Senior Application Security Engineer Job at Motion Recruitment, Atlanta, GA

QkhHR1dzdkZUMFA2aHBZbVUwOGhhMkY4SFE9PQ==
  • Motion Recruitment
  • Atlanta, GA

Job Description

Position: Sr. Application Security Engineer

Location: Atlanta, GA 30354 (2-3 days/week onsite)

Term: 12 Months Contract

The successful candidate will use DevOps practices to support the enterprise in adapting its development and DevSecOps methodologies. This role involves building, administering, and supporting modern development tools to help the company’s cloud journey. Additionally, the candidate will apply secure coding best practices to find and address application vulnerabilities. The ideal candidate will have experience in implementing, deploying, and providing support for custom AWS Config Rules, CFN Hooks, and CFN Guard Rules. Be comfortable supporting applications across various cloud platforms, including AWS, Azure, and GCP. A strong background in reviewing open-source components is essential, along with the ability to recommend configuration or environmental changes that enhance security and reduce risk in 3rd Party components used by in-house developed applications. The candidate must be solutions-oriented, employing rigorous logic and methods to effectively tackle complex problems while exploring all available resources for answers. Strong documentation skills and familiarity with the complete software development life cycle are also crucial for success in this role.

Required Skills:

  • B.S. preferably in a technical or scientific field with 7 years of software and development experience, with a minimum of 5+ years of hands-on experience working with DevSecOps Technologies.
  • Minimum 5+ years hands-on experience working with Cloud technologies.
  • Experience in API testing tools (Postman, BurpSuite or any comparable tools)
  • Excellent understanding of DevSecOps techniques and processes, guide integration of various tools in DevSecOps processes (GitLab/GitHub, SonarQube, Jenkins, Selenium, Ansible, Docker, Kubernetes, and containerization).
  • Should be well versed with the AWS well architected framework or TOGAF and able to apply those principles while designing a solution
  • Experience building, engineering and supporting applications in the Cloud (AWS, Azure, GCP)
  • Experience conducting vulnerability risk and impact assessment
  • Understand how to integrate security capabilities in cloud and application lifecycle management platforms especially in a DevOps model
  • Excellent written and verbal communication skills
  • Strong sense of urgency and ownership

Preferred

  • Extensive experience in application security and/or ethical hacking
  • Extensive experience in software development
  • Experience integrating secure coding techniques with product teams
  • Professional certifications in Security, Cloud, Container or DevOps

Key Responsibilities:

  • Leads projects to implement tools in CICD pipelines to implement automated Static Application Security Test (SAST), Dynamic Application Security Test (DAST) and Source Code Analysis (SCA).
  • Works within the DevSecOps model to secure Containers, withing ROSA, Tekton and OpenShift pipelines
  • Designs, develops, plans, implements, and supports Cloud DevSecOps processes across multiple business units, ensuring alignment with secure coding best practices.
  • Possess extensive knowledge of CI tools such as Jenkins, Tekton, CircleCI, Gitlab, AWS CodePipeline etc.
  • Test driven mindset with experience in automation with development tools
  • Facilitates training on enterprise tools and best practices
  • Collaborate with and across Agile teams to design, develop, test, implement, and support technical solutions in full-stack development tools and technologies
  • Apply software development skills (e.g., Java, C#.NET, JavaScript) to recommend and apply secure coding practices
  • Utilize programming languages like JavaScript, Java, HTML/CSS, TypeScript, SQL, Python, and Go, Open-Source RDBMS and NoSQL databases, Container Orchestration services including Docker and Kubernetes, and a variety of AWS tools and services
  • Knowledge of OWASP secure coding standards.
  • Experience with Agile methodologies.
  • Experience with AWS and Kubernetes
  • Consult with development Teams to perform security reviews of software designs and help developers to ensure quality and robustness of our internal products
  • Conduct security assessments against web applications and APIs across a variety of technology stacks
  • Performs technical design reviews and code reviews.
  • Drive awareness and knowledge of security in the developer community.

Job Tags

Contract work, 2 days per week, 3 days per week,

Similar Jobs

General Dynamics Ordnance and Tactical Systems

Nondestructive Testing Technician Lead (Level 3 Job at General Dynamics Ordnance and Tactical Systems

 ...allied nations, is seeking an experienced onsite Nondestructive Testing Technician Lead (Level 3) to join our Camden, AR team . We...  ...techniques during the testing process. Conduct system performance checks in accordance with the applicable process standard.... 

Core-Mark

Class A Route Delivery Drivers Wanted Job Job at Core-Mark

Class A Route Delivery Drivers Wanted JobHere we grow again!! We are looking for trainee and experienced Class A CDL Delivery Drivers to join our convenience store delivery team who have a positive attitude and a customer-centric approach. Our drivers are best-in-class... 

LA ISLA CEVICHERIA

Farmers Market Position Job at LA ISLA CEVICHERIA

 ...We are looking for a person to work our booth at Farmers Markets, setting up the booth, selling product and interacting with customers, packing/loading car and unloading. Must be friendly and have good customer service. This position requires commuting from our restaurant... 

Marathon Mutts

Dog Walking Position Job at Marathon Mutts

Marathon Mutts is looking for an experienced Dog Walker. He/she will visit the homes of clients to take dogs out for exercise and, on occasion, provide their meals as needed. The ideal person for this position understands the safety and priority of the animals in their...

Professional Case Management

Senior Case Manager RN - Paid Drive Time Job at Professional Case Management

 ...Make a Difference on Your Own Schedule and Terms! Hiring Senior Case Managers in New Mexico Come join our growing team! A few of our perks: ~ Create your own schedule!~$42/hr. (including 100% of Hourly Wage Paid for Drive Time)~ Bonus Eligible Direct...