← Back to jobs

PACE Computer Solutions Inc Logo
Application Security PenTester

PACE Computer Solutions Inc

 

Fairfax, VA, USA

Posted On: Just posted
Experience: 3+ years
Availability: Remote
Openings: 1
Category: Application Security Engineer
Tenure: No Preference/Any
Related Jobs

No related jobs found

Description

Own application security testing, vulnerability remediation, and DevSecOps integration for Java and Scala applications.

This role is remote.

Responsibilities

  • Perform manual and automated code reviews to identify and remediate vulnerabilities in Java and Scala applications.
  • Conduct static, dynamic, and penetration security testing of Web Applications and REST APIs using BurpSuite Pro.
  • Integrate and automate security tools within CI/CD Jenkins pipelines.
  • Execute third-party library security assessments and dependency analysis.
  • Write comprehensive reports detailing findings and provide mitigation recommendations to application owners.

Required Skills

  • 3+ years of hands-on application security penetration testing experience using BurpSuite Pro.
  • 2+ years of experience in vulnerability and risk assessments, security policy development, and technical security architecture.
  • Deep understanding of OWASP Top 10 and SANS 25.
  • Proficiency in Java, JavaScript, Python, or UNIX shell.
  • Hands-on experience automating security tools in Jenkins, specifically OWASP ZAP, Nessus, Fortify, or Sonatype Nexus.
  • Experience with Secure SDLC, DevSecOps principles, and Cloud security best practices.
  • Familiarity with compliance frameworks such as NIST 800-Series, DIACAP, FISMA, FedRAMP, or FIPS.
  • At least one recognized security certification (CISSP, GWAPT, CEH, LPT, or CCSP).

Preferred Skills

  • Experience working within DevOps processes and CI/CD environments.

Education

Any Graduate

Related Jobs

No related jobs found

← Back to jobs