Job Description
CyberPWN Technologies is hiring for the position of Lead Security Engineer – Application Security Assurance. This role involves conducting advanced security testing to identify vulnerabilities in application source code, running applications, and third-party libraries while collaborating with development teams to ensure application security and integrity.
Responsibilities:
- Perform Static Application Security Testing (SAST) using Fortify SCA to detect vulnerabilities in the application source code.
- Conduct Dynamic Application Security Testing (DAST) using WebInspect to assess security flaws in running applications.
- Execute Software Composition Analysis (SCA) using Debricked to identify vulnerabilities in third-party libraries and dependencies.
- Collaborate with development teams to remediate vulnerabilities and promote secure coding practices.
- Integrate security testing into the CI/CD pipeline to detect issues early in the development lifecycle.
- Create detailed security reports, including recommendations for remediation.
- Continuously monitor and optimize security testing tools and processes for improved efficiency.
- Work with security teams to ensure compliance and maintain application integrity.
- Communicate security risks effectively to developers and stakeholders.
- Stay updated with the latest trends in application security and tools.
- Configure and optimize security scanning tools.
- Implement DevSecOps practices by integrating security into DevOps pipelines.
Job Requirements
• Strong expertise in SAST, DAST, and SCA tools (e.g., Fortify SCA, WebInspect, Debricked).
• Hands-on experience with CI/CD pipeline integration.
• Knowledge of secure coding practices and remediation techniques.
• Familiarity with DevSecOps practices.
• Strong communication and collaboration skills to work effectively with developers and stakeholders.
Preferred Qualifications
• Experience configuring and optimizing security scanning tools.
• Up-to-date knowledge of application security trends.
• Relevant certifications in application security or DevSecOps.
• Interested candidates can share their resumes to join our mission of elevating application security standards.
About the Company
CyberPWN Technologies is a leader in cybersecurity solutions, specializing in application security assurance. The company is committed to fostering innovation, ensuring compliance, and delivering robust security solutions across the software development lifecycle.