We help organizations make smarter cybersecurity decisions that minimize risk.
Senior Application Security Consultant, Strategic Services
Location
United States
Posted
127 days ago
Salary
Not specified
Job Description
Job Requirements
- Willingness to travel up to 10%
- Delivering Application Security services, including Application Threat Modeling, Application Architecture Reviews, and AppSec/DevSecOps Program Assessments
- Author comprehensive assessment deliverables tailored to both technical and managerial audiences detailing technical execution, deficiencies, business impact, and remediation strategies
- Understanding of application security landscape, tools, methodologies, and frameworks such as OWASP SAMM, OWASP DSOMM, NIST SSDF, SLSA, NIST AI RMF, and MITRE ATLAS
- Deep understanding of application security issues, mitigation strategies, and common security controls
- Ability to analyze and understand complex application architectures
- Experience working directly within development teams and integrating security into the SDLC
- Assist with Practice development, improving offerings, and mentoring team members
- Contribute to marketing initiatives via research, speaking, writing, and tool development
- Foster client relationships through support, information, and guidance while managing concurrent client engagements
- Demonstrates a startup mentality with a highly driven, high-performance approach to work
- Comprehensive hands-on experience using generative AI in automated workflows
- Direct hands-on experience in application security service offerings, including application threat modeling, architecture reviews, and AppSec/DevSecOps program assessments
- Experience with application security controls, architectures, requirements, and industry standards
- Development and/or application architecture design background with understanding of secure implementation practices for cryptography, input validation techniques to prevent injection attacks, and exception management
- Operational DevSecOps experience
- Development experience in JavaScript, shell, Python, Java, C++, PHP, or C#, with ability to translate security requirements into technical implementations
- Excellent writing, communication, and time management skills
- Minimum of 6 years of experience in Application Security and/or Software Development, with at least 3 years in Application Security
- Minimum of 2 years of experience in consulting services or internal security roles requiring effective communication with both technical teams and executive leadership
- Bachelor’s degree in a relevant discipline or equivalent experience
Benefits
- Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans)
- Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
- 12 corporate holidays and a Flexible Time Off (FTO) program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open enrollment
- Pet Benefit Option
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Service Technician – Intrusion, Burg, Access Control, CCTV
FSS TechnologiesFirst in Security, First in Satisfaction
Service Technician supporting fire and security systems at FSS Technologies
Offensive Security Leader
DeepSeasFirst & only Managed Detection & Response solution covering all attack surfaces for enterprises & the mid-market.
Offensive Security Leader managing teams at DeepSeas
Sales – Internet Managed Services, Security
VTSS DataCommA Professional Data and networking service organization providing MSP & data solutions, removing your data challenges
Sales Associate selling managed services and building customer relationships
Principal Network Security Engineer, Cloud
CalixTo enable broadband service providers of all sizes to simplify, innovate and grow.
Principal Network Security Engineer leading cloud security solutions for Calix