Senior Application Security Engineer
RoundGlass, United States

Experience
1 Year
Salary
0 - 0
Job Type
Job Shift
Job Category
Traveling
No
Career Level
Telecommute
No
Qualification
As mentioned in job details
Total Vacancies
1 Job
Posted on
Oct 13, 2021
Last Date
Nov 13, 2021
Location(s)

Job Description

The Senior Cyber Security Engineer is a subject matter expert in multiple areas of cyber and information security practices, tools, and methodologies that enable and enforce secure best practices within enterprise applications.A successful candidate will bring experience in analyzing code, application architectures, and operating procedures to identify and remediate security vulnerabilities and gaps.What you’ll do:
  • Work closely with engineers to provide expert advice on secure SDLC (automated and manual code-review), and modern application security best practices,
  • Protect the company and its customers by identifying threats to company system, services and data while proposing remediation and mitigations actions and to reduce security risk
  • Provide guidance on hardening end-points, containers, APIs, applications, operating systems (e.g., Windows and Linux) and AWS cloud environments
  • Educate developers on security best practices including OWASP Top 10 vulnerabilities
  • Develop and monitor security standards for applications, endpoints, servers, containers, operating systems
  • Drive the configuration of cloud security controls to reduce attack surface, enforce data/service segregation and enhance perimeter defense
  • Review security alerts and determine appropriate courses of action based on the severity of the event
  • Participate in cyber incident response activities, including containing and eradicating attackers, then identifying root cause and exploited gaps
  • Educate users on secure best practices for protecting systems and data
Who we’re looking for:
  • Bachelor's Degree in Computer Science, Cybersecurity, or Information Technology, and with at least 7 years of related application security experience
  • Deeps experience in executing application vulnerability assessment and penetration (VAPT) testing, to include static and dynamic application security testing (SAST, DAST)
  • Experience working as a security or software dev/engineer with knowledge of container, mobile, and API secure development practices
  • Security testing and vulnerability identification tools including Kali Linux, Metasploit, Burp Suite, and vulnerability scanning tools
  • Experience with multiple programming/scripting languages (Python, Perl, etc.) preferred,
  • Knowledge of network and web related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols).
  • Experience working with cloud environments, such as AWS from both a developer and security perspective
  • Experience with operating vulnerability scanning solutions and interpreting scan results to assist system owners in remediation
  • Experience with developing security controls to support compliance programs, and monitoring/evaluating control effectiveness
  • Experience in assessing the security posture of third parties and vendors
  • Experience in monitoring security events to identify malicious activity, then executing response processes
  • Deep understanding of network and communications protocols, to include recommendations for hardening to reduce exposed attack surfaces
  • Experience using Mitre @ttack framework, Cloud Security Alliance and/or NIST cloud frameworks
  • Deep experience in securely managing identity systems and controls to maintain least privilege and protect access to systems and data
  • Ability to build scripts for analysis of large data sets to support security investigations and monitoring
  • Deep understanding of modern attacker tactics, techniques and procedures.
  • Ability to operate independently without frequent supervision or explicit direction
  • Excellent written and verbal communication skills
  • Industry related certifications are desirable
Why RoundGlass:
RoundGlass was built on the vision that wellbeing should be at the very center of our life journey. We are not only reimagining how the world experiences wellbeing, but how companies (like our own) support the wellbeing of their people.
We’re a group of talented, socially-conscious, gritty, innovators using technology and human energy to create a vibrant wellness ecosystem. Together, we’ve built an amazing community and we are always looking for people who share our passion. To learn more, visit our Website, Facebook, Instagram and LinkedIn.
RoundGlass does not discriminate against race, color, religion, sex, sexual orientation, gender identity, gender expression, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, genetic information (including characteristics and testing), military and veteran status, and any other characteristic protected by applicable law.
We rely on legitimate interest as a legal basis for processing personal information under th

Job Specification

Job Rewards and Benefits

RoundGlass

Information Technology and Services - Dhaka, India
© Copyright 2004-2024 Mustakbil.com All Right Reserved.