Unisys
Job Title: Senior Application Security Engineer
Get AI-powered advice on this job and access more exclusive features. Direct message the job poster from Unisys. Key Skills and Bonuses:
Pentest, OWASP, SAST/DAST/IAST. Bonus: LLM, US citizenship preferred, AWS, GenAI, certifications like GWAPT or Portswigger Academy. Must Have: OWASP Role Overview:
The senior application security engineer plans, coordinates, and implements application security throughout the software development lifecycle, including testing, remediation, and tool evaluation. The role involves assessing vulnerabilities, implementing security solutions, and leveraging the latest technologies to enhance code review capabilities. Responsibilities: Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools. Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize, and remediate security vulnerabilities. Integrate security practices into CI/CD pipelines to support DevSecOps initiatives. Maintain documentation of security findings, remediation plans, and compliance requirements. Develop and interpret security policies and procedures; participate in security compliance efforts. Develop and deliver training materials and perform security awareness sessions. Evaluate and recommend new security products and technologies. Leverage GenAI technologies to scale application security reviews and automate code analysis. Evaluate various application security tools such as SAST, DAST, IaC, and secrets detection tools. Stay current with emerging security threats and countermeasures. Train or explain common security issues to developers and assurance engineers. Perform AWS configuration reviews. Qualifications: Bachelor's degree in computer science, engineering, or related field. 5+ years in cybersecurity and application security. Familiarity with SAST, DAST, IAST tools. Understanding of AWS and OWASP top issues. Experience with CI/CD tools like Jenkins and GITLAB. Familiarity with GenAI tools is a plus. Strong technical knowledge in security engineering, cryptography, and application security. Security certifications such as GWAPT, OSWE, or Burp Suite Certified Practitioner are advantageous. Additional Details:
Seniority Level:
Mid-Senior level Employment Type:
Full-time Job Function:
Information Technology Industries:
IT Services and IT Consulting
#J-18808-Ljbffr
Get AI-powered advice on this job and access more exclusive features. Direct message the job poster from Unisys. Key Skills and Bonuses:
Pentest, OWASP, SAST/DAST/IAST. Bonus: LLM, US citizenship preferred, AWS, GenAI, certifications like GWAPT or Portswigger Academy. Must Have: OWASP Role Overview:
The senior application security engineer plans, coordinates, and implements application security throughout the software development lifecycle, including testing, remediation, and tool evaluation. The role involves assessing vulnerabilities, implementing security solutions, and leveraging the latest technologies to enhance code review capabilities. Responsibilities: Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools. Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize, and remediate security vulnerabilities. Integrate security practices into CI/CD pipelines to support DevSecOps initiatives. Maintain documentation of security findings, remediation plans, and compliance requirements. Develop and interpret security policies and procedures; participate in security compliance efforts. Develop and deliver training materials and perform security awareness sessions. Evaluate and recommend new security products and technologies. Leverage GenAI technologies to scale application security reviews and automate code analysis. Evaluate various application security tools such as SAST, DAST, IaC, and secrets detection tools. Stay current with emerging security threats and countermeasures. Train or explain common security issues to developers and assurance engineers. Perform AWS configuration reviews. Qualifications: Bachelor's degree in computer science, engineering, or related field. 5+ years in cybersecurity and application security. Familiarity with SAST, DAST, IAST tools. Understanding of AWS and OWASP top issues. Experience with CI/CD tools like Jenkins and GITLAB. Familiarity with GenAI tools is a plus. Strong technical knowledge in security engineering, cryptography, and application security. Security certifications such as GWAPT, OSWE, or Burp Suite Certified Practitioner are advantageous. Additional Details:
Seniority Level:
Mid-Senior level Employment Type:
Full-time Job Function:
Information Technology Industries:
IT Services and IT Consulting
#J-18808-Ljbffr