Job Title: Application Security Vulnerability Assessment Engineer- 85826Y1295
Client: NYC Agency
Location: Brooklyn NY (Onsite)
Duration: 24 Months
Job Summary:
- Client seeks an Application Security Vulnerability Assessment Engineer to perform scanning and testing activities for the Software Security Assurance Program (SSAP).
- The Engineer will be responsible for identifying validating and providing remediation guidance for vulnerabilities across the organization s application portfolio. The primary focus is the operation and fine-tuning of SAST/DAST tooling to provide high-fidelity security baselines followed by manual validation of results.
- The Engineer will also provide direct technical remediation guidance to development teams and lead structured knowledge transfer sessions to train full-time staff.
Mandatory Skills/Experience:
- Minimum of 12 years of hands-on experience in Application Security Vulnerability Assessments or Penetration Testing.
- Advanced proficiency in applying OWASP Top 10 and NIST 800-53 standards.
- Practical experience operating and configuring SAST/DAST tools (e.g. AppScan Veracode Burp Suite).
- Proven ability to explain technical vulnerabilities to developers and provide specific design-level remediation guidance.
- Proficiency in using CVSS (Common Vulnerability Scoring System) to correlate technical severity with business impact and data sensitivity.
Desirable skills/experience:
- Experience testing cloud-native apps (AWS/Azure/GCP) APIs and microservices.
- Strong understanding of Agile/SDLC cycles to effectively coordinate with developers and project managers.
- Proficiency in manual deep-dive testing to validate automated findings and identify complex business logic flaws.
- Background working with large complex organizations or government/public sector environments.
Job Title: Application Security Vulnerability Assessment Engineer- 85826Y1295 Client: NYC Agency Location: Brooklyn NY (Onsite) Duration: 24 Months Job Summary: Client seeks an Application Security Vulnerability Assessment Engineer to perform scanning and testing activities for the Software Securi...
Job Title: Application Security Vulnerability Assessment Engineer- 85826Y1295
Client: NYC Agency
Location: Brooklyn NY (Onsite)
Duration: 24 Months
Job Summary:
- Client seeks an Application Security Vulnerability Assessment Engineer to perform scanning and testing activities for the Software Security Assurance Program (SSAP).
- The Engineer will be responsible for identifying validating and providing remediation guidance for vulnerabilities across the organization s application portfolio. The primary focus is the operation and fine-tuning of SAST/DAST tooling to provide high-fidelity security baselines followed by manual validation of results.
- The Engineer will also provide direct technical remediation guidance to development teams and lead structured knowledge transfer sessions to train full-time staff.
Mandatory Skills/Experience:
- Minimum of 12 years of hands-on experience in Application Security Vulnerability Assessments or Penetration Testing.
- Advanced proficiency in applying OWASP Top 10 and NIST 800-53 standards.
- Practical experience operating and configuring SAST/DAST tools (e.g. AppScan Veracode Burp Suite).
- Proven ability to explain technical vulnerabilities to developers and provide specific design-level remediation guidance.
- Proficiency in using CVSS (Common Vulnerability Scoring System) to correlate technical severity with business impact and data sensitivity.
Desirable skills/experience:
- Experience testing cloud-native apps (AWS/Azure/GCP) APIs and microservices.
- Strong understanding of Agile/SDLC cycles to effectively coordinate with developers and project managers.
- Proficiency in manual deep-dive testing to validate automated findings and identify complex business logic flaws.
- Background working with large complex organizations or government/public sector environments.
View more
View less