Application Security Engineer
2 days ago
APPLICATION SECURITY ENGINEER RESUME EXAMPLE
Updated: July 26, 2024 - The Application Security Engineer plays a crucial role in ensuring the resilience and scalability of web applications, advising on secure design principles, and addressing security issues. Responsibilities include validating, tracking, and prioritizing security issues, developing internal security tools, and participating in security incident response. Additionally, they contribute to security compliance efforts, evaluate new security technologies, and promote a culture of security awareness across development teams.
Application Security Engineer Positions 1. Application Security Engineer, Intel Corporation, Santa Clara, CAJob Summary:
- Define, plan and oversee security initiatives and processes
- Lead, motivate, and inspire both your fellow Engineering Organization to drive toward the SecOps vision
- Triage security issues found and allocate to the right functions to address them
- Build and manage tooling to improve our security
- Implement security fixes on both infrastructure and applications
- Build and manage strong relationships with Product and Engineering leaders across the organization
- Build awareness and support for security to integrate SecOps into the cultural fabric of the organization
- Collaborate with peers to creatively solve problems and drive department-wide objectives
- Work closely with the InfoSec team to support internal and external security audits, penetration testing, and certification processes
- Stay up-to-date on current software development technologies and security controls
- Embrace a culture of continuous service improvement and service excellence
- Collaborate with engineering teams to provide feedback on products and development environments.
Job Summary:
- Partner with engineering and product teams in the design phase of products and features
- Perform threat modeling and security architecture and design reviews
- Conduct ongoing network and application penetration testing
- Track vulnerabilities and partner with engineering and product to remediate vulnerabilities according to Mosaic policies
- Lead security projects including the implementation and configuration of security tools and automation for ongoing testing
- Deliver security training to internal development teams
- Evaluate data management, data quality, and data access processes for gaps, inefficiencies, and opportunities
- Work and remediate bugs with affected application and infrastructure teams
- Advise and consult internal customers on risk assessment, incident triage, threat modeling, and security vulnerability mitigation
- Mentor developers on evolving threats to their applications and help ensure state-of-the-art secure development practices are being used
- Perform code reviews of security-critical code
- Research and analyze potential new threats, attack vectors, and risks and identify mitigation efforts
Job Summary:
- Conduct application security reviews for our services and applications
- Perform penetration testing for critical services and applications
- Perform security code reviews for critical changes during the development phase
- Deliver security training and outreach to internal development teams
- Develop security best practices documentation for internal security applications
- Develop automation to streamline common tasks, tests, workflows, etc.
- Train and mentor DevOps and Developer teams on application security best practices
- Actively promote security culture and education within the organization
- Build tools to automate security checks across products and IT workflows
- Perform security testing for new and existing features across web, mobile, and desktop products
- Enumerate security risks and controls to mitigate them
- Research new technologies and present security best practices to product teams
- Guide teams on adoption and execution of a Secure Product Life Cycle
Job Summary:
- Participate in building better, more robust, and automated processes for the Technology Services department
- Occasionally serve as Tier 2 support for security tools support and troubleshooting
- Become a subject matter expert on company systems to enhance and mature the capabilities that the Information Security team has in the environment
- Front line support for the Information Security intake process
- Participate in providing best-in-class security recommendations in conjunction with Security Architecture
- Risk ranking information security risks and triaging tasks
- Participate in the Company's project life cycle business process for escalation to security architecture
- Participate in the Company's Security program vulnerability management program
- Security tool evaluation, recommendation, and maintenance
- Develop and optimize the security tools used throughout the platform infrastructure and contribute to the overall security strategy across the organization
Job Summary:
- Help build robust and scalable web applications
- Advise on the secure design of applications and services and participate in threat modeling
- Validate, track, and prioritize security issues
- Design and build internal security tools that help fix security problems
- Participate in security incident response and help improve SIEM tools
- Provide subject matter expertise on cloud security, application-level security controls, and safe programming practices
