MyPage is a personalized page based on your interests.The page is customized to help you to find content that matters you the most.


I'm not curious
4

Application Security Engineer

Location Kuna, United States
Posted 08-September-2021
Description
Description:

Scentsy is looking for an Application Security Engineer to identify and assist with the remediation of security issues within Scentsy software products and services. The ASE will serve as the primary security contact for development teams and promote secure development practices within all phases of the Software Development Lifecycle (SDLC).

What You Would Do:

Develop, implement, and improve the Application Security programConduct regular security assessments of enterprise applications in the form of static code analysis, dynamic application scanning, and penetration testingConduct code reviews for security flaws on major projects and suggest appropriate fixesDevelop mitigation plans and reports around identified vulnerabilitiesDevelop secure coding guidelinesDevelop and deliver application security training within ScentsyApply a deep understanding of application security threats and protection mechanisms to enterprise development projects and solutionsProvide security consulting and advice to enterprise development teamsConduct threat modeling on new projects and initiativesServe as the primary consultant for product securityDevelop programs, scripts, or solutions to improve Cybersecurity operationsConduct security reviews of 3rd party software solutions, products, and vendorsImplement solutions based on industry best practicesValidate, address, and document responses to security findings from third-party penetration testing engagementsChampion and evangelize security throughout the companyChampion the growth of Secure Software Development Lifecycle (SSDLC)Recommend security enhancements, purchases, and process improvementsMentor less experienced team membersPerform all other assigned tasks and requirements as needed.

You Should Have:

3 years of application Security experience or Enterprise Software DevelopmentExperience with one or more general-purpose programming languages including but not limited to: Java, C/C++, C#, Objective C, Python, JavaScript, or GoExperience in Application Security, Cryptography, Network Security, Systems Security, or Malware AnalysisBachelor