Senior App Sec


  • Microsoft Azure
  • Computer networking
  • API
  • Cisco Certifications
  • Web services
  • Cloud security
  • Security management
  • Firewall
  • C
  • Data

Job Description

Senior App Sec

This company is the United States financial watchdog that use heavy amounts of data and analytics to track every transaction on the stock market.

The company is located in the D.C. Metro area, and will remain 100% remote.

Required Skills & Experience:
  • Application Security (AppSec) domain knowledge/experience, including ALL of the following:
  • Manual source code review.
  • Experience analyzing DAST/SAST scan results (not just running the tools); Ideally with AppScan or Netsparker, and Checkmarx.
  • Application penetration testing; ideally with BurpSuite.
  • Solid Java Knowledge, and ideally at least historical Development Skills; e.g. a good understanding Core Java and ideally relevant frameworks (e.g. Spring, Hibernate, ...).
  • Strong understanding of both Web Application and Web Service architectures, as well as associated protocols.
  • Networking fundamentals (ideally security-centric).
  • Demonstrated history of making Security their career path through roles held and credentials obtained
Desired Skills & Experience:
  • Python Knowledge + Development Skills.
  • Capture the Flag (CTF) / red team exercise experiences.
  • Web Application Firewall (WAF) knowledge/experience.
  • AWS Development Skills (e.g. ideally not just AWS Console access, but API level exposures) OR solid AWS Security knowledge.
  • Relevant Credentials, such as (Masters in Cybersecurity, OSCP, CEH).
  • Any of the following additional credentials.
  • Microsoft 365 Security Administration.
  • Microsoft Azure Security Technologies.
  • Certified Cloud Security Professional (CCSP).
  • AWS Certified Solutions Architect.
  • AWS Certified Security Specialty (Associate or Professional).

Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.
This position doesn't provide sponsorship