Senior Consultant, Application Security
San Antonio, TX
Applications have closed
Coalfire
Coalfire is the cybersecurity advisor that combines extensive cloud expertise, technology, and innovative approaches to help clients develop scalable programs that improve their security posture and fuel their continued success.- Conduct application security assessments of client-owned software using knowledge of SQL, Python, Database Testing, Automation - Web Applications, ETL Testing, Live/Dynamic Application Security Testing (including web, mobile, and platform-native applications); Static Application Security Testing (SAST), Technical Writing; Security Maturity Modeling and application security program development, Threat Modeling, and DevSecOps.
- Communicate security vulnerabilities to development teams.
- Draft reports of observed vulnerabilities and recommended remediations.
- Conduct live security testing of web services and mobile client applications.
- Conduct static analysis and manual security review of software source code.
- Support client developers to resolve discovered vulnerabilities.
- Perform security reviews of software system architecture.
- Support clients to implement source scanning and live testing tools.
- Train client developers to understand security risk and secure development practices and build proof-of-concept exploits of identified security vulnerabilities.
- Perform peer review of assessment reports.
- Participate in recruiting efforts for potential consultants including interviews, review of technical assessments and resumes.
- Master of Science in Information Assurance, Cybersecurity, Comp Science/Engineering/Information Systems, or closely related field
- 3+ years of experience in position offered or as Information Security Analyst.
- Experience must include at least 3 years of theoretical/working knowledge of SQL, Python, Database Testing, Automation - Web Applications, ETL Testing, Live/Dynamic Application Security Testing (including web, mobile, and platform-native applications); Static Application Security Testing (SAST), Technical Writing; Security Maturity Modeling and application security program development, Threat Modeling, and DevSecOps.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Automation DAST DevSecOps Exploits Python SAST Security assessment SQL Vulnerabilities
Region:
North America
Country:
United States
Job stats:
3
0
0
Categories:
AppSec Jobs
Consulting Jobs
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Senior Security Analyst jobs
- Open Security Operations Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Senior Information Security Analyst jobs
- Open Product Security Engineer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Cybersecurity Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open IT Security Analyst jobs
- Open Cybersecurity Specialist jobs
- Open Security Specialist jobs
- Open Chief Information Security Officer jobs
- Open Security Researcher jobs
- Open Senior Penetration Tester jobs
- Open Senior Security Architect jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Specialist jobs
- Open Information System Security Officer (ISSO) jobs
- Open Clearance-related jobs
- Open ISO 27001-related jobs
- Open Windows-related jobs
- Open Application security-related jobs
- Open Network security-related jobs
- Open CISM-related jobs
- Open Pentesting-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open IAM-related jobs
- Open CISA-related jobs
- Open Threat intelligence-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Java-related jobs
- Open Kubernetes-related jobs
- Open EDR-related jobs
- Open Malware-related jobs
- Open APIs-related jobs
- Open IDS-related jobs
- Open Security Clearance-related jobs
- Open DevSecOps-related jobs
- Open CI/CD-related jobs