Role: Application Security Consultant
Location: 2 Broadway, New York, NY
Duration: Long Term
Β
F2F Interview at New York, NY
Β
Job Description:
The Application Security Consultant role is an on-premises position. The consultant will provide specialized security expertise to support product teams, product owners, infrastructure, and cybersecurity leadership. This role strengthens application security across the SDLC and DevOps through assessments, secure architecture reviews, tooling optimization, and operational governance. The consultant will also play a key role in onboarding, configuring, tuning, and monitoring protections across Akamai and Cloudflare WAF platforms, ensuring consistent security coverage across highβvalue, cloudβhosted, and externally facing applications.
Additionally, the consultant is expected to perform technical assessments, enabling development teams through tooling and coaching, and helping establish repeatable processes, metrics, and governance.
Technical Skills:
- 5+ years Handsβon experience with Cloudflare WAF (policies, rulesets, firewall rules, bot management, DNS, DDoS, logpush).
- 4+ Handsβon experience with Akamai WAF (KSD/Property Manager, Bot Manager, Edge DNS, log staging/testing).
- Deep understanding of OWASP Top 10, application security principles, secure development practices.
- 5+ Experience with SAST/DAST/SCA tools such as Checkmarx, BurpSuite, Fortify, or equivalents.
- Experience analyzing HTTP traffic, headers, payloads, and attack vectors (XSS, SQLi, RCE, deserialization, CSRF, SSRF, etc.).
- Experience with cloud platforms (Azure, AWS, SaaS) and modern application architectures.
- Experience integrating or consuming security telemetry from WAFs, scanners, SIEM/SOAR, and cloud logs to build dashboards and metrics.
Additional Skills:
- Database Security βΒ 2β4 years
- Information Security βΒ 4β6 years
- Java β 1β2 years
- Power App βΒ 2β4 years
- .NET Code Development βΒ 4β6 years
- IT Architecture βΒ 2β4 years
- Web Development βΒ 2β4 years
Β
Β