Information Security Specialist: Lead

Remote • Posted 3 hours ago • Updated 3 hours ago
Full Time
Remote
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Information Security
  • Software Development
  • Management
  • Routing
  • Data Deduplication
  • Onboarding
  • Software Development Methodology
  • Security Controls
  • Continuous Integration
  • Continuous Delivery
  • JFrog
  • Communication
  • Collaboration
  • Software Security
  • Testing
  • SCA
  • OWASP
  • Artificial Intelligence
  • Workflow
  • Supply Chain Management
  • DevSecOps
  • GitLab
  • ServiceNow
  • JIRA
  • Reporting
  • Scripting
  • Security Operations

Summary

Information Security Specialist - Lead (Application Security)

Key Responsibilities
  • Review and validate Static Application Security Testing (SAST) findings generated during the software development lifecycle.
  • Partner with development teams to investigate vulnerabilities, reduce false positives, and prioritize remediation activities.
  • Configure and maintain GitLab security approval workflows, Secure Merge Request controls, approval policies, and enforcement gates.
  • Support implementation of AI-assisted triage, remediation recommendations, and automated findings management.
  • Build and maintain automation for finding enrichment, correlation, routing, deduplication, and reporting.
  • Support onboarding and operationalization of new Application Security tooling and capabilities.
  • Drive risk-based prioritization and improve developer adoption of secure coding practices.
  • Collaborate with engineering, security, and product teams to optimize Secure SDLC processes and workflows.
  • Assist with integration of security platforms and enterprise technology solutions.
  • Provide guidance regarding remediation strategies, exception processes, and security best practices.
Required Qualifications
  • 10+ years of Application Security and/or Software Security experience.
  • Hands-on experience performing SAST reviews.
  • Experience integrating security controls into CI/CD pipelines.
  • Strong experience with source code vulnerability remediation.
  • Experience with GitLab.
  • Experience with Artifactory and/or JFrog platforms.
  • Ability to work independently and drive security initiatives with minimal oversight.
  • Strong communication skills and the ability to collaborate effectively with development teams and stakeholders.
Preferred Qualifications
  • Experience with Dynamic Application Security Testing (DAST).
  • Experience with Software Composition Analysis (SCA).
  • Experience with Polaris.
  • Experience with OWASP ZAP.
  • Familiarity with AI-enabled security automation and remediation workflows.
  • Experience with Container Security and Secrets Detection tools.
  • Understanding of software supply chain security and modern DevSecOps practices.
  • Experience integrating security platforms with GitLab, ServiceNow, Jira, and enterprise reporting solutions.
  • Experience leveraging APIs, scripting, and automation to improve security operations.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10427007
  • Position Id: 6f18190aeea886e561dca51e5093c43
  • Posted 3 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Today

Full-time

Compensation information provided in the description

Remote

Today

Full-time

USD 75,200.00 - 158,100.00 per year

Remote

Today

Full-time

USD 150,000.00 - 200,000.00 per year

Remote

Today

Easy Apply

Contract

$60 - $70

Search all similar jobs