Application Security Advisor
Job Title: Application Security Advisor / Application Developer
Location: Hybrid in Reston, VA / Plano, TX
We are seeking a skilled and motivated Security Advisor / Application Developer with a strong development background and a keen interest in security. This role will play a key part in our Security Coaches Training & Advisor Program within the AppSec division, focusing on training FTEs on secure coding practices, guiding remediation efforts, and driving vulnerability management initiatives.
The ideal candidate should have hands-on coding experience in Java or Python, a solid understanding of secure coding, and familiarity with vulnerabilities in source code, web APIs, and third-party open-source libraries.
Key Responsibilities:
- Deliver secure coding training sessions to internal FTEs as part of the Security Coaches Training & Advisor Program.
- Perform vulnerability scanning (source code, web APIs, third-party open source).
- Assist development teams in vulnerability remediation and provide technical guidance.
- Develop and maintain templates for vulnerability scanning and remediation processes.
- Collaborate with application teams to integrate security best practices throughout the SDLC.
- Conduct static and dynamic application security testing (SAST/DAST) and interpret results.
- Provide advisory support to development teams on secure architecture and design.
- Participate in code reviews with a focus on security flaws and improvements.
- Stay up to date with current security threats, vulnerabilities, and remediation techniques.
Required Skills & Qualifications:
- Bachelor’s Degree in Computer Science, Information Systems, or a related field.
- 10+ years of software development experience with a strong background in application development.
- Proficiency in Java or Python programming languages.
- Solid understanding of the Software Development Lifecycle (SDLC).
- Strong knowledge of source code security, web API vulnerabilities, and third-party open-source risk.
- Experience with vulnerability scanning tools and techniques (SAST, DAST, dependency scanning, etc.).
- Ability to analyze, design, develop, and unit test complex system-level applications.
- Familiarity with technologies such as J2EE, Java, EJB, SQL, Oracle, C/C++, or similar.
- Strong understanding of secure coding principles, OWASP Top 10, and related security frameworks.
- Excellent communication and advisory skills, able to work closely with developers and leadership.
- Professional certifications (such as CSSLP, OSCP, CEH, or equivalent) are a plus.
Job Title: Application Security Advisor / Application Developer
Location: Hybrid in Reston, VA / Plano, TX
We are seeking a skilled and motivated Security Advisor / Application Developer with a strong development background and a keen interest in security. This role will play a key part in our Security Coaches Training & Advisor Program within the AppSec division, focusing on training FTEs on secure coding practices, guiding remediation efforts, and driving vulnerability management initiatives.
The ideal candidate should have hands-on coding experience in Java or Python, a solid understanding of secure coding, and familiarity with vulnerabilities in source code, web APIs, and third-party open-source libraries.
Key Responsibilities:
- Deliver secure coding training sessions to internal FTEs as part of the Security Coaches Training & Advisor Program.
- Perform vulnerability scanning (source code, web APIs, third-party open source).
- Assist development teams in vulnerability remediation and provide technical guidance.
- Develop and maintain templates for vulnerability scanning and remediation processes.
- Collaborate with application teams to integrate security best practices throughout the SDLC.
- Conduct static and dynamic application security testing (SAST/DAST) and interpret results.
- Provide advisory support to development teams on secure architecture and design.
- Participate in code reviews with a focus on security flaws and improvements.
- Stay up to date with current security threats, vulnerabilities, and remediation techniques.
Required Skills & Qualifications:
- Bachelor’s Degree in Computer Science, Information Systems, or a related field.
- 10+ years of software development experience with a strong background in application development.
- Proficiency in Java or Python programming languages.
- Solid understanding of the Software Development Lifecycle (SDLC).
- Strong knowledge of source code security, web API vulnerabilities, and third-party open-source risk.
- Experience with vulnerability scanning tools and techniques (SAST, DAST, dependency scanning, etc.).
- Ability to analyze, design, develop, and unit test complex system-level applications.
- Familiarity with technologies such as J2EE, Java, EJB, SQL, Oracle, C/C++, or similar.
- Strong understanding of secure coding principles, OWASP Top 10, and related security frameworks.
- Excellent communication and advisory skills, able to work closely with developers and leadership.
- Professional certifications (such as CSSLP, OSCP, CEH, or equivalent) are a plus.