← Back to jobs

Momento USA Logo
Java Engineer – Application Security Remediation

Momento USA

 

Lake St Louis, MO, USA

Posted On: 15+ days ago
Experience: 5+ years
Availability: Hybrid
Openings: 2
Category: Java Engineer
Tenure: No Preference/Any
Related Jobs

No related jobs found

Description

You will analyze, fix, and validate vulnerabilities across Java-based and Node.js applications.

This role is hybrid.

Responsibilities

  • Analyze and fix vulnerabilities detected via SAST, DAST, and dependency analysis tools such as SonarQube, Veracode, Snyk, and Checkmarx.
  • Refactor code to mitigate risks including SQL Injection, XXE, deserialization attacks, XSS, CSRF, and authentication flaws.
  • Patch and upgrade vulnerable third-party libraries and dependencies using Maven or Gradle.
  • Collaborate with InfoSec and DevOps to validate and re-test remediation efforts.
  • Perform secure code reviews and recommend security best practices to developers.

Required Skills

  • 5+ years of experience in software development.
  • Strong proficiency in Core Java, Spring Boot, Node.js, and REST API development.
  • Solid understanding of secure coding principles and application security fundamentals.
  • Experience remediating vulnerabilities identified by automated scanning tools.
  • Familiarity with dependency management and patching libraries using Maven or Gradle.
  • Hands-on experience with JWT/OAuth2, input validation, and encryption techniques.
  • Working knowledge of Docker, Kubernetes, or cloud security principles.
  • Familiarity with DevSecOps pipelines and automated vulnerability management.

Preferred Skills

  • Experience with Kubernetes orchestration in production environments.
  • Deep knowledge of specific SAST/DAST tool configurations and rule tuning.

Education

Any Graduate

Related Jobs

No related jobs found

← Back to jobs