Application Security Engineer

3 weeks ago


Atlanta, United States Zelis Healthcare Full time

Zelis is hiring an Application Security Engineer to work in collaboration with the corporate application development teams. The position will be accountable for application security of corporate applications. You'll work with Application Development teams to identify application assets, data flows, threats, and required cyber security controls, as well as with Application Security Testers to measure the effectiveness of identified cyber security controls.

Location and Workplace Flexibility:We have offices in Atlanta GA, Boston MA, Morristown NJ, Plano TX, St. Louis MO, St. Petersburg FL, and Hyderabad, India. We foster a hybrid and remote friendly culture and all of our employee's work locations are based on the needs of the position and determined by the Leadership team. In-office work and activities, if applicable, vary based on the work and team objectives in accordance with Company policies.

Responsibilities:

  • Partner closely with corporate stakeholders to understand regulatory, industry, and organizational security requirements
  • Provide security requirements with acceptance criteria to application development teams using the Agile and Waterfall methodologies
  • Conduct threat modeling exercises to identify potential security vulnerabilities in corporate applications
  • Analyze application's components, data flows, and external dependencies to anticipate and mitigate threats
  • Review the architecture of software applications to ensure that security is integrated at every layer, including network, infrastructure, and application levels
  • Implement security controls and best practices to address identified risks and vulnerabilities, including encryption, authentication, access controls, input validation, and other security mechanisms
  • Perform security code reviews to identify and remediate security vulnerabilities in application code. Look for common security flaws such as injection attacks, cross-site scripting (XSS), and insecure configurations
  • Provide guidance and training to development teams on secure coding practices, security principles, and relevant security tools and technologies
  • Evaluate and implement security tools and automation solutions to enhance the security posture of applications and streamline security processes

Qualifications

  • Bachelor's degree in Cyber Security (or) related degree and experience
  • 4+ years of experience in Cyber Security
  • 2+ years of experience in Agile and writing user stories
  • 2+ years of experience in Application Security and Threat Modeling, as well as application development or application secure code review
  • Understanding of API and Web security vulnerabilities
  • 2+ years of experience using Octave or Stride
  • Experience working within a DevSecOps environment

Preferred Qualifications

  • Experience in security coding, source code management, and/or build and deployment technologies
  • Experience with web application firewalls
  • Familiarity with OWASP Top 10 API, Web, and Mobile Application Security Risks
  • Familiarity with MITRE CWE Top 25 Most Dangerous Software Weaknesses
  • CDP, CISSP, E|CDE or other relevant certifications
  • Familiarity with regulatory controls and industry best practices such as HIPAA, PCI, CIS, HiTrust, ISO 27001, NIST, etc.)

Zelis is modernizing the healthcare financial experience by providing a connected platform that bridges the gaps and aligns interests across payers, providers, and healthcare consumers. This platform serves more than 750 payers, including the top 5 national health plans, BCBS insurers, regional health plans, TPAs and self-insured employers, and millions of healthcare providers and consumers. Zelis sees across the system to identify, optimize, and solve problems holistically with technology built by healthcare experts - driving real, measurable results for clients.

Commitment to Diversity, Equity,Inclusion, and Belonging
At Zelis, we champion diversity, equity, inclusion, and belonging in all aspects of our operations. We embrace the power of diversity and create an environment where people can bring their authentic and best selves to work. We know that a sense of belonging is key not only to your success at Zelis, but also to your ability to bring your best each day.

Equal Employment Opportunity
Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

We encourage members of traditionally underrepresented communities to apply, even if you do not believe you 100% fit the qualifications of the position, including women, LGBTQIA people, people of color, and people with disabilities.

Accessibility Support

We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability or a disabled veteran and require a reasonable accommodation with any part of the application and/or interview process, please email TalentAcquisition@zelis.com.

SCAM ALERT: There is an active nationwide employment scam which is now using Zelis to garner personal information or financial scams. This site is secure, and any applications made here are with our legitimate partner. If you're contacted by a Zelis Recruiter, please ensure whomever is contacting you truly represents Zelis Healthcare. We will never asked for the exchange of any money or credit card details during the recruitment process. Please be aware of any suspicious email activity from people who could be pretending to be recruiters or senior professionals at Zelis.



  • Atlanta, United States Backbase Full time

    The job in short Looking for a journey instead of a job? Then let's talk! We are THE pioneers in banking tech. We see opportunities and take the leap. Having the guts to push limits and break barriers to make things happen. We learn and reinvent ourselves for maximum impact, never giving up. We are creators, with a customer-centric mindset that love what...


  • Atlanta, Georgia, United States Nlb Services Full time

    Job Summary:We are seeking a highly skilled Application Security Engineer to join our team at Nlb Services. As an Application Security Engineer, you will be responsible for designing, developing, and implementing secure software solutions to protect our applications and data from cyber threats.Key Responsibilities:Conduct static and dynamic application...


  • Atlanta, United States TEKsystems Full time

    Job DescriptionJob DescriptionThe Application Security Engineer plays an integral role in developing and implementing application security tools and capabilities that help mitigate threats and vulnerabilities. The application security engineer will enable a secure SDLC by contributing to the development of the BDD security testing framework, writing new...


  • Atlanta, Georgia, United States Sirius XM Radio Inc Full time

    About the Role:SiriusXM is seeking a highly skilled Application Security Engineer to join our security organization and support our technology objectives. As a key member of our team, you will play a vital role in ensuring the security and integrity of our software and applications.Key Responsibilities:Design and implement secure features to enable...


