About the job
Join our dynamic Information Security team as a Senior Application Security Engineer, where your deep knowledge in application security, security engineering, and software development will play a crucial role in enhancing our inline code testing and reporting processes. In this position, you will be responsible for implementing and managing application security tools, integrating them into our CI/CD pipelines, and providing essential support to development teams utilizing these tools and their findings.
This role is fully remote, allowing you to work from anywhere in the U.S.
Key Responsibilities:
- Deploy and oversee Application Security Testing (AST) tools, including SAST, DAST, IAST, and SCA, to pinpoint vulnerabilities in code and dependencies throughout the software development lifecycle.
- Manage Application Security Posture Management (ASPM) tools to streamline and consolidate findings from various solutions, seamlessly integrating them into our software development workflows.
- Provide first-line support to users by resolving false positives, guiding remediation efforts, and assessing security exception requests.
- Integrate security tools into Continuous Integration/Continuous Deployment (CI/CD) pipelines to enhance our development processes.
- Generate comprehensive reports detailing security findings and remediation initiatives.
- Exhibit high proficiency across a diverse array of technologies and platforms associated with application security, software design and development, containerization, and cloud environments.
- Communicate security risks effectively and promote secure development practices to development teams and their leadership.
- Understand and triage vulnerabilities and security risks at scale across various application development environments and business units.

