Voto Consulting LLC logo

Senior Application Security Engineer || W2 Only || Iselin, NJ || Charlotte, NC || Minneapolis, MN || Irving, TX || Chandler, AZ

Voto Consulting LLC

Sr. AppSec Engineer

12+ months contract

Contract on W2

Type: Hybrid

Location: Iselin, NJ (194 S Wood Ave) Charlotte, NC (300 S Brevard St) Irving, TX (401 W. Las Colinas Blvd) Minneapolis, MN - Chandler, AZ (2600 S Price Rd).

Job description

Must Haves

  • 5+ years of Information Security Engineering experience (Certification in information security (CISSP, CISM, CEH, etc.)
  • 5+ years of experience as Application Security and DevSecOps engineer collaborating with developers to adopt and mature secure development
  • 3+ years’ experience in one or more of programming languages (.Net, C#, Java, RUST, C++)
  • Ability to write automation scripts in Python, PowerShell to support internal projects
  • Experience with CI/CD pipelines and related technologies (e.g., GitHub, Jenkins, Maven, Artifactory, Harness, Xray, Curation)
  • Good understanding of Secure Software development lifecycle
  • Strong knowledge of OWASP Top 10 or CWE
  • Detailed oriented - must be able to create documentation on different SCA procedures and tool configuration
  • Experience with Jira/Confluence
  • Experience with container security working with technologies like k8s and container technologies such as Openshift

Day to Day

  • Managing security automation tools with main focus on SCA (i.e. Checkmarx One, BlackDuck) and other tools in the ecosystem along with supporting operational management with regularly scheduled upgrade of the tools
  • Interface with various internal teams ServiceNow AVR, DevOps and vulnerability operations team to make sure SCA vulnerabilities are identified and recorded per the application security policies and guidance
  • Collaborate with security architecture teams to design vulnerability management workflow, establish best practices and design guidance to optimize experience for developers
  • Adversarial security analysis on various application security requirements
  • Work with application security governance teams, risk & compliance partners on audits and recommending relevant policies
  • Collaborate with technology pipeline teams to improve code quality and vulnerability detection
  • Analyze, enhance, architect and support container security tools and platforms
  • Design and build advanced security solutions to strengthen open source software supply chains for effective automation and management

Job Type

Job Type
Contract
Location
United States

Share this job: