Job Closed
This listing is no longer active.
Independent Recruitment Agency Specialising in IT, Engineering, Defence, Security, Space Systems and ITS
Application Security Engineer
Location
United States
Posted
143 days ago
Salary
$100K / year
Seniority
Senior
Job Description
Application Security Engineer
Tiger Resourcing Group
• Design, implement, and maintain secure application development practices across Java-based systems and microservices • Perform and manage SAST and DAST analysis within CI/CD pipelines, ensuring early detection and remediation of security flaws • Conduct security audits and penetration testing of web and mobile applications during development and pre-production phases • Continuously monitor and manage application vulnerabilities using automated scanning and manual validation methods • Collaborate with development teams to implement secure coding standards and improve overall application security posture • Track and assess the latest software versions, dependencies, and vulnerabilities, recommending timely upgrades and mitigation strategies • Implement and maintain best security practices for applications running in both cloud and on-prem environments • Participate in code reviews, threat modeling, and risk assessments as part of the secure SDLC process
Job Requirements
- Bachelor’s degree or higher in Computer Science, Electrical Engineering, or related field
- Minimum 5 years of experience in application security, DevSecOps, or similar roles
- Strong knowledge of Java and understanding of common web frameworks (Spring, Spring Boot)
- Proven experience in performing code security reviews, SAST/DAST analysis, and security auditing during CI/CD processes
- Practical understanding of security testing for web and mobile applications (OWASP Top 10, SANS Top 25)
- Hands-on experience with code scanning and pen-testing tools, integration with AI models
- Proficiency in scripting or programming languages (Python, JavaScript, or Shell scripting)
- Deep understanding of HTTP/HTTPS protocols, authentication mechanisms, and secure API design
- Integrity, accountability, and continuous learning mindset
- Excellent command of English (written and spoken)
- Certifications such as OSCP, OSWE, OSCE, or GPEN are a plus.
Related Guides
Related Categories
Related Job Pages
More Application Engineer Jobs
• Identify sales opportunities and provide technical knowledge • Create reports on customer requirements and costs • Serve in cross-functional after sales team for product launches • Partner with product management to identify technical changes
Senior Applications Engineer, Remote
Tailor私たちは、AIを活用してERPを民主化し、あらゆる企業の業務課題を解決するために、2つの柱で価値を届けています。 AI Native Headless ERPプラットフォーム「Tailor Platform™」の開発 Professional Services テイラーが挑戦する市場は、ERP市場であり、ソフトウェア市場全体の約3割を占める巨大産業です。
• Design and build composable ERP modules that solve real operational problems for retailers, manufacturers, and B2B businesses • Work across the stack - from GraphQL APIs and business logic to React frontends built on our AppShell framework • Create abstractions that balance flexibility with opinionated defaults, making modules easy to adopt and customize • Collaborate with forward deployed teams to understand customer needs and incorporate learnings into the module library • Occasionally embed with forward deployed teams to deliver for end-customers and validate module designs • Coach and review designs and code from technical partners and forward deployed teams, maintaining quality standards across the Omakase ecosystem • Document module patterns and contribute to our deployment playbook
• Be the Striim product expert and trusted technical advisor during application deployment. • Own customer-reported application issues and provide timely solutions support. • Provide syntactical suggestions and fixes to application code. • Be the in-house customer champion, coordinating with Striim customer support and stakeholders to drive technical advocacy, product evolution, and technical innovation. • Prioritize and manage multiple open cases efficiently. • Use the java IDE and built-in debugger to isolate code exceptions. • Follow up to ensure applications are fully functional post-troubleshooting. • Perform database performance tuning and optimization. • Assist the Striim Technical Support team in reproducing customer product-related issues. • Track customer issues, collaborate with support on customer-training-related matters, and work with the customer to develop and track product feature requests (PFRs). • Set up and manage internal systems (Docker, RDBMS, etc.) to reproduce customer issues.
• Lead the onboarding of web applications into a CDN, ensuring proper security policy integration and optimized delivery • Manage WAFs deployed on-premises, in the cloud, or in hybrid environments, including those co-managed with external service providers • Configure, maintain, and tune WAF rules to protect against web application threats, including OWASP Top Ten risks • Set up and execute DAST scans on web applications to identify vulnerabilities in runtime environments, validate WAF coverage, and provide actionable remediation guidance • Collaborate with development, infrastructure, and SOC/IR teams to ensure findings are triaged, addressed, and documented • Monitor application traffic and threat activity, leveraging automation and analytics to detect and respond to anomalies • Perform continuous testing and tuning of WAF policies based on threat intelligence, logs, and scan results • Contribute to incident response efforts related to application-layer attacks and vulnerabilities • Develop and maintain documentation related to WAF policies, scan results, application mappings, and remediation plans




