#cyberbelarus #cyberussia #cyberukraine #cyberemote #remotework
Estimated by CyberJobs salary (USD gross) - 4-7k Doxy.me (a healthcare product) - AppSec Engineer \ Architect - Full remote
Help your friends find their next dream job - share this postWhat Will You Do
- Serve as the subject matter expert for application security, providing guidance to Development, DevOps and Product teams
- Design and implement SSDLC practices including secure code reviews, static/dynamic code analysis, and vulnerability assessments
- Raise security awareness by pointing out potential security vulnerabilities and their potential impacts, during code reviews
- Implement continuous monitoring systems and tools to automatically identify potential security issues at the code, application and infrastructure layers
- Drive security improvements to production cloud environments
Our Expectations
- Ability to dissect new systems, product requirements, features to identify and develop security requirements
- Expertise in secure coding and performing automated or manual static analysis (Javascript preferable)
- Hands-on experience in conducting penetration testing and vulnerability assessment
- Hands-on experience in configuring and hardening cloud-based infrastructure (AWS preferable)
- Familiar with Agile software development methodologies, DevOps practices and tools
- Working experience with application security tools such as vulnerability scanners, SAST/DAST/IAST, Checkmarx. Snyk, Veracode or SonarQube
- Knowledge of OWASP Top Ten, NIST, Mitre ATT&ck Framework., etc.
- Good to have, but not required: security certifications such as OSCP, CEH, GWAPT, etc
Apply