Application Security Engineer - NY or NJ Locals only

Hybrid in Brooklyn Heights, NY, US • Posted 30+ days ago • Updated 5 days ago
Contract W2
Contract Corp To Corp
No Travel Required
Hybrid
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

🤯 Applying directly to the forehead...

Job Details

Skills

  • NIST 800-53
  • SAML
  • OWASP
  • WebSocket
  • Software Security
  • Spring Framework
  • Python
  • RESTful
  • SCA
  • HTTP
  • HTTPS
  • J2EE
  • Java
  • JavaScript
  • EMS
  • Burp Suite
  • Authorization
  • Authentication
  • OIDC
  • OAuth2

Summary

Application Security Engineer

Brooklyn, NY

PruTech Solutions, Inc.

About PruTech

Founded in 1998, PruTech is dedicated to problem-solving, creating solutions, and maintaining strong partnerships with its clients. PruTech serves a diverse list of clients in different industries from government to finance, retail, and manufacturing. PruTech has offices in New York City, Washington DC, North Carolina, and two nearshore offices in Mexico City and India.

With over 20 years of Information Technology and system integration experience, PruTech provides multiple ways to assist organizations with future technology requirements including:

  • Project based system integration
  • Custom software solutions
  • Package implementations
  • Consulting and advisory services
  • Big data and analytics
  • Nearshore and offshore services

Position Overview

The Application Security Engineer is embedded within the Application Development team and ensures security is integrated into all stages of software development. The role focuses on designing and building secure applications while working closely with application administrators who manage security tools and CI/CD pipelines.

This position is responsible for enabling developers to produce secure, resilient, and compliant software for FDNY’s web, mobile, API, GIS, and cloud-based systems supporting Fire, EMS, and administrative operations.


Core Responsibilities

1. Secure Software Development

  • Establish and apply secure coding practices within the development team.
  • Define and enforce secure coding standards for Java, .NET, Python, and JavaScript applications.
  • Conduct secure design and architecture reviews for new and legacy systems.
  • Educate developers on secure coding practices, authentication/authorization best practices, and common application vulnerabilities.
  • Apply protections aligned with:
    • OWASP Top 10
    • OWASP API Security Top 10

2. Application & API Security

  • Design and implement secure REST APIs and web services.
  • Implement secure authentication/authorization using:
    • SAML2
    • OIDC
    • OAuth2
  • Secure Java and JavaScript applications, including:
    • Spring Boot
    • React
  • Ensure secure handling of tokens, sessions, and secrets.
  • Collaborate with App Admins and Security team to integrate applications into WAFs, load balancers, and other security monitoring tools.

Mandatory Qualifications

  • Minimum 4+ years in secure application development.
  • Prior hands-on software development experience.
  • Strong understanding of:
    • Web and mobile application architecture
    • Internet protocols (HTTP, HTTPS, WebSockets)
    • REST API security
  • Expertise in SAST, DAST, and SCA concepts (understanding results and remediation), in collaboration with App Admins.
  • Familiarity with security tools such as Veracode, Burp Suite, Zimperium, Prisma, Rapid7.
  • Experience applying NIST 800-53 and 800-171 controls at the application design level.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to work independently within a development-focused team.

Preferred Qualifications

  • Experience with containerized applications (Docker, Kubernetes).
  • Knowledge of:
    • Core Java, J2EE, Spring Boot
    • React, AngularJS, HTML5, CSS, JavaScript
  • Experience designing secure GIS systems.
  • Familiarity with public safety or emergency response systems.

 

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10117953
  • Position Id: 8850064
  • Posted 30+ days ago

Company Info

About Prutech Solutions

PruTech is an established Business Support and Information Technology consulting company with over 10 years experience in successfully partnering with private and public sector organizations. We provide the best quality and value to our clients in various industries, which include Finance, Pharmaceutical, Healthcare, Retail and Government. We help our clients achieve tactical and strategic goals by working closely with them in the areas of IT Consulting & Staffing, Customized IT Solutions, Temporary Staffing and Offshore Development Services.



Since our inception in 1998, PruTech management has strived to provide innovative solutions and exceptional staff for numerous Business Support and IT projects. With our strong recruiting expertise and in-depth experience, our responsiveness to the clients' needs is comparable to the best in the industries we serve. We always exceed client expectations in finding the best qualified professionals within the time frame and budget specified for a task.


Careers
About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Brooklyn, New York

5d ago

Easy Apply

Third Party, Contract

Depends on Experience

Hybrid in New York, New York

5d ago

Easy Apply

Contract

$40 - $80

Hybrid in Brooklyn, New York

5d ago

Easy Apply

Contract

$60+

Search all similar jobs