Application Security Engineer

2 weeks ago


Juneau, United States Ryder System, Inc. Full time

SUMMARY

We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company‘s applications and data.

The Application Security Engineer must understand development, coding, security engineering, and secure systems configurations. This position ensures that every step of the software development lifecycle (SDLC) follows security best practices. This involves conducting security assessments with SAST and DAST tools, reading source code, threat modeling, and designing and implementing secure software development practices. They will determine where security vulnerabilities exist and implement fixes. They must understand how an application may be misused and exploited. The Application Security Engineer will collaborate with software development teams and provide guidance on best practices for secure coding. They will also stay up to date on the latest security trends and technologies and integrate them into the organization‘s security strategy. The ideal candidate will have strong analytical and problem-solving skills, as well as experience in application security and knowledge of programming languages and web technologies. A Bachelor‘s degree in Computer Science and certifications such as CISSP, OSCP, or CASE are preferred.

ESSENTIAL FUNCTIONS

  • Conduct security assessments that require expertise of our organization‘s applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.
  • Collaborate with software development teams to integrate security into the development life cycle.
  • Conduct security assessments of web, mobile, and other applications. Analyze security assessment results to identify security vulnerabilities and provide guidance on remediation.
  • Design and implement secure software development practices, including threat modeling, secure coding standards, and code review.
  • Stay current with security threats, trends, and technologies, and recommend new security controls as needed.
  • Conduct application security investigations and provide recommendations to mitigate risk.
  • Maintain security documentation, provide subject matter expertise, and collaborate on security policies, procedures, and standards.

ADDITIONAL RESPONSIBILITIES

  • Performs other duties as assigned.

EDUCATION

  • Bachelor‘s degree in computer science, information security, or a related field.

EXPERIENCE

  • Five (5) years or more experience with OWASP, SAST, DAST, SCA, RASP and common security tools, required.
  • Seven (7) years or more application security, security engineering, software development, or a related field, required.
  • Five (5) years or more strong understanding of web application security and common attack vectors (e.g. SQL injection, XSS, CSRF), required.
  • Five (5) years or more experience with secure coding practices, threat modeling, and secure software development life cycle (SDLC) methodologies, required.
  • Five (5) years or more proven experience in diagnosing, isolating, resolving complex issues and recommending/implementing strategies to resolve problems, required.
  • Five (5) years or more demonstrated experience with systems integration processes, methodology and tools, required.
  • Seven (7) years or more development and scripting experience, required.
  • Five (5) years or more professional application security role, required.
  • Five (5) years or more experience with API and Web Security, required.
  • Three (3) years or more experience with WAF, or similar application security infrastructure, a plus, preferred.
  • Seven (7) years or more experience in integrating security in CI/CD, DevOps, required.
  • Six (6) years or more experience in process or operation management.
  • Six (6) years or more experience in Value Stream Mapping, Continuous Flow, Pull Replenishment and other process improvement experience.

SKILLS

  • Excellent communication skills, both verbal and written, and the ability to work effectively with cross-functional teams.
  • Ability to create and maintain professional relationships within all levels of the organization (peers, work groups, customers, supervisors).
  • Ability to work independently and as a member of a team.
  • Flexibility to operate and self-driven to excel in a fast-paced environment.
  • Capable of multi-tasking, highly organized, with excellent time management skills.
  • Proficiency in at least one programming language (e.g. Python, .NET, Javascript) with .NET preferred, advanced, required.
  • Proficiency in at least one common scripting language (e.g. PowerShell, bash, etc.), advanced, required.
  • Familiarity with NIST framework, PCI, ISO 27001, SOC, SOX, CCPA, GDPR and global regulations, expert, required.
  • CI/CD experience with Azure DevOps, Terraform or other automation and integration technologies, expert, required.
  • Risk management findings, vulnerability prioritization, threat modeling, and mitigation strategy, advanced, required.

LICENSES

  • CISSP, OSCP, CASE, or other industry-leading certifications, preferred.

