Description
You will minimize API security risk through discovery, management, and monitoring of vulnerabilities while supporting DevSecOps automation.
Responsibilities
- Design, develop, and test secure APIs using REST, GraphQL, or gRPC.
- Automate API security assessments into CI/CD pipelines.
- Review software designs to ensure required security controls are included.
- Administer API security testing tools including Salt, Neo, and Data Theorem.
- Perform API code reviews and advise product development teams on technical security issues.
Required Skills
- 5+ years of experience in software engineering with a track record of delivered projects.
- Proficiency in Python, Java, or JavaScript.
- Hands-on experience with REST and GraphQL.
- Experience with API Security, AuthN, and AuthZ.
- Experience with API security testing and triage.
- Knowledge of automating DevSecOps practices and pipelines.
- Ability to align security control implementations with information security policies.
Preferred Skills
- Experience with gRPC.
- Any degree.