Role OverviewWe are looking for a Middle Application Security Engineer to execute hands-on DevSecOps work across CI/CD pipeline security integration, vulnerability management tooling, and automated hardened baseline deployment within a large-scale financial services security program.
What You Will Do
- Write and maintain the scripts necessary to integrate security gates such as SAST, DAST, and SCA into CI/CD pipelines; - Continuously tune and configure existing security scanning tools to eliminate false positives and deliver high-confidence alerts; - Assist in coding and deploying automated hardened baselines and secure coding patterns;
Why It Might Be a Fit
If you're looking for a place to grow, make an impact, and work with people who care, we'd love to meet you!
Requirements
- Authorized to work for ANY employer in the US
- 3–5 years of commercial experience blending software engineering and DevSecOps/AppSec
- Solid coding proficiency in Python for automation and scripting
- Ability to comfortably read and navigate Java source code
- Working knowledge of modern CI/CD orchestration tools
- Practical experience interacting with vulnerability scoring frameworks
- Ability to operate with minimal supervision on day-to-day execution and reliably complete complex scripting and integration tasks
- Upper-intermediate English level
Benefits
- Professional growth: Mentorship, TechTalks, and personalized growth roadmaps
- Competitive compensation: USD-based pay with education, fitness, and team activity budgets
- Exciting projects: Modern solutions with Fortune 500 and top product companies
- Flextime: Flexible schedule with remote and office options
]]>