  • Atlanta, United States Sirius XM Radio Inc Full time

    Who We Are: SiriusXM and its brands (Pandora, SiriusXM Media, AdsWizz, Simplecast, and SiriusXM Connect) are leading a new era of audio entertainment and services by delivering the most compelling subscription and ad-supported audio entertainment experience for listeners -- in the car, at home, and anywhere on the go with connected devices. Our vision is to...


  • Atlanta, United States FIRST SOFTSOLUTIONS INC Full time

    We are actively hiring for Sr. Application & Cloud Container Security Engineer Role: Sr. Application & Cloud Container Security Engineer Location: Atlanta, GA 30354 (Hybrid) Local Candidates Duration: 12+ Months Contract W2 or 1099 Qualifications: Sr. Application & Cloud Container Security Engineer: The successful candidate can comprehend all aspects of...


  • Atlanta, Georgia, United States Cox Communications Full time

    About the RoleWe are seeking a highly skilled Senior Application Security Engineer to join our team at Cox Communications. As a key member of our security team, you will be responsible for evaluating the security of our in-house and third-party software and devices.Key Responsibilities:Evaluate the security of in-house and third-party software and...


  • Atlanta, United States Learfield Full time

    About SIDEARM Sports The team at SIDEARM provides the technology platform that powers the official websites, mobile apps, statistical integration, live audio and video streaming, and e-commerce platforms of more than 1,600 collegiate athletic partners across the nation. We're a passionate mix of technologists, creatives, and strategists that care deeply...

  • Senior Application

    3 weeks ago


    Atlanta, United States Motion Recruitment Full time

    Senior Application & Cloud Container Security Engineer Atlanta, GA Hybrid Contract Up to $62.32/hr Every year, nearly 200 million travelers trust our client to get them where they're going. Take your career to new heights by working for this longstanding leader in air travel that services more worldwide destinations than any other airline. We are...


  • Atlanta, United States Cox Communications Full time

    Description Senior Application Security Engineer This position will report to the Director Application security and Testing CoE and can be based in any of the following locations:  Atlanta, GA, Phoenix, AZ, Northern Virginia. This is a hybrid-based position and time in office will vary based on location. ...


  • Atlanta, United States ApTask Full time

    About Client: The client provides information technology (IT) services, including business outsourcing, infrastructure technology, and application services. The application service offered by the company includes application development, maintenance, and support. The markets served by the company are financial services and insurance, healthcare,...


  • Atlanta, Georgia, United States Credit Acceptance Corporation Full time

    Job SummaryCredit Acceptance Corporation is seeking a highly skilled Staff Application Security Engineer to join our team. As a technical leader, you will be responsible for developing and implementing a comprehensive security program to support various Software Development Lifecycles (SDLCs) and ensuring that software developed in this SDLC is free of...

  • Application Security

    3 weeks ago


    Atlanta, United States Softpath System Full time

    Core Duties / Responsibilities: Conduct remediation validations against prior findings Conduct manual code reviews Conduct static code analysis Know false positive from true positive Development experience in multiple languages Consult with developers and architects on secure development Work with application teams to communicate vulnerabilities,...


  • Atlanta, Georgia, United States Genesis10 Full time

    Job Title: Senior Security EngineerGenesis10 is seeking a highly skilled Senior Security Engineer to join our team. As a Senior Security Engineer, you will be responsible for designing, developing, and implementing cloud security solutions to protect our clients' applications and data.Key Responsibilities:Conduct static and dynamic application security...


  • Atlanta, Georgia, United States Innova Solutions Full time

    Job Title: Cloud Security EngineerJob Summary:Innova Solutions is seeking a highly skilled Cloud Security Engineer to join our team. As a Cloud Security Engineer, you will be responsible for designing, implementing, and maintaining secure cloud-based systems and applications.Key Responsibilities:Conduct security assessments and risk analyses to identify...


  • Atlanta, Georgia, United States Warner Bros. Discovery Full time

    Job SummaryWe are seeking a highly skilled Senior Security Engineer to join our team at Warner Bros. Discovery. As a key member of our security team, you will be responsible for delivering high-quality security assessment reports to stakeholders and driving change to improve the security posture of the organization.Key ResponsibilitiesDeliver high-quality...


  • Atlanta, Georgia, United States ACL Digital Full time

    Job Role: Sr. Security EngineerJob Type: Contract (12 Months)Job Location: Atlanta, GA (Hybrid)Job Description:Qualifications:Sr. Application & Cloud Container Security Engineer:The successful candidate can comprehend all aspects of Cyber security and apply technical application security testing expertise to assist in identifying application vulnerabilities....

  • Sr. Security Engineer

    3 weeks ago


    Atlanta, United States Next Level Business Services, Inc. Full time

    Key Responsibilities: Conduct Static Application Security Test (SAST), Dynamic Application Security Test (DAST) and Source Code Analysis (SCA) using VeraCode Correlate findings from tools such as VeraCode Source Code Agent to identify presence of vulnerable methods in code Research open-source community contributors and NIST NVD to understand residual...


  • Atlanta, Georgia, United States Saxon Global Full time

    Job Title: Application Security SpecialistWe are seeking an experienced Application Security Specialist to join our team at Saxon Global. As an Application Security Specialist, you will be responsible for identifying and mitigating security vulnerabilities in our applications.Key Responsibilities:Identify weaknesses and vulnerabilities in our...

  • Security Engineer

    7 days ago


    Atlanta, United States Datafielder Full time

    IT Cloud Security Engineer DataFielder Inc - Atlanta, GA, United States Tagged: Cloud Security Engineer Our Fortune 500 Company client is seeking to DIRECTLY HIRE a talented IT Cloud Security Engineer.Fortune 500 Company Requirements for Candidate Submission: (Please read carefully before applying) 1) Our client does not offer any sponsorships, so you must...