← Back to jobs

Envision Technology Solutions (ETS) Logo
Application Security Specialist
Posted On: 30+ days ago
Experience: 5+ years
Availability: Onsite
Openings: 1
Category: Application Security Engineer
Tenure: No Preference/Any
Related Jobs

No related jobs found

Description

Job Description:-

Key Responsibilities

  • Perform application security assessments, code reviews, and security testing.
  • Conduct Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and penetration testing.
  • Identify, analyze, prioritize, and remediate application vulnerabilities.
  • Integrate security controls into CI/CD pipelines and DevSecOps processes.
  • Collaborate with developers to implement secure coding best practices.
  • Perform threat modeling and security risk assessments.
  • Review application architecture for security weaknesses.
  • Ensure compliance with security standards and regulatory requirements.
  • Monitor and respond to application security incidents and vulnerabilities.
  • Manage vulnerability remediation efforts and track security findings.
  • Support secure software development throughout the SDLC.
  • Provide security awareness training and guidance to development teams.
  • Prepare security reports, audit documentation, and compliance evidence.

Required Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Security, or a related field.
  • 4+ years of experience in Application Security, Cybersecurity, or Secure Software Development.
  • Strong understanding of secure coding practices and application security principles.
  • Experience with OWASP Top 10, CWE, CVSS, and Common Attack Patterns.
  • Hands-on experience with SAST, DAST, SCA, and vulnerability scanning tools.
  • Knowledge of authentication, authorization, encryption, and identity management.
  • Experience with REST APIs, web applications, and microservices security.
  • Familiarity with cloud security (AWS, Azure, or Google Cloud Platform).
  • Experience integrating security into CI/CD pipelines.
  • Strong analytical, troubleshooting, and communication skills.

Preferred Qualifications

  • Certifications such as CSSLP, CISSP, CEH, OSCP, or GIAC.
  • Experience with DevSecOps and Infrastructure as Code (IaC).
  • Knowledge of container security (Docker, Kubernetes).
  • Experience with API security and OAuth 2.0/OpenID Connect.
  • Familiarity with PCI DSS, HIPAA, SOC 2, ISO 27001, or NIST frameworks.
  • Experience working in Agile/Scrum environments.

Required Technical Skills

  • Application Security
  • OWASP Top 10
  • Secure SDLC
  • Secure Coding
  • Threat Modeling

Education

Any Graduate

Related Jobs

No related jobs found

← Back to jobs