Experience with application security best practices, enterprise security solutions, AWS or Azure, scripting or coding, software design and architecture, Agile delivery, CI/CD, DevSecOps tools, and vulnerability assessment practicesPreferred Experience, Knowledge and Skills: Checkmarx One, Sonatype Nexus IQ, WhiteHat or Black Duck DAST, Noname API Security, NowSecure, Atlas, Salesforce intake workflows, Jira defect management, Docker, Kubernetes, AWS, Azure, and enterprise DevSecOps pipeline integrationJob Description/Responsibilities: o Support end-to-end AppSec services, including intake, assessment scoping, and application team engagemento Support SAST, SCA, DAST, API security, and mobile security assessment activities, including onboarding, validation, reporting, and remediation guidanceo Help reduce AppSec backlog and improve vulnerability management by working with application teams on findings, remediation, and closureo Supports the Application Security program by enabling stronger security throughout the software development lifecycle through automated, developer-friendly security tools and processes integrated into application delivery workflowso Secure CI/CD design and implementation, application security tool integration, security automation, cloud-based DevSecOps processes, vulnerability scanning integration, documentation, developer self-service enablement, security tooling improvement, and guidance to cybersecurity and development teamso Support AppSec assessment activities across web, mobile, API, and cloud-enabled applications, including SAST, OSCA, DAST, API security, and mobile security testingo Help validate vulnerabilities, reduce false positives, provide remediation guidance, support defect tracking, and work directly with development teams to drive timely remediation **Only those lawfully authorized to work in the designated country associated with the position will be considered.** Required Level of Education: Bachelor’s degree in computer science, Information Security, Cybersecurity, Information Technology, Engineering, or equivalent related experience Preferred Level of Education: Master’s degree in computer science, Cybersecurity, Information Security, or related fieldPreferred Certifications: CISSP, CSSLP, GIAC, Security Plus, AWS Security, Azure Security, or other relevant application security or cloud security certificationsRequired Experience, Knowledge and Skills: 3 to 6 years of related application security, DevSecOps, software development, security testing, or vulnerability management experience Application Security, DevSecOps, CI/CD pipelines, secure SDLC, SAST, SCA/OSCA, DAST, API security, vulnerability validation, remediation guidance, GitHub, Jira, Jenkins, cloud security concepts, REST/SOAP APIs, and scripting or development experience such as Java, Python, Ruby, Go, or Node.js