- Promote security knowledge across development teams and inspire security champions
- Identify security issues and risks, and develop mitigation plans
- Design, implement, support, and evaluate security-focused tools and services including project leadership
- Develop and interpret security policies and procedures
- Participate in security compliance efforts
- Develop and deliver recommended new and emergency security products and technologies
Job Summary:
- Architect, design, and implement security controls for maintaining a secure ecosystem built in alignment with a zero-trust architecture
- Stay current with solutions in the market, recommend improvements and solutions to existing posture
- Assist with the documentation and maintenance of designs for security systems and controls
- Assist in incident response, breach analysis, and tabletop exercises
- Work closely with product development, platform, and IT teams on various architectural and design aspects of product and internal security
- Maintain strong knowledge of ongoing security threats and recommended best practices
- Conduct security readiness assessments, application pen tests, and analysis of findings
- Collaborate with compliance and technology teams to build actionable functional and technical requirements
- Be responsible for the development of documentation (written and video) for AppSec products used within the organization
- Work with teams to identify and close gaps in application security applications and their products
- Help to establish and communicate best practices involving implementation of technologies and AppSec solutions
- Work with multiple diverse teams spread throughout the world
Job Summary:
- Work with the security team to ensure the security of in-house developed applications and COTS systems
- Perform analysis, investigation, and remediation of applications and systems partnering with vendors
- Ensure superior OS hardening and other security configuration best practices
- Provide security assistance to the security and infrastructure team on projects and system architecture
- Perform behavioral analysis and review of application logs, alerts, and other security information to detect potentially malicious events
- Manage InfoSec development, testing, and QA functions to ensure that projects are securely delivered and fulfill security requirements
- Evaluate, test, and recommend new application and coding security techniques and strategies
- Evaluate and recommend new and emerging security products and technologies
- Oversee the code vulnerability scans and applications patching process
- Review vendor or third-party security processes
- Review and recommend Cloud and SaaS solutions from an API security perspective
Job Summary:
- Participate in security design discussions, providing technical engineering and operational guidance to developers and internal customers
- Complete review and improvements for security standards, preferred implementation patterns, secure common frameworks, and developer documentation and education materials
- Provide advice on recommended remediations and educate developers on how to build more secure software
- Identify emerging trends in the industry and establish strategic guidance related to best practice approaches to address those trends
- Define and embed technical security policies, principles, and standards
- Use code analysis solutions to evolve the secure-by-design principle
- Develop, maintain, and automate security tools for secure SDLC, including ongoing developer training
- Maintain good practices around code repos (like Git), identifying and remediating weaknesses in Open Source libraries
- Provide advice to development teams on all aspects of security within the development lifecycle
- Proactively identify vulnerabilities, provide solutions, and drive remediation
- Work closely with platform teams to build centralized security reporting dashboards
- Automate the identification and remediation of security issues across Cloud services
Job Summary:
- Develop relationships across internal product, engineering, and technical organizations
- Stay up to date with the latest vulnerabilities, exploits, security trends, and general changes in technology to provide guidance on how these affect the security of business
- Threat modeling, architecture, and design reviews on services and applications as required
- Help other departments to build security into their workflow
- Mentor and cross-train other Security Engineers across the division
- Evaluate and promote new and existing security standards, solutions, and tools
- Implement technical solutions in line with the cybersecurity strategic plans
- Analyze threats and vulnerabilities to determine security impact
- Assess the security of core platform infrastructure
- Build technologies to detect and prevent security vulnerabilities
- Help development teams build security into the Workday platform by performing threat modeling, architecture reviews, and code reviews
- Provide recommendations for hardening applications and environments
Job Summary:
- Facilitate efforts in Engineering Teams to perform and maintain threat models and provide coaching and guidance to Engineers
- Use knowledge of common risks and vulnerabilities to guide Engineering teams in building products
- Use and maintain security tooling and processes, such as DAST/SAST tools and vulnerability reporting
- Deploy and automate AWS security features such as IAM rules, AWS Config, roles, etc.
