Application Security Engineer

Overland Park, Kansas

Applications have closed
Rx Savings Solutions has an exciting opportunity for an Application Security Engineer to join our team! The ideal candidate should have experience collaborating with application developers to help identify and remediate vulnerabilities, and be willing to contribute to a rapidly growing company with an awesome and fun-loving culture. The team at Rx Savings Solutions is driven to make a difference in the pharmaceutical industry by exposing cost-savings analytics to our members. We take pride knowing that the work we do can greatly impact the lives of our customers!

Responsibilities

  • Perform application vulnerability assessments on new and legacy web applications
  • Perform threat modeling and penetration testing exercises with the rest of the security team
  • Perform daily/weekly code reviews for critical features/updates
  • Train developers in secure development practices
  • Integrate and improve security within the SDLC process and pipeline
  • Deploy and maintain various security platforms (IDS, WAF, SAST, DAST, etc.)
  • Support/consult software developers as they need assistance with various application security tasks
  • Audit AWS environment from an Application Security standpoint to ensure proper security configurations (Security Groups, IAM policies, NACL, etc.)
  • Participate in Security Incident Response process via monitoring, detection, notification, remediation and documentation
  • Perform other various security duties as needed

Requirements

  • Bachelor's degree with an emphasis in Computer Science/Information Systems OR equivalent professional experience
  • Minimum of 2 years in Software Development and/or Application Security
  • Minimum of 2 years experience with Linux administration/configuration
  • Experience with Secure Software Development best practices
  • Solid understanding of the OWASP Top 10
  • Experience with object-oriented programming (PHP, JavaScript, Java, C#, Ruby, Python, Dart etc.)
  • Knowledge of relational database technologies (MySQL, PostgreSQL, MSSQL)
  • Scripting/automation using languages like Python/Perl

It would be nice if you had...

  • Knowledge of version control flow systems (GIT)
  • Experience with penetration testing
  • Experience with cloud services (AWS, GCP, Azure) and cloud security principles
  • Experience using Docker and/or other containerization technologies
  • Certifications:
  • General Pentesting - CEH, OSCP, GPEN, GXPN
  • Web Security - OSWE, GWAPT, GWEB
  • Application Security - CASE, GCSA
  • AWS - AWS Developer, AWS Security
#LI-DM1#LI-Remote

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Analytics Application security Automation AWS Azure C CEH Cloud Computer Science DAST Docker GCP GPEN GWAPT GXPN IAM IDS Incident response Java JavaScript Linux Monitoring MSSQL MySQL OSCP OSWE OWASP Pentesting Perl PHP PostgreSQL Python Ruby SAST Scripting SDLC Vulnerabilities

Regions: Remote/Anywhere North America
Country: United States
Job stats:  6  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.