Desired Skills and Experience

  • Proven experience working in application security, and/or secure software development (both a detailed technical knowledge and hands-on practice)
  • Expert knowledge and implementation of secure application architectures, encryption technologies, cryptography and key management, and authentication and control of application permissions
  • Direct experience with secure application development and application security risk mitigation techniques
  • Knowledge of the common application layer vulnerabilities and the ability to explain these risks to developers
  • Knowledge of tiered application architectures, web applications, APIs, mobile applications, desktop applications, and the underlying technology of cloud infrastructure
  • Experience securing platform web APIs
  • Experience with one or more general purpose programming languages including but not limited to:  Java, C/C++, C#, Objective C, Python, JavaScript.
  • Versed with recent versions of the OWASP Top Ten for web application security
  • Detailed understanding of and experience with application deployments in corporate environments
  • Experience working in DevOps, continuous integration and Agile, including design of security solutions, including creating artifacts, models, and strategy presentations
  • Active professional security certifications (e.g., CISSP or other similar industry qualification)
  • Strong written and verbal communication skills
  • Experience working in a matrixed organization, achieving goals through partnership and collaboration

Apply