Application Security Engineer

3 months ago


Augusta, United States Ryder System, Inc. Full time

RyderApplication Security Engineer - Remote

Augusta, ME, 04332, USA

_Job Seekers can review the Job Applicant Privacy Policy by clicking HERE. (

SUMMARY

We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data.

The Application Security Engineer must understand development, coding, security engineering, and secure systems configurations. This position ensures that every step of the software development lifecycle (SDLC) follows security best practices. This involves conducting security assessments with SAST and DAST tools, reading source code, threat modeling, and designing and implementing secure software development practices. They will determine where security vulnerabilities exist and implement fixes. They must understand how an application may be misused and exploited. The Application Security Engineer will collaborate with software development teams and provide guidance on best practices for secure coding. They will also stay up to date on the latest security trends and technologies and integrate them into the organization's security strategy. The ideal candidate will have strong analytical and problem-solving skills, as well as experience in application security and knowledge of programming languages and web technologies. A Bachelor's degree in Computer Science and certifications such as CISSP, OSCP, or CASE are preferred.

ESSENTIAL FUNCTIONS

Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.

Collaborate with software development teams to integrate security into the development life cycle.

Conduct security assessments of web, mobile, and other applications. Analyze security assessment results to identify security vulnerabilities and provide guidance on remediation.

Design and implement secure software development practices, including threat modeling, secure coding standards, and code review.

Stay current with security threats, trends, and technologies, and recommend new security controls as needed.

Conduct application security investigations and provide recommendations to mitigate risk.

Maintain security documentation, provide subject matter expertise, and collaborate on security policies, procedures, and standards.

ADDITIONAL RESPONSIBILITIES

Performs other duties as assigned.

EDUCATION

Bachelor's degree in computer science, information security, or a related field

EXPERIENCE

Five (5) years or more experience with OWASP, SAST, DAST, SCA, RASP and common security tools, required.

Seven (7) years or more application security, security engineering, software development, or a related field, required.

Five (5) years or more strong understanding of web application security and common attack vectors. (. SQL injection, XSS, CSRF), required.

Five (5) years or more experience with secure coding practices, threat modeling, and secure software development life cycle (SDLC) methodologies. required

Five (5) years or more proven experience in diagnosing, isolating, resolving complex issues and recommending/implementing strategies to resolve problems, required.

Five (5) years or more demonstrated experience with systems integration processes, methodology and tools, required.

Seven (7) years or more development and scripting experience, required.

Five (5) years or more professional application security role, required.

Five (5) years or more experience with API and Web Security, required.

Three (3) years or more experience with WAF, or similar application security infrastructure a plus, preferred.

Seven (7) years or more experience in integrating security in CI/CD, DevOps, required.

Six (6) years or more experience process or operation management

Six (6) years or more experience Value Stream Mapping, Continuous Flow, Pull Replenishment and other process improvement experience.

SKILLS

Excellent communication skills, both verbal and written, and the ability to work effectively with cross-functional teams.

Ability to create and maintain professional relationships within all levels of the organization (peers, work groups, customers, supervisors).

Ability to work independently and as a member of a team.

Flexibility to operate and self-driven to excel in a fast-paced environment.

Capable of multi-tasking, highly organized, with excellent time management skills

Proficiency in at least one programming language (. Python, .NET, Javascript) with .NET preferred., advanced, required.

Proficiency in at least one common scripting language (. PowerShell, bash, , advanced, required.

Familiarity of NIST framework, PCI, ISO 27001, SOC, SOX, CCPA, GDPR and global regulations, expert, required.

CI/CD experience with Azure Devops, Terraform or other automation and integration technologies, expert, required.

Risk management findings, vulnerability prioritization, threat modeling, and mitigation strategy, advanced, required.

LICENSES

CISSP, OSCP, CASE, or other industry-leading certifications, preferred.

TRAVEL

1-10%

Applicants from California, Colorado, Hawaii, New Jersey, New York City, and Washington:

Salary is determined based on internal equity; internal salary ranges; market

data/ranges; applicant’s skills; prior relevant experience; certain degrees or

certifications, etc.

The salary for this position ranges from $120,000.00 to $150,000.00. Employees may also be eligible

to receive an annual bonus, as applicable.

Ryder offers comprehensive health and welfare benefits, to include medical,

prescription, dental, vision, life insurance and disability insurance options, as well as

paid time off for vacation, illness, bereavement, family and parental leave, and a tax advantaged 401(k) retirement savings plan

Job Category: Information Security



  • Augusta, Maine, United States Transportation Security Administration Full time

    About the RoleWe are seeking a highly skilled and dedicated Transportation Security Officer to join our team at the Transportation Security Administration. As a key member of our security team, you will play a critical role in ensuring the safety and security of air travelers, airports, and aircraft.Key ResponsibilitiesOperate various screening equipment and...


  • Augusta, United States META Full time

    Summary: Meta Security is looking for an Incident Response Engineer with experience coordinating, investigating and responding to internal and external threats. You will help the team establish, lead and execute multi-year roadmaps to mature investigative and response services, drawing upon automation and cross functional partnerships to create scalable and...


  • Augusta, Maine, United States AG Security Group Full time

    Position Title: Security Professional - Port Augusta, CasualCompany Overview:AG Security Group stands as South Australia's premier and largest privately-owned security firm, dedicated to safeguarding Australians for over three decades. We pride ourselves on delivering exceptional customer service, cutting-edge technologies, and innovative security solutions...


  • Augusta, United States Software People, Inc. Full time

    Job DescriptionJob DescriptionPhone/Skype Hire. REMOTELocation: REMOTEDuration: 12- 24+ months (High Possibility of Further Extensions)ResponsibilitiesThe position works to protect more than 20,000 devices on the network. This position will perform continuous monitoring of critical systems. The candidate will be a member of a team focused on endpoint...


