Application Security Specialist - US Remote

Degreed
·
Posted: 
August 16, 2023
·
Remote
Job Commitment
Full-time
Job Commitment
Mid Level
Job Function
Operations
Salary
N/A
Job Commitment
Full-time
Experience Level
Mid Level
Workplace Type
Remote
Job Function

This job is closed

We regret to inform you that the job you were interested in has now been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

About the position

The Application Security Specialist will be responsible for overseeing the development and implementation of a secure Software Development Life Cycle (SDLC) and ensuring the security of Degreed's cloud infrastructure. They will collaborate with the product and engineering teams to proactively identify security issues and prevent vulnerabilities during development. The ideal candidate will have strong technical understanding of security domains, experience in conducting security assessments and threat modeling, and the ability to communicate security concepts effectively. They will also be involved in building an application security program and automating applicable processes.

Responsibilities

  • Oversee the development and implementation of a secure Software Development Life Cycle (SDLC)
  • Collaborate with the DevOps team to provide guidance and ensure the security of Degreed's cloud infrastructure
  • Proactively identify security issues during solution design and prevent vulnerabilities during development
  • Support the development of design patterns and development standards for building secure solutions
  • Develop assessment frameworks to evaluate designs and execute them
  • Support the design of proactive application security frameworks for secure architecture and development of business solutions
  • Secure the Cloud environment by applying controls around prevent, detect, respond, and remediate
  • Define and integrate Security Architecture standards and Secure SDLC across the organization
  • Assist the DevSecOPS team in CI/CD pipelines and design high-tech security practices for cloud and container release platforms
  • Conduct application security assessments, threat modeling, and be involved in application design
  • Communicate design and development principles to appropriate stakeholders
  • Empower and inspire developers, architects, and others through training in secure coding and design principles
  • Build an application security program to improve security designs and reduce vulnerabilities
  • Automate and standardize applicable processes
  • Adapt to a dynamic environment with constant change and ambiguity
  • Build strong relationships with development, software architecture, and product management stakeholders
  • Familiarity with popular cloud provider solutions and cloud orchestration tools
  • In-depth comprehension of the OWASP Top 10 and ability to communicate security concepts effectively
  • Conduct cloud architecture reviews, application risk assessments, and threat modeling
  • Integrate security controls into all stages of the Software Development Life Cycle (SDLC)
  • Analyze business impact and exposure based on emerging security threats, vulnerabilities, and risks
  • Translate technical concepts into plain language for effective communication with stakeholders
  • Collaborate with developers and software architects to ensure secure designs meet business and technical requirements
  • Have 5+ years of overall experience in information security, including 3+ years in application security field and 1+ year in Cloud Security
  • Possess knowledge and experience with security controls and secure migration of enterprise applications to major cloud providers
  • Define and integrate Security Architecture standards and Secure SDLC across the organization
  • Conceptualize and think about threat assessments and threat modeling in release cycle and containerized environments
  • Exposure to delivering results in an agile environment
  • Have a development background and understanding of building applications in modern languages
  • Ability to work effectively in a virtual environment with team members and partners in various time zones and locations

Requirements

  • 5+ years of overall experience in information security, including 3+ years in application security field and 1+ year in Cloud Security
  • Background in the application security basics and a working knowledge of the OWASP Top Ten exploitation paths and control mitigations to protect against them. Cloud security experience preferred.
  • Knowledge and experience with the configuration of security controls and secure migration of enterprise applications to one of the major cloud providers such as Azure (preferred), Amazon Web Services, or Google Cloud.
  • Experience with defining and integrating Security Architecture standards and Secure SDLC across the organization. A general understanding of old and new development patterns: Release cycles, CI/CD, Code check-in and review. Demonstrated knowledge of build concepts like pipelines, runners, and security checks in early lifecycle build. A background in container build environments.
  • Demonstrated experience conceptualizing and thinking about threat assessments and threat modeling both in the release cycle and containerized environments. Experience with vulnerability management.
  • Exposure to delivering results in an agile environment driven by priorities.
  • Some development background such as building applications in at least one language in recent history and understand the complexities of building in modern languages.
  • Ability to work effectively in virtual environment where key team members and partners are in various time zones and locations.
  • A cybersecurity certification would be highly advantageous (Security+, SSCP, CISSP, CISM, CCSP, CSSLP, CEH, etc.)

Benefits

  • Comprehensive health insurance for you and your family (both PPO and HDHP plans available)
  • Dental and vision plans for you and your family
  • Employer-paid life insurance, AD&D, short-term disability, and long-term disability
  • Company equity
  • 401(k) Retirement Savings Plan with up to 4% match
  • Company funded HSA and dependent care FSA (pending eligibility)
  • Generous Parental Leave
  • Unlimited Paid Time Off and 5 sick days per year
  • Education benefit: Up to $1,200 per year for anything you want to learn
  • 100% remote with a One-time Home Office Stipend
  • Monthly internet and phone stipend
  • Monthly wellness stipend through Forma
  • Wellness programs focused on your financial, physical, and mental wellbeing

Job Application Resources

No items found.

More Openings at Degreed

Degreed
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Degreed
Web Design
Web Design
Web Design
Web Design
Remote
·
Full-time
·
Product
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Degreed
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Senior
·
101-250
Employees
This is some text inside of a div block.
Degreed
Web Design
Web Design
Web Design
Web Design
Remote
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Degreed
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Degreed
Web Design
Web Design
Web Design
Web Design
Hybrid
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Senior
·
101-250
Employees
This is some text inside of a div block.

Similar Jobs

Ruggable
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Manager
·
101-250
Employees
This is some text inside of a div block.
Gusto
Web Design
Web Design
Web Design
Web Design
Hybrid
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Entry Level
·
101-250
Employees
This is some text inside of a div block.
Arc Institute
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Manager
·
101-250
Employees
This is some text inside of a div block.
Leaseweb
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
FreshRealm
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Blenheim Chalcot
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Operations
$
320,000
-
$
360,000
/Year
·
Entry Level
·
101-250
Employees
This is some text inside of a div block.

Degreed

Degreed is an upskilling platform where individuals and organizations can discover content, build skills, and certify expertise.
Location
Pleasanton, CA
Company Size
501-1,000
Workplace Type
Industries
Education
Software
EdTech
Open Roles
14
Less details
Create a Tailored Resume for this Role in Minutes
Start Building for Free

Degreed

Degreed is an upskilling platform where individuals and organizations can discover content, build skills, and certify expertise.
Company Overview

Degreed is an upskilling platform where individuals and organizations can discover content, build skills, and certify expertise.

Benefits
  • Remote-first company with flexibility to work in-office or hybrid if living in a city with a physical office location
  • Opportunity to operate 100% virtually from home office
  • Collaboration with US and International colleagues through virtual meetings (Zoom), email, and Slack
  • Equal employment opportunities and commitment to full inclusion of all qualified individuals
  • Reasonable accommodations provided for qualified individuals with disabilities
  • Consideration for qualified applicants with arrest and conviction records (San Francisco Fair Chance Ordinance)
  • Degreed uses the E-Verify employment verification program
Less details

Want Jobs in Your Inbox?

Sign up for the Teal newsletter and get career guidance and new jobs weekly!
Thank you! Your submission has been received!
Oops! Please provide a correct email address