Application Security Consultant

HIGH BRIDGE CONSULTING LLCParsippany-Troy Hills, NJ
$80 - $90Remote

About The Position

This role focuses on leading application security design for web, mobile, and AWS cloud-native systems. The consultant will be responsible for secure architecture reviews, CI/CD security integration, and administering SAST/SCA tools. A key aspect of the role involves securing cloud environments, particularly AWS services, and ensuring secure production deployments through collaboration with release and change management. The position also requires providing security input during architecture and project planning, and managing vulnerability remediation across engineering teams.

Requirements

  • 3+ years in application security (offense and defense) with hands-on SAST/SCA experience.
  • Strong knowledge of OWASP Top Ten and web/API security vulnerabilities and remediation.
  • Experience securing AWS cloud services and working with cloud security platforms (e.g., Wiz, Prisma Cloud, Orca).
  • Ability to read and review code in Java, JavaScript/Node.js, or Python for security validation.
  • Experience with CI/CD pipelines, DevSecOps practices, and secure SDLC integration.
  • Strong communication skills with ability to influence technical and business stakeholders.
  • Experience working with change/release management in production environments.

Nice To Haves

  • Familiarity with threat intelligence and how it informs application security controls.
  • Experience driving developer security adoption through workshops or working sessions.
  • Strong understanding of agile delivery environments and enterprise release governance.

Responsibilities

  • Lead application security design across web, mobile, and AWS cloud-native systems, including secure architecture reviews and CI/CD security integration.
  • Administer and optimize SAST/SCA tools (e.g., Checkmarx, Snyk), triage vulnerabilities, and guide remediation aligned to OWASP Top Ten.
  • Secure cloud environments (especially AWS Lambda, API Gateway, IAM, S3) and support runtime and application-layer protections.
  • Partner with release and change management to ensure secure, stable production deployments and support go-live readiness.
  • Provide security input in architecture and project planning, ensuring requirements are embedded early in design and development.
  • Track vulnerabilities, produce reporting, and manage remediation progress across engineering teams.
  • Automate security testing and improve security tooling workflows.
  • Develop and improve security runbooks, documentation, and operational procedures.
  • Support penetration testing, secure code reviews, or developer training as needed.
  • Participate in additional architecture discussions or advisory meetings when required.

Benefits

  • Flexible work from home options available.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service