- Confirm vulnerabilities in reports such as responsible disclosures
- Promote and champion a culture of Application Security among teams
- Facilitate and participate in incident response efforts
- Record and communicate vulnerability findings and keep records up to date
- Work with application development teams to provide guidance on best practices for secure application development across a variety of languages and frameworks
- Triage incoming bug reports from the information security team and the security research community
Job Summary:
- Partner with software engineers, DBAs, and QA engineers to ensure adequate security processes and tools are in place
- Mitigate identified risks to an acceptable level to meet business objectives and regulatory requirements
- Provide security advice to development and testing teams
- Provide expert-level guidance during internal and external application security assessments
- Identify, recreate, and remediate security defects
- Provide training for development and QA teams on implementing security into their existing practices
- Help to develop a security mindset among the engineering teams
- Implement and execute an application-level threat modeling program for the enterprise
- Prioritize and track security issues and work with necessary teams to ensure remediation
- Serve as a leader by promoting security awareness and mentoring team members
-
Sr. Application Security Engineer
2 weeks ago
Woodland Hills, CA, United States Ekman Associates, Inc Full timeJob Description Remember to check your CV before applying Also, ensure you read through all the requirements related to this role. Title: Senior Application Security Engineer Location: Remote - Southern California preferred Ekman Associates is a management consulting firm that specializes in developing business, digital, and technology strategy,...
-
Application Security Engineer
3 days ago
Fremont, CA, United States Urpan Technologies Full timeNUMBER OF OPENINGS: 5Pay/Salary: $184,579.00 year.LOCATIONURPAN TECHNOLOGIES INC 39355 CALIFORNIA STREET, SUITE#303, FREMONT, CA 94538.JOB DUTIES:Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. Ensure appropriate security controls are in place that will safeguard various cloud based (such as...
-
Application Engineer
1 month ago
santa clara, United States Zitko Group US Full timeWe’re seeking a skilled Application Engineer to join our global team and support high-level security deployments worldwide. This is a hands-on role, ideal for those with technical expertise in Lenel programming, system commissioning, and VMS platform deployment.What You’ll Do:Lenel Programming and Commissioning: Lead system configuration and...
-
Application Engineer
1 month ago
Santa Clara, United States Zitko Group US Full timeWe’re seeking a skilled Application Engineer to join our global team and support high-level security deployments worldwide. This is a hands-on role, ideal for those with technical expertise in Lenel programming, system commissioning, and VMS platform deployment.What You’ll Do:Lenel Programming and Commissioning: Lead system configuration and...
-
Application Engineer
1 month ago
santa clara, United States Zitko Group US Full timeWe’re seeking a skilled Application Engineer to join our global team and support high-level security deployments worldwide. This is a hands-on role, ideal for those with technical expertise in Lenel programming, system commissioning, and VMS platform deployment.What You’ll Do:Lenel Programming and Commissioning: Lead system configuration and...
-
Senior Power Applications Engineer
2 days ago
Santa Clara, CA, United States Hitachi Vantara Corporation Full timeDescription General information: Hitachi Energy is seeking a Senior Power Applications Engineer for its San Jose, CA location. This role is responsible for delivering innovative solutions in the areas of network modeling, network analysis, power flow, security/contingency analysis, and real-time control. Your Responsibilities: Analyze and understand...
-
Staff Embedded Security Engineer
2 days ago
San Francisco, CA, United States IDENTIFY SECURITY Full timeWe are currently seeking a Staff Embedded Security Engineer . This position requires an experienced professional with a proven track record of cyber security development achievements. Our ideal candidate exhibits a can-do attitude and approaches his or her work with vigor and determination. Candidates will be expected to demonstrate excellence in their...
-
Web Application Security Engineer
3 days ago
San Francisco, CA, United States Direct Staffing Inc Full timeVisa candidates are welcome to apply. Shopping has changed more in the past five years than in the past five decades, and going forward, retailing will require investing more in people and technology. With the rapid changes in retail, it is critical that technology be a strategic enabler for our company to accelerate delivery, be adaptive to market changes,...
