Engineer – Application Security Remediation

Momento USA

Not Interested
Bookmark
Report This Job

profile Job Location:

Lake Saint Louis, MO - USA

profile Monthly Salary: Not Disclosed
Posted on: 30+ days ago
Vacancies: 1 Vacancy

Job Summary

Engineer Application Security Remediation

About the Role

We are looking for a skilled Engineer with a strong foundation in application security and secure coding practices. The primary focus of this role is to identify analyze and fix vulnerabilities within our existing applications.

You will collaborate with our InfoSec architecture and DevOps teams to remediate security gaps refactor insecure code and strengthen the overall security posture of our products.

Key Responsibilities

  • Identify triage and remediate vulnerabilities detected through SAST DAST and dependency scanning tools (e.g. Snyk SonarQube Checkmarx OWASP ZAP).
  • Apply secure coding principles and implement fixes for issues like XSS CSRF SQL Injection SSRF and command injection.
  • Refactor and harden existing APIs for improved security and performance.
  • Update and manage dependencies to address known vulnerabilities using npm audit Snyk or similar tools.
  • Collaborate with the Security and QA teams to validate patches and verify that vulnerabilities have been fully resolved.
  • Improve CI/CD pipelines to automate vulnerability scans and security checks.
  • Document changes maintain audit trails and support re-scans post-fix validation.
  • Stay updated with security advisories OWASP Top 10 and emerging threats.

Required Skills

  • Strong proficiency in and JavaScript/TypeScript.
  • Experience with REST APIs OAuth2/JWT and secure session management.
  • Deep understanding of web application vulnerabilities and mitigation strategies.
  • Familiarity with Docker security Linux hardening and AWS cloud environments
  • Hands-on experience integrating security scans into CI/CD pipelines (Jenkins GitHub Actions).

Preferred Qualifications

  • Exposure to microservices architecture and API gateway security.
  • Knowledge of OWASP ASVS CWE standards or threat modeling frameworks.
  • Familiarity with DevSecOps practices.
  • Security-related certifications (e.g. CEH CSSLP OWASP Practitioner) are a plus.

Soft Skills

  • Excellent problem-solving and debugging skills.
  • Strong collaboration with cross-functional engineering and InfoSec teams.
  • Proactive and detail-oriented mindset focused on secure and scalable code.

Note: Momento USA is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race color religion sex pregnancy sexual orientation gender identity national origin age protected veteran status or disability status.

Engineer Application Security Remediation About the Role We are looking for a skilled Engineer with a strong foundation in application security and secure coding practices. The primary focus of this role is to identify analyze and fix vulnerabilities within our existing applications. You will...
View more view more

Key Skills

  • Children Activity
  • EAM
  • Engineering Support
  • Maintenance Engineering
  • Accident Investigation
  • Branding