Application Security / Web Security Consultnat

Houston, TX, US • Posted 12 hours ago • Updated 8 hours ago
Contract W2
Contract Independent
Contract Corp To Corp
12 Months
On-site
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • application Security
  • web security
  • .NET
  • SAST
  • DAST
  • WAF
  • DDoS
  • AWS
  • Azure
  • CISSP
  • CEH
  • OSCP
  • NERC CIP

Summary

Job Title: Senior Cybersecurity Consultant - Application Security / Web Security

Location: Houston, TX (Onsite)

Contract

Key Responsibilities:

  • Lead security assessments and vulnerability management across the full portfolio of ~90 .NET-based web applications (customer-facing and internal)
  • Design and implement Web Application Firewall (WAF) policies and DDoS mitigation for customer-facing platforms
  • Perform application security reviews of .NET/full-stack codebases; embed SAST/DAST tooling into CI/CD pipelines
  • Drive secure Software Development Lifecycle (SDLC) and DevSecOps practices in partnership with .NET engineering teams
  • Monitor, detect, and respond to cyber threats targeting public-facing infrastructure
  • Conduct penetration testing and coordinate remediation across both customer-facing and internal applications, prioritized by risk
  • Ensure compliance with NERC CIP and other utility-sector regulatory requirements, including access management and incident response obligations
  • Evaluate and harden cloud infrastructure security (AWS/Azure) supporting the application portfolio
  • Apply Zero Trust principles across internal and customer-facing environments
  • Partner with IT, application, and infrastructure teams to embed security best practices
  • Prepare security reports and risk assessments for leadership

Required Skills & Experience:

  • 8+ years of experience in cybersecurity, with a strong focus on application and web security
  • Hands-on application security experience with .NET/full-stack environments (secure coding review, SAST/DAST integration)
  • Strong hands-on experience with WAF, DDoS mitigation, and vulnerability management tools
  • Solid understanding of secure SDLC and DevSecOps practices
  • Experience with cloud security (AWS and/or Azure)
  • Working knowledge of NERC CIP or other energy/utility sector compliance frameworks
  • Scripting ability (Python, PowerShell, or Bash) for automation of security tasks
  • Relevant certifications preferred: CISSP, CEH, OSCP, or equivalent
  • Strong communication skills to work with both technical teams and leadership

Preferred Qualifications:

  • Prior experience in the energy/utility sector, particularly with OT/IT convergence awareness
  • Experience securing high-traffic, customer-facing digital platforms alongside internal business applications
  • Familiarity with SIEM tools and incident response processes
  • Zero Trust architecture implementation experience
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id:
  • Position Id: 9070410
  • Posted 12 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Houston, Texas

Today

Easy Apply

Contract

Depends on Experience

Houston, Texas

Today

Contract

$55 - $60 hourly

Houston, Texas

Today

Full-time

USD 125,500.00 - 247,100.00 per year

Texas City, Texas

7d ago

Easy Apply

Full-time

150,000 - 200,000

Search all similar jobs