-
Senior Application Security Engineer
2 days ago
San Francisco, CA, United States Tbwa ChiatDay Inc Full timeHeadway’s mission is a big one – to build a new mental health care system everyone can access. We’ve built technology that helps people find great therapists with the first software-enabled national network of providers accepting insurance. 1 in 4 people in the US have a treatable mental health condition, but the majority of providers don’t accept...
-
Application Security Engineer
3 days ago
McLean, VA, United States EnDyna, Inc. Full timeWe are looking for an experienced and passionate application security engineer to join our cybersecurity team. You will be responsible for providing security solutions to our clients, who are mainly federal government agencies. You will conduct security assessments, code reviews, penetration testing, and vulnerability remediation for their web and mobile...
-
Lead Product Security Engineer
3 days ago
Santa Clara, CA, United States Citrix Systems Full timeAbout This Team YOU as a Lead Product Security Engineer will have the opportunity to collaborate with the brightest engineering minds and work on innovative product security areas. Job Description You are/have worked on Threat Modelling, Source Code Review, Penetration Testing and performing security analysis on existing or new products. Provide security...
-
Sr. Security Engineer
1 month ago
Santa Clara, United States Resource Informatics Group Full timeJob Title: Sr. Security Engineer Location: Santa Clara, CA (Onsite) Duration: 6+ Months of Contract Required Skills: • Strong understanding of Cyber Security Standards (ISO27001, NIST CSF, CIS Benchmarks) • Understanding of technology systems such as networks, applications, servers, cloud, authentication, and emerging technologies • Experience with...
-
Application Security Engineer
4 weeks ago
Iselin, NJ, United States Strategic Staffing Solutions Full timeApplication Security Engineer Read all the information about this opportunity carefully, then use the application button below to send your CV and application. Iselin, NJ - 12 months - hybrid onsite Pay: $70-72/hr W2 Experience: - 4+ years of application security experience with at least 2+ years supporting Checkmarx - 2+ years of experience with Agile...
-
Security Operations Engineer
3 days ago
Santa Clara, CA, United States Forward Networks Inc Full timeForward Networks is revolutionizing the way large networks are managed. The Forward Enterprise platform delivers a vendor-agnostic "digital twin" of the network, based on a mathematical model. The platform scales to support hundreds of thousands of network devices, whether cloud, hybrid cloud, or on-prem. It serves as a single source of truth for the...
-
Senior Application Security Engineer
4 weeks ago
Draper, UT, United States BAMM Staffing Full timeContract to Hire, Onsite in Draper Utah (US Citizen or GC Only)As a Senior Application Security Engineer, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the...
-
Senior Application Security Engineer
1 month ago
Draper, UT, United States BAMM Staffing Full timeContract to Hire, Onsite in Draper Utah (US Citizen or GC Only)As a Senior Application Security Engineer, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the...
-
Information Security Engineer
1 month ago
Santa Clara, United States Diverse Lynx Full timeey Responsibilities• Partner with various stake holder groups, including Product/Engineering, Legal, HR, and IT to promote and build a culture of security and implement controls accordingly• Work with Information Security and Information Technology teams to build & maintain controls to manage varied risks including application, insider and cyber risks•...
-
Security Systems Engineer
3 days ago
Santa Clara, CA, United States Versa Networks Full timeAbout Us Versa Networks, Inc. is a leading vendor of next-generation Software Defined solutions and architectures, for SD-WAN and SASE. Versa is providing an end-to-end solution that both simplifies and secures the WAN/branch office network. The goal of the Versa Cloud IP Platform is to provide unprecedented business advantages through a software-based...
-
Security Engineer
3 days ago
Santa Clara, CA, United States Palo Alto Networks Full timePalo Alto Networks Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO’s, Head of Infrastructure, Network Security Engineers, Cloud... At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of...
-
Network Security Engineer
7 months ago
Santa Clara, United States Ampcus Full timeJob Title: Network Security Engineer Location: Remote Duration: Months with highly possible extension Your Impact Migrate customers from legacy firewall technologies to PAN platforms Build custom security policies and application signatures, configured for our client’s needs Take every opportunity to maintain proficiency and increase the level of...