We are seeking a skilled Cyber Security Application Security Expert with 47 years of experience to conduct threat modeling security architecture reviews and collaborate with development teams to enhance application security. The ideal candidate will have experience with application security tools RASP (Runtime Application SelfProtection) and data security with additional knowledge of AWS Kubernetes and Salesforce as a plus.
Responsibilities:
- Conduct threat modeling and security architecture reviews for applications and services.
- Work closely with development teams to integrate security best practices into the SDLC.
- Identify and mitigate application security risks through vulnerability assessments and remediation strategies.
- Implement and manage WAF (Web Application Firewall) and RASP solutions to enhance security posture.
- Utilize application security tools for code analysis penetration testing and vulnerability detection.
- Collaborate with infrastructure and DevOps teams to ensure data security identity management and access control.
- Provide security recommendations for cloud environments including AWS and Kubernetes.
- Conduct security reviews for Salesforce applications and integrations (if applicable).
- Stay updated on emerging security threats and industry best practices to proactively improve security frameworks.
- Assist in incident response and forensic analysis in case of security breaches or vulnerabilities.
Qualifications & Skills:
- 47 years of experience in application security threat modeling and security architecture.
- Handson experience with application security tools WAF and RASP.
- Strong understanding of data security identity & access management (IAM) and secure coding practices.
- Familiarity with DevSecOps practices and integrating security into CI/CD pipelines.
- Good knowledge of web application security (OWASP Top 10 API security and secure authentication mechanisms.
- Experience with cloud security (AWS preferred) and container security (Kubernetes is a plus).
- Salesforce security knowledge is an added advantage.
- Excellent communication skills to work with crossfunctional teams and development teams.
- Relevant certifications such as CISSP CEH AWS Security or GIAC are a plus.
Work Location: Remote
Shift: 3:30 PM to 12:30 AM