Senior Application Security Engineer responsible for ensuring secure design, development, deployment, and integrity across on-prem and SaaS environments.
Requirements
- Define and mature secure SDLC and AppSec program frameworks.
- Embed secure coding practices into development and backend platform engineering.
- Lead threat modeling and high-risk security reviews for major releases.
- Implement application security testing tools (e.g. SCA, ASPM), container scanning, and secrets detection in CI/CD pipelines.
- Perform Penetration Testing and manage external penetration testing efforts
- Manage application vulnerabilities from identification to remediation.
- Provide guidance for development teams.
- Design, maintain, and enforce organization-wide paved roads and guardrails