Application Security / DevSecOps Engineer - Contract

KAYGEN•New York, NY
•$60 - $75•Remote

About The Position

The Application Security / DevSecOps Engineer will support the client’s enterprise Application Security program by integrating security controls and scanning capabilities throughout the software development lifecycle and CI/CD pipelines. The resource will work across multiple source code management and DevOps platforms, including GitHub, GitLab, Azure DevOps (ADO), and Jenkins, and will be responsible for onboarding applications into security scanning solutions such as Checkmarx. Responsibilities include configuring and executing SAST and SCA scans, establishing recurring scanning schedules, reviewing and analyzing scan results, supporting remediation of identified vulnerabilities, and integrating security findings with the appropriate development and security workflows. The resource should also provide hands-on application security expertise beyond automated tooling, including secure code review, identification of coding and validation weaknesses, review of third-party and open-source libraries/packages, and assessment of software supply-chain risks. The individual will work closely with application and development teams to identify security gaps, provide remediation guidance, and help ensure that applications consume trusted and secure software components.

Requirements

  • 5+ years of experience in Application Security, DevSecOps, or Software Security Engineering within enterprise environments.
  • Hands-on experience with CI/CD and DevOps platforms such as GitHub, GitLab, Azure DevOps (ADO), and Jenkins, including security integration and automation.
  • Strong knowledge of application security testing tools and methodologies, including SAST, SCA, vulnerability management, and secure software development lifecycle (SDLC) practices.
  • Proven ability to perform secure code reviews, assess open-source and third-party software risks, and identify application security vulnerabilities and remediation strategies.
  • Excellent collaboration and communication skills, with experience partnering with development teams to implement security best practices and drive vulnerability remediation efforts.

Responsibilities

  • Integrating security controls and scanning capabilities throughout the software development lifecycle and CI/CD pipelines.
  • Working across multiple source code management and DevOps platforms, including GitHub, GitLab, Azure DevOps (ADO), and Jenkins.
  • Onboarding applications into security scanning solutions such as Checkmarx.
  • Configuring and executing SAST and SCA scans.
  • Establishing recurring scanning schedules.
  • Reviewing and analyzing scan results.
  • Supporting remediation of identified vulnerabilities.
  • Integrating security findings with the appropriate development and security workflows.
  • Providing hands-on application security expertise beyond automated tooling, including secure code review, identification of coding and validation weaknesses, review of third-party and open-source libraries/packages, and assessment of software supply-chain risks.
  • Working closely with application and development teams to identify security gaps, provide remediation guidance, and help ensure that applications consume trusted and secure software components.

Benefits

  • Free Healthcare Insurance
  • 401(k) Retirement Plan
  • Free Life Insurance
  • Sick Time Off
  • Mentorship Program
  • Certifications
  • Referrals
  • Family and Wellness benefits
  • Continuous Growth and Career Development
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service