Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailWe are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long term project. Here are a few details.
We are seeking a skilled API Security Engineer to support our development and engineering teams in designing and implementing secure API solutions. The ideal candidate will have a strong background in software development cloud security and modern API management practices.
Provide consultation and support to development and engineering teams on API security best practices.
Educate teams on security procedures and standards ensuring compliance across all projects.
Research and develop security solutions focusing on API security data protection and identity protection.
Prepare and maintain security documentation and guidance for development and engineering teams.
Conduct security risk assessments for proposed APIrelated changes.
Collaborate with crossfunctional teams to integrate secure design and architecture into development workflows.
Ensure compliance with industry standards such as OWASP API Top 10 CIS Top 20 etc.
Work within AWS or other cloud environments to support secure development and deployment practices.
3 years of experience in software development using one or more of the following: .NET Python Java/Spring Boot (REST) JavaScript (Node/React) or Go.
Handson experience with API security tools such as Noname Salt Neosec etc.
Proficiency in using security and testing tools like OWASP ZAP Veracode Postman etc.
Strong understanding of API security concepts including design patterns architecture and B2B/A2A/B2C integrations.
Experience with API Management platforms such as Mulesoft Apigee etc.
Solid foundational knowledge of security engineering software engineering authentication and applied cryptography.
Deep understanding of web technologies web services web applications serviceoriented architectures and network/web protocols.
Familiarity with application threat modeling and remediation of OWASP API Top 10 CIS Top 10 and SANS Top 25 vulnerabilities.
Awareness of attacker tactics techniques and procedures (TTPs) and mitigation methods.
Sound understanding of authentication/authorization standards applied cryptography and secure coding practices.
Full Time