A-Line Staffing Solutions · 5 hours ago
Cybersecurity Engineer
A-Line Staffing Solutions is seeking a Cybersecurity Engineer IV who will act as a Subject Matter Expert in Application Security. The role involves performing AppSec testing activities, coordinating vendor pen testing, and coaching developers to integrate security into the software development life cycle.
Responsibilities
Perform penetration testing against products and systems, including web applications, web services, and mobile devices
Collaborate with stakeholders to develop remediation strategies
Assist with delivery of secure development training
Demonstrate practical/working exploitation of security flaws
Develop and enhance process to automate the delivery of application security metrics
Review SAST/DAST/IAST output for false positives, and assist development with remediation
Serve as an application security Subject Matter Expert for projects
Participate in threat modeling exercises
Effectively communicate vulnerability details, risks, and potential impacts to, application owners, developers, stakeholders, and partners
Act as a mentor for junior team members/interns
Design, implement, and support security-focused tools and services
Develop low-level tools that improve security testing, reporting, and monitoring
Qualification
Required
3-5 years of experience in manual penetration testing of web and mobile applications
Ability to identify, research, and evaluate current vulnerabilities, provide remediation and configuration guidance, and collaborate with stakeholders to develop remediation strategies
Ability to interact with company personnel at all levels and across all business units to comprehend business imperatives; a strong customer/client focus, with the ability to manage expectations appropriately to provide a superior customer/client experience and build long-term relationships
Competency to work independently at an advanced technical level
Ability to produce well-written, detailed reports that describe vulnerabilities/risks and that provide specific remediation guidance
A thorough understanding of cloud technologies and environments (AWS, Azure, Google)
Ability to demonstrate a clear understanding, at an enterprise level, of application, network, infrastructure, and data security architecture
Excellent analytical skills, with the ability to manage multiple projects under strict timelines, work well in a demanding dynamic environment, and meet overall objectives
Ability to work under pressure and manage competing priorities
Strong knowledge of web application frameworks, deployment technologies, and security software
Strong scripting capabilities for creating custom scripts to identify/exploit vulnerabilities, with experience in one or more of the following technologies; Python, JavaScript, PowerShell, shell script, Ruby, PHP, LUA, etc
Experience with secure code review
Proven work experience in manual secure code review
Experience working with GitLab Ultimate CI/CD technology, shift-left tools, and application security workflows
An inherent passion for information security and service excellence
The ability to adapt to new situations and the desire to learn and stay current with AppSec trends, threats, and risks
A minimum of a Bachelor's Degree in Information Technology, Computer Science, or other related field
Preferred
GPEN, OSCP, CISSP, GWAPT, CEH, or similar certifications
Company
A-Line Staffing Solutions
A-Line Staffing Solutions is a staffing and recruiting company specializing in pharmaceutical, medical, and IT staffing services.
H1B Sponsorship
A-Line Staffing Solutions has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (3)
2021 (4)
2020 (8)
Funding
Current Stage
Late StageCompany data provided by crunchbase