Vanguard-posted 3 months ago
Malvern, PA

The position involves utilizing application development, deployment, and security experience to guide Application Security strategy and secure the software development lifecycle (SDLC). The role requires the use of current and emerging security technologies to identify, assess, and remediate application vulnerabilities, including SAST, SCA, IAST, DAST, and Containers. Responsibilities include configuring and onboarding teams to dynamic scanning tools across CI/CD environments, managing authentication, and integrating DAST scanners with target applications and platforms. The candidate will design, implement, and continuously refine API security requirements and architecture patterns to proactively address emerging threats while ensuring proper implementation and function of application security solutions. Additionally, the role involves developing strategies to secure current and emerging technologies such as cloud, containers, serverless, and AI/ML, conducting in-depth analysis of vulnerabilities, automating Application Security processes, and collaborating with the developer community to enhance their experience in remediating SDLC security vulnerabilities. The candidate will also provide guidance and training on secure coding and deployment best practices, stay updated on application security practices, maintain comprehensive documentation, and participate in special projects as assigned.

  • Utilize application development, deployment, and security experience to guide Application Security strategy and secure the software development lifecycle (SDLC).
  • Utilize current and emerging security technologies to identify, assess, and remediate application vulnerabilities (SAST, SCA, IAST, DAST, Containers, etc.).
  • Configure and onboard teams to dynamic scanning tools across CI/CD environments.
  • Manage authentication and integration of DAST scanners with target applications and platforms.
  • Design, implement, and continuously refine API security requirements and architecture patterns.
  • Ensure proper implementation, coverage, and function of application security solutions.
  • Develop and implement strategies to secure current and emerging technologies (cloud, containers, serverless, mobile, AI/ML, etc.).
  • Conduct in-depth analysis of vulnerabilities in software and application deployment processes.
  • Identify and execute opportunities to automate Application Security processes.
  • Gather and report metrics from application security solutions and processes.
  • Collaborate with developer community to enhance their experience in remediating SDLC security vulnerabilities.
  • Provide guidance and training to development and cloud engineering teams on secure coding and deployment best practices.
  • Stay up to date on application security practices and standards.
  • Maintain comprehensive documentation of technology, projects, processes, etc.
  • Participate in special projects and other duties as assigned.
  • Undergraduate degree in a related field or equivalent combination of training and experience.
  • Strong experience deploying and operating DAST tools, including managing team onboarding, authentication setup, and CI/CD integration.
  • Experience with other well-known application security tools (SAST, SCA, IAST, RASP, etc.).
  • Strong knowledge of application development, build, and deployment processes.
  • Familiarity with industry standards such as NIST, OWASP, and MITRE.
  • Relevant certifications in application development, security, application security, DevSecOps, or cloud are a plus.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service