  • Augusta, Maine, United States Garda World Security Full time

    Job OverviewGardaWorld – Security ServicesPosition: Special Response Security OfficerAge Requirement: Must be 21 or older with a clean driving record.About Us:At GardaWorld, we believe in providing opportunities that allow you to unleash your potential. We are the largest privately owned security services firm globally, specializing in the protection of...


  • Augusta, Maine, United States Tyler Technologies Full time

    Become a Part of Tyler Technologies as a Software Application DeveloperTyler Technologies stands at the forefront of providing innovative digital solutions for government entities, striving to enhance the connection between citizens and public services. In the role of a Software Application Developer, you will be responsible for designing and maintaining...


  • Augusta, Maine, United States InsideHigherEd Full time

    Information Security SpecialistJob Summary: The Information Security Specialist role is crucial for supporting the organization in the realm of cybersecurity, focusing on the protection of networks, systems, and sensitive information. This position involves the design, implementation, and management of Enterprise Security tools and initiatives, particularly...


  • Augusta, Maine, United States InsideHigherEd Full time

    Information Security SpecialistJob ID: 275569Position Type: Full TimeAbout the Institution Our institution is a leader in educational innovation and healthcare, dedicated to training future leaders and innovators across various disciplines. With a vibrant community of over 10,500 students, we offer a unique blend of educational opportunities within a...

  • Cyber Systems Engineer

    21 hours ago


    Augusta, Georgia, United States Peraton Full time

    Job DescriptionPeraton is seeking a highly skilled Cyber Systems Engineer to support our ARCYBER program. As a key member of our team, you will play a critical role in the development and maintenance of the DODIN-A network infrastructure, ensuring the security and integrity of our systems.Key Responsibilities:Provide engineering services to assess the...


  • augusta, United States tCognition Full time

    Position: Senior Endpoint Security Analyst 134814Location: Remote (Augusta, ME)Duration: 12 MonthsTop 3 Skills: Endpoint SecurityIncident ResponseEngineering Security ProtocolsQualifications:Experience: Minimum of 7 years in information security with a strong focus on endpoint security, incident response, and security engineering within an enterprise...


  • Augusta, United States tCognition Full time

    Position: Senior Endpoint Security Analyst 134814Location: Remote (Augusta, ME)Duration: 12 MonthsTop 3 Skills: Endpoint SecurityIncident ResponseEngineering Security ProtocolsQualifications:Experience: Minimum of 7 years in information security with a strong focus on endpoint security, incident response, and security engineering within an enterprise...


  • augusta, United States tCognition Full time

    Position: Senior Endpoint Security Analyst 134814Location: Remote (Augusta, ME)Duration: 12 MonthsTop 3 Skills: Endpoint SecurityIncident ResponseEngineering Security ProtocolsQualifications:Experience: Minimum of 7 years in information security with a strong focus on endpoint security, incident response, and security engineering within an enterprise...


  • Augusta, United States tCognition Full time

    Position: Senior Endpoint Security Analyst 134814Location: Remote (Augusta, ME)Duration: 12 MonthsTop 3 Skills: Endpoint SecurityIncident ResponseEngineering Security ProtocolsQualifications:Experience: Minimum of 7 years in information security with a strong focus on endpoint security, incident response, and security engineering within an enterprise...


  • Augusta, United States Two Six Technologies Full time

    At Two Six Technologies, we build, deploy, and implement innovative products that solve the world’s most complex challenges today. Through unrivaled collaboration and unwavering trust, we push the boundaries of what’s possible to empower our team and support our customers in building a safer global future.Two Six Technologies is looking to add a Lead...

  • Application Developer

    3 months ago


    Augusta, United States Tyler Technologies Full time

    Description Tyler Maine is looking for an Application Developer to join our team. Based in Augusta, ME, Tyler Maine is a leader in digital government solutions and payments, partnering with government to deliver user-friendly digital services that make it easier and more efficient to interact with government. As a division of Tyler Technologies...


  • Augusta, United States VSE Aviation Full time

    SUMMARY: Support the design and analysis of engineering projects. The Engineering department is in charge of developing test equipment and technical data to create new capabilities.DUTIES & RESPONSIBILITIES:Responsibilities include, but are not limited to:• Create/fabricate projects for test equipment/processes.• Review engineering specifications,...

  • Application Developer

    3 weeks ago


    Augusta, United States VSE Aviation Full time

    SUMMARY: The Application Developer is responsible for developing SQL databases and writing applications to interface with multiple databases. The position will be designing tables, storing procedures, views, and functions. The role will also be responsible for responsible for ensuring that our ERP systems are utilized as per the aligned Business Processes...


  • Augusta, United States Novalink Solutions LLC Full time

    Job DescriptionJob DescriptionAs an Intune Application Configuration Management Specialist, you will be responsible for the configuration, deployment, and maintenance of software application packages within our organization. Your primary focus will be on ensuring that applications are properly configured in Intune to meet the needs of users and the business....


  • Augusta, United States Novalink Solutions LLC Full time

    Job DescriptionJob DescriptionThe Information Security Office (ISO), Security Operations Center (SOC) is at the forefront of the State of Maine defense against cyber threats. The position works to protect more than 20,000 devices on the State of Maine network. This position will be responsible for evaluating and enhancing the security posture of the State of...


  • Augusta, Maine, United States Peraton Full time

    Key ResponsibilitiesPeraton is seeking an On-Site Systems Engineering Specialist to become a vital part of our Cyber Mission division. This full-time role involves providing comprehensive Systems Engineering and Integration (SE&I) support to a government client. Your contributions will include:Overseeing Configuration and Change Management (CM)...