  • Mobile Application Penetration Testing
  • Hardware Penetration Testing
  • Cloud Penetration Testing
  • AI Penetration Testing
  • Secure Code Review
  • Thick Application Penetration Testing
  • Container Penetration Testing
  • Network Active Directory Penetration Testing

Benefits

  • paid parental leave
  • flexible time off
  • certification and training reimbursement
  • digital mental health and wellbeing support membership
  • comprehensive insurance options

Related Categories

Related Job Pages

More Security Engineer Jobs

Business Wire logo

Senior Manager, Cybersecurity Architecture

Business Wire

Global Leader in News Content Distribution

Security Engineer131 days ago
OtherRemoteTeam 501-1,000Since 1961H1B No Sponsor

• Develop and maintain BW’s enterprise cybersecurity strategy and long-term roadmap. • Lead architecture decisions across cloud, application, identity, data, vulnerability management, and email security domains. • Oversee the implementation and ongoing maintenance of approved security architectures, controls, and technologies. • Ensure security controls are properly deployed, configured, validated, and continuously monitored for effectiveness. • Promote the adoption of Zero Trust principles and secure-by-design engineering practices. • Offer security guidance for AI projects, automation systems, and other emerging technologies. • Work with IT and business teams to ensure the secure design and roll-out of new projects. • Act as BW’s main leader and primary contact for our external cyber defense partner. • Evaluate the delivery of security monitoring, threat detection, response recommendations, and threat insights. • Collaborate to enhance detection coverage, response workflows, communication methods, and tuning. • Evaluate service delivery performance and ensure alignment with BW’s cybersecurity priorities. • Provide strategic leadership during cybersecurity incidents, coordinating with IT, Legal, HR, Privacy, Communications, and other stakeholders. • Serve as the executive-facing cybersecurity representative during significant security events, and coordinate the execution of operational response activities. • Communicate incident severity, business impact, risks, and recommended remediation actions to executive leadership. • Lead post-incident reviews and ensure lessons learned are incorporated into long-term improvements. • Represent cybersecurity during internal audits, external audits, and cybersecurity assessments conducted by key enterprise stakeholders. • Maintain alignment with frameworks such as NIST CSF, ISO 27001, SOC2, and relevant privacy regulations. • Offer senior-level guidance in developing and improving cybersecurity governance programs, policies, standards, and secure architecture guidelines. • Lead enterprise cybersecurity risk assessments and ensure corrective actions are prioritized and implemented effectively. • Provide oversight and direction for cybersecurity elements of privacy and data protection initiatives. • Lead cloud security architecture across AWS and other platforms used by BW. • Guide secure software development practices and coordinate application security reviews. • Oversee identity and access management strategies, including modern authentication and privileged access controls. • Drive Zero Trust adoption across networks, identity, and application environments. • Establish governance and security frameworks for responsible AI usage and advanced automation technologies. • Lead team members focused on cybersecurity architecture, governance, privacy, and strategic initiatives. • Mentor and develop staff capabilities, fostering a culture of continuous learning and innovation. • Strengthen collaboration across IT, Legal, Privacy, Risk, and other business areas to advance cybersecurity maturity. • Act as a trusted advisor to senior leadership on cybersecurity risk, architecture decisions, and strategic initiatives.

United States
$220K - $230K / year
Job Closed
Contrast Security logo

Senior Product Manager – Application Security

Contrast Security

A world-leading code security platform company purposely built for developers to get secure code moving.

Security Engineer131 days ago
OtherRemoteTeam 201-500Since 2014H1B Sponsor

• Own and lead the Application Security product roadmap and strategy, ensuring alignment with overall business goals. • Work closely with customers to understand their security requirements, technical environments, and operating models for scaling security programs. • Lead the complete product lifecycle, from high-level strategy and market analysis to detailed user stories and product requirements. • Act as a liaison between technical teams (engineering and design) and business stakeholders to ensure alignment on goals and timelines. • Establish and track clear metrics to measure product success and customer adoption. • Maintain a deep understanding of AppSec market trends and technologies to create a compelling and competitive product strategy.

United States
$165K - $210K / year
Job Closed
Live Nation Entertainment logo

Cyber Security Compliance Analyst

Live Nation Entertainment

A Fortune 500 company lauded for innovative business practices by Fast Company magazine, Live Nation Entertainment is a global leader in live entertainment and

Security Engineer131 days ago

• Lead Payment Card Industry Data Security Standards (PCI DSS) Assessments as an ISA • Document assessment findings, provide gap analysis and recommendations for remediation • Provide advice and guidance to business units in all areas relating to payment security, including PCI DSS (Payment Card Industry Data Security Standards) and security best practices aligned to Cyber Security strategy • Liaise with external security assessment firms to ensure on-time completion of projects • Assist in preparing formal presentations of compliance status and issues to business units and management. • Partner with business units on the creation and collection of evidence in preparation for internal and external assessments • Lead Quarterly Security Reviews (QSRs) with business teams to ensure applicable PCI DSS controls are being performed and maintained • Advocate security best practice throughout the business • Assist in responding to compliance queries from third parties, clients, client reps, legal, advanced product specialists on behalf of the company

California
$67K - $84K / year
Job Closed
KSM (Katz, Sapper & Miller) logo

Senior Security Engineer

KSM (Katz, Sapper & Miller)

Advisory, tax, and audit firm providing visionary people with inspiration and insight to achieve great things.

Security Engineer131 days ago
OtherRemoteTeam 201-500Since 1923H1B No Sponsor

• Own remediation of cloud, identity, and application security findings • Design, implement, and maintain security controls across AWS • Triage and validate security alerts • Lead technical investigation and containment of security incidents • Coordinate incident response with IT, engineering, and external partners • Perform root cause analysis and drive preventative improvements • Improve detection quality by tuning alerts • Support compliance efforts such as SOC 2 • Automate repeatable security tasks • Document incidents, risks, remediation actions, and outcomes • Act as a technical escalation point and mentor

United States
Job Closed