Expanding the boundaries of human potential through science
Application Security Specialist
Location
India
Posted
72 days ago
Salary
0
Seniority
Senior
Job Description
Application Security Specialist
Revvity
• Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST), review their outputs, and assist the development team with remediation strategies. • Configure and manage security tools such as Checkmarx and leverage GitHub's native security features to scan vulnerabilities in the codebase and dependencies. • Ensure integration of security scans within our CI/CD pipelines to identify vulnerabilities early in the development process. • Implement and enforce security best practices for containerization within AWS ECS and ECR environments, focusing on secure configurations, image scanning, and robust access control measures. • Lead the coordination and management of vulnerability scanning and remediation efforts across the application stack, encompassing the codebase, containers, and AWS infrastructure. • Conduct thorough penetration testing on products and systems, including web applications and services, to identify and exploit security flaws. • Participate in triage calls with cross-functional teams and effectively communicate vulnerability details, risks, and potential impacts to stakeholders.
Job Requirements
- Over 3-5 years of hands-on experience in application security.
- Advanced proficiency in tackling technical challenges independently.
- Basic understanding of AWS cloud technologies and environments.
- Familiarity and experience with tools like Snyk, Veracode, Gitleaks and Burp Suite will be an added advantage.
- Strong knowledge of web application frameworks (such as OWASP) and CI/CD frameworks.
- Experience with scripting languages (e.g., Python, JavaScript, PowerShell, Ruby, PHP) to develop custom scripts.
- Familiarity with shift-left tools and application security workflows.
- Excellent collaboration skills to work with cross-functional teams towards shared goals.
- Excellent written and verbal communication skills.
- Bachelor’s degree in information technology, Computer Science, or equivalent practical experience.
Benefits
- Health insurance
- Retirement plans
- Paid time off
- Flexible work arrangements
- Professional development
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• leitest komplexe Projekte im Bereich Cybersecurity und IT-Risiken innerhalb eines internationalen Programms • bringst deine Expertise in Informationssicherheit ein und steuerst die Umsetzung sicherheitsrelevanter Anforderungen • koordinierst Ad-hoc-Anfragen und priorisierst Aufgaben zur Einhaltung von Projektzeitplänen • strukturierst Projekte und planst Ressourcen für eine erfolgreiche Umsetzung • überwachst IT- und Business-Projekte und stellst sicher, dass IT-Risiken und Sicherheitsaspekte berücksichtigt werden • steuerst die Zusammenarbeit zwischen verschiedenen Stakeholdern und förderst eine effektive Kommunikation • entwickelst kreative Lösungsansätze für komplexe Herausforderungen im Cybersecurity-Umfeld • kommunizierst Anforderungen und Änderungen im IT- und Cyber-Risiko-Referenzrahmen und integrierst diese in Projekte und Assets
Senior Research Security Policy Analyst
University of Notre DameLocated on a 1,250-acre campus in Notre Dame, Indiana, the University of Notre Dame is considered one of the top universities in the United States. The Universi
• Identify, analyze, track, and communicate new and emerging federal, state, and sponsor research security legislation, policies, requirements, and resources. • Interpret complex regulatory guidance and provide clear recommendations to University leadership, researchers, and staff. • Facilitate compliance with federal, state, sponsor, and institutional research security requirements, including health research–specific compliance obligations and implementation of requirements related to health research data. • Provide high-level support related to research security aspects of sponsored projects. • Conduct initial reviews of international outside activities and agreements to assess research security and compliance considerations. • Support the development, revision, and implementation of University policies, guidance documents, and resources related to research security. • Develop educational materials and provide outreach, training, and advisory support to researchers and staff to promote awareness and compliance. • Serve as a subject matter expert on research security matters and advise internal stakeholders on risk mitigation and best practices. • Provide program management for sponsored projects, including coordinating project activities, engaging researchers and stakeholder groups, supporting recruitment efforts, and developing reports, products, and resources. • Coordinate user testing and stakeholder feedback processes to inform project deliverables and continuous improvement efforts. • Manage multiple priorities in a dynamic regulatory environment while maintaining accuracy and attention to detail.
• You will aid our Product Managers in developing secure and resilient product designs. • You’ll become a respected advisor to our software engineers and you’ll help them solve security & compliance problems without limiting product functionality or adding tech debt. • You will design, build, and introduce security tooling that improves assurance of code in our pipelines and accelerates time to deployment of code. • You’ll focus on training and education with your software engineering counterparts to improve velocity and security of our developed code. • You’ll conduct threat modeling exercises and work closely with product & engineering to address the risks that you’ve identified. • Your input as a security practitioner will be valuable for our Product Management team as we develop tooling to help our clients’ security and IT teams manage their use of our platforms.
IGA Engineer
Manpower/itecSince 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.
Role Description We are seeking a highly skilled IGA Engineer to join the ICAM Cyber Modernization project team. This candidate is responsible for the design, architecture, implementation, and integration of an enterprise identity governance administration solution. - Strong understanding of legacy and modern authentication principles and policies. - Experience in identity/lifecycle management and access management, including both infrastructure and specific configuration knowledge. - Hands-on experience within three or more of the following technologies: - Identity Governance Administration - Identity & Access Management - Active Directory - EntraID - SSO - IT Service Management (ITSM) - Scripting/development experience with two or more of the following: - REST API - LDAP - SQL - PowerShell - Object-oriented Programming As an IGA Engineer, you will be responsible for managing and supporting Identity Governance and Administration solutions for the Department. You will work closely with various teams to ensure that identity and access management processes align with the department's security policies and compliance requirements. This role will involve strategically designing, configuring, maintaining, and troubleshooting IGA systems to ensure efficient and secure identity management. Qualifications - U.S. Citizenship Mandatory: Candidates for this position are required to be a US Citizen and will be subject to a background investigation. Benefits - Comprehensive benefits package. - Competitive pay. Company Description Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.


