A global energy company is looking to bring on a hands on a Senior Application Security Engineer to be part of a team building out their AppSec program from the ground up. This role is highly technical, and requires candidates with previous experience working in OT and/or embedded/software product environments. You'll perform code reviews, conduct SAST/DAST/SCA scans, identify vulnerabilities in software, firmware, and OT systems, while supporting product security incident response activities. You'll integrate security into CI/CD pipelines and help evaluate third-party libraries, components, and dependencies.
Candidates must have a strong background in software development, cyber security, and previous experience working within an Operational Technology environment.
Long term contract (12+ months) with opportunity for conversion or extension
This role is on-site in Houston for the first 4 weeks, then remote with occasional travel.
Required Skills & Experience
- 5+ years of experience as an appsec or product security engineer
- Experience in OT environments a big plus
- Deep software development background
- Experience with hardware security a plus
- Experience with SCA, DAST, SAST, and code reviews