CruiTek ยท 1 day ago
Application Security Engineer
CruiTek is seeking a skilled Application Security Engineer to join their security team and help safeguard their retail applications and digital platforms. The ideal candidate will have hands-on experience in secure software development, vulnerability management, and risk mitigation within a retail environment.
Health CareInformation TechnologyStaffing Agency
Responsibilities
Implement and maintain secure coding practices across web and mobile applications
Conduct application security assessments, including code reviews, penetration testing, and threat modeling
Collaborate with development teams to integrate security into SDLC and CI/CD pipelines
Manage and remediate vulnerabilities identified through automated tools and manual testing
Develop and enforce security policies, standards, and guidelines for retail applications
Monitor emerging threats and recommend proactive security measures
Provide training and guidance to developers on secure coding and application security best practices
Qualification
Required
Security Engineer Level 3
5 years of experience in application security or secure software development
Strong knowledge of: OWASP Top 10 and common web/mobile vulnerabilities
Secure coding practices in languages such as Java, .NET, JavaScript
Application security tools (e.g., SAST, DAST, IAST, dependency scanning)
Experience with retail systems (e-commerce platforms, POS applications, APIs)
Familiarity with cloud security (AWS, Azure) and container security
Understanding of PCI DSS and other retail compliance requirements
Preferred
Certifications such as CSSLP, GWAPT, OSWE, or CEH
Experience with DevSecOps and integrating security into CI/CD pipelines
Knowledge of microservices architecture and API security
Strong analytical and problem-solving abilities
Excellent communication and collaboration skills
Ability to work in a fast-paced retail environment