TRAVEL

1-10%

Job Category: Information Security

Compensation Information:

The compensation offered to a candidate may be influenced by a variety of factors, including the candidate’s relevant experience; education, including relevant degrees or certifications; work location; market data/ranges; internal equity; internal salary ranges; etc.

Compensation ranges for the position are below:

Pay Type:

Salaried

Minimum Pay Range:

$110,000.00

Maximum Pay Range:

$130,000.00

The position may also be eligible to receive an annual bonus, commission, and/or long-term incentive plan based on the level and/or type.

Benefits Information:

For all Full-time positions only: Ryder offers comprehensive health and welfare benefits, to include medical, prescription, dental, vision, life insurance and disability insurance options, as well as paid time off for vacation, illness, bereavement, family and parental leave, and a tax-advantaged 401(k) retirement savings plan.

Ryder is proud to be an Equal Opportunity Employer and Drug Free workplace.

All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, among other things, or status as a qualified individual with disability.

#J-18808-Ljbffr

  • Juneau, Alaska, United States PagerDuty Full time

    Job SummaryPagerDuty is seeking a seasoned Director of Security to lead and enhance our technology and product security posture. As a key member of our leadership team, you will work closely with cross-functional teams to embed security at every stage of the product development lifecycle.Key ResponsibilitiesDevelop and execute a forward-looking product...


  • Juneau, AK, United States Oracle Full time

    Job Title: Senior Principal Application Security Engineer, Oracle Payments Location: Juneau, Alaska Travel: 25% No visa sponsorship is available for this position. You have a passion for payments and are driven to apply your creative problem-solving skills to complex challenges. You are a highly motivated self-starter that communicates efficiently across...


  • Juneau, Alaska, United States Oracle Full time

    About the JobAs an Enterprise Applications Engineer, you will have the opportunity to work with Oracle's world-class technology and develop, implement, and support the company's global infrastructure. You will provide support to internal users of Oracle Applications and legacy applications, test and coordinate testing of new releases, and maintain...


  • Juneau, Alaska, United States Oracle Full time

    About the OpportunityOracle is seeking an exceptional engineering leader to spearhead the development of cloud-centric applications. This is a unique chance to build from scratch, leveraging your expertise in software engineering and leadership skills.This role involves leading multiple engineering teams across the US, focusing on delivering critical...


  • Juneau, Alaska, United States Conviva Full time

    Conviva seeks a seasoned Chief Security Architect to drive the development of cloud security architecture, application security, and identity access management. This key role ensures compliance with regulatory frameworks like HIPAA, PCI, NIST CSF, HITRUST.Key Responsibilities:Develop and implement cloud security architecture for Azure, GCP, or AWS.Assess...


  • Juneau, United States Trustmark Full time

    Trustmark’s mission is to improve wellbeing – for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust.The Senior Security IT Architect is responsible for providing security architecture and technical leadership to the enterprise. Working closely with the IT...


  • Juneau, Alaska, United States Trustmark Full time

    At Trustmark, we believe that building trust is key to achieving our mission of improving wellbeing for everyone. As a Senior Security IT Architect, you will play a critical role in designing and developing strategic IT roadmaps and providing technical oversight to ensure the security of our enterprise.The successful candidate will have a deep understanding...


  • Juneau, Alaska, United States Trustmark Full time

    Improve wellbeing – for everyone.About the Role:Senior IT Architects are responsible for providing security architecture and technical leadership to the enterprise. They work closely with the IT leadership team and business stakeholders, designing and developing strategic IT roadmaps, providing technical oversight in managing third-party vendors, driving...


  • Juneau, Alaska, United States Trustmark Full time

    At Trustmark, our mission is centered around improving wellbeing for everyone. This goal is deeply rooted in our commitment to equality and our caring culture.The Chief Information Security Strategist will provide technical leadership and design strategic IT roadmaps for the enterprise. Working closely with the IT leadership team and business stakeholders,...


