Full-Time

Web Application Security Engineer

Direct Staffing

Direct Staffing

No salary listed

San Francisco, CA, USA + 1 more

More locations: Pleasanton, CA, USA

In Person

On-site in San Francisco or Pleasanton, CA.

Category
IT & Security (1)
Required Skills
Git
Threat modeling
Jenkins
penetration testing
Requirements
  • Bachelor's degree in Computer Science, Software Engineering or related field or equivalent combination of education and experience
  • 5-7 years of experience in performing penetration testing, secure code review, static, dynamic and manual source code review
  • Experience in identifying and remediating common web application vulnerabilities such as OWASP Top 10
  • Experience in use of various commercial and open source penetration testing tools and methodologies and performing penetration testing of web applications and operating systems
  • Familiarity with Advanced Persistent Threat attack and kill chains
  • Experience with various code repositories including GitHub and Apache Subversion (SVN)
  • Experience with continuous integration servers such as Jenkins and ElectricCommander
Responsibilities
  • Performs static/dynamic code testing, manual code inspection, threat modeling, design reviews and penetration testing of internal web applications and external partner applications to identify vulnerabilities and security defects
  • Supports the implementation and enforcement of secure design principles according to policies, standards, and patterns of Information Security
  • Serves as a Subject Matter Expert (SME) in web application security for enterprise projects during development phases to provide Information Security consulting and recommendations, ensuring the implementation of approved security requirements
  • Develops and implement manual and automated web application security testing of e-commerce web applications to enforce security standards
  • Works with security product vendors and service providers to evaluate security offerings, including product evaluations, proof of concept and pilot installations

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A