Epicareer Might not Working Properly
Learn More

Application Security Engineer/REMOTE

Salary undisclosed

Apply on


Original
Simplified
job summary:

Exciting contract-to-hire opportunity with a growing start-up in the healthcare space. Client is looking to hire an experienced Application Security Engineer to join their GROWING security team. FULLY REMOTE opportunity although client has a large NYC office and in Nashville, TN.




location: New York, New York

job type: Contract

salary: $60.00 - 64.99 per hour

work hours: 8am to 5pm

education: Bachelors



responsibilities:


Client is seeking a highly skilled and motivated Application Security Engineer to join their GROWING Security team



Key Responsibilities:




  • Vulnerability Assessment and Management: Perform security assessments of our web based application, identifying potential vulnerabilities such as SQL injection, cross-site scripting (XSS), and cross-site request forgery (CSRF).
  • Code Review: Conduct secure code reviews to identify security flaws, and collaborate with developers to remediate issues in a timely manner.
  • Security Tooling: Utilize security tools like SAST, DAST, SCA and open-source security tools to identify security issues and improve the development lifecycle.
  • SDLC Enhancement: Review and recommend enhancements for our SDLC process, and provide a defined structure for design phase reviews
  • Threat Modeling: Help in creating threat models for new features and applications to identify security risks during the design phase.
  • Collaboration: Work closely with development teams, DevOps, and other internal stakeholders to embed security into the software development lifecycle (SDLC).
  • Secure Coding Training: Assist in delivering security awareness training and workshops to development teams.
  • Documentation: Maintain and contribute to the creation of security documentation, such as policies, procedures, and guidelines. Generate regular reports on the status of application security, highlighting improvements and areas requiring attention.

Compliance: Ensure that applications are compliant with security standards and regulations, such as HIPAA



Requirements:




  • Proficient in programming languages we use: React, Python, and PostgreSQL.
  • Proven experience in application security, including vulnerability assessments, design reviews and threat modeling
  • Strong understanding of web application architectures and common application security vulnerabilities
  • Knowledge of application security frameworks, such as OWASP Top 10..
  • Familiarity with AWS or other cloud service providers.
  • Experience with modern container technologies and container security best practices.

Relevant certifications such as CISSP, CEH, or CSSLP are a plus.







qualifications:

  • Experience level: Experienced
  • Education: Bachelors


skills:
  • Network Security
  • Network Security
  • Network Security
  • Enterprise Application Support



    Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

    At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact

    Pay offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including health, an incentive and recognition program, and 401K contribution (all benefits are based on eligibility).

    This posting is open for thirty (30) days.



  • Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
    Report this job