  • Juneau, Alaska, United States Oracle Full time

    Unlock Your Potential in Cloud EngineeringAre you a seasoned engineer with a passion for distributed systems? Do you thrive in dynamic environments where innovation meets scalability? Oracle is seeking a highly skilled Cloud Engineering Leader to join our Payments team, driving the development of cutting-edge cloud-centric applications.We're on a mission to...

  • Electrical Engineer

    2 weeks ago


    Juneau, United States UIC Alaska Full time

    Overview ELECTRICAL ENGINEER (CEU-J): Bowhead is seeking an Electrical Engineer to provide electrical engineering (design / construction) services to United States Coast Guard (USCG) Electrical Engineering Unit (CEU) Juneau. Position is located at USCG CEU in Juneau, AK, in support of projects throughout the 17th Coast Guard District (D17) area of...

  • Electrical Engineer

    4 weeks ago


    Juneau, United States Bowhead Full time

    Overview: ELECTRICAL ENGINEER (CEU-J): Bowhead is seeking an Electrical Engineer to provide electrical engineering (design / construction) services to United States Coast Guard (USCG) Electrical Engineering Unit (CEU) Juneau. Position is located at USCG CEU in Juneau, AK, in support of projects throughout the 17th Coast Guard District (D17) area of...


  • Juneau, Alaska, United States Allied Universal® Full time

    Allied Universal is a leading security and facility services company that offers rewarding careers. As a Security Officer, you will serve and safeguard clients in various industries such as commercial real estate, healthcare, education, and government.Compensation and BenefitsThe estimated annual salary for this position is $46,424, with a pay rate of $22.17...


  • Juneau, Alaska, United States SHI GmbH Full time

    SHI GmbH Overview">At SHI, we are a global leader in providing IT solutions and services. We take pride in our commitment to diversity and fostering an inclusive work environment.">About the Role">We are seeking an experienced Cybersecurity Solutions Architect to join our team. As a key member of our security team, you will be responsible for designing and...


  • Juneau, Alaska, United States Oracle Full time

    Job DescriptionOracle is seeking a highly skilled and experienced Site Reliability Engineer to join our team.In this role, you will be responsible for designing, implementing, and operating large-scale distributed systems, as well as ensuring the reliability and performance of Oracle products and services.As a Site Reliability Engineer, you will work closely...


  • Juneau, Alaska, United States HealthEdge Software Inc Full time

    We are seeking an experienced Lead Test Automation Architect to revolutionize automation platforms across our business units at HealthEdge Software Inc.Job Summary:The ideal candidate will have a strong background in designing and developing test automation frameworks, as well as experience with CI/CD environments. This role requires collaboration with...


  • Juneau, Alaska, United States Oracle Full time

    Job Title: Senior Oracle Application Express DeveloperThe role involves designing, developing, and deploying cloud-based Oracle Application Express solutions. The ideal candidate should have a strong background in Oracle APEX, PL/SQL, JavaScript, and TypeScrypt, as well as experience with data modeling, HTML/CSS, JSON/RESTful web services, and Git.Salary:...


  • Juneau, Alaska, United States PagerDuty Full time

    PagerDuty Director of Security Engineering About the Role:We are seeking a visionary Director of Security to join our team at PagerDuty. As the head of security, you will be responsible for driving our company's security strategy and ensuring the integrity of our technology and products.Main Responsibilities:Develop and execute a comprehensive security...


  • Juneau, Alaska, United States Air Force Civilian Service Full time

    About the OpportunityThe Air Force Civilian Service is seeking a highly skilled General Engineer to join our team at the 611th Civil Engineer Squadron at Joint Base Elmendorf Richardson in Anchorage, AK.This is an exciting opportunity to work on projects and service contracts for installations across Alaska, Hawaii, and the Northern Pacific. As a General...


  • Juneau, Alaska, United States Air Force Civilian Service Full time

    About the RoleThe Air Force Civilian Service is seeking a highly skilled General Engineer to join our team at the 611th Civil Engineer Squadron in Anchorage, AK.This position offers a unique opportunity to manage projects and service contracts for installations across Alaska, Hawaii, and the Northern Pacific.As a General Engineer, you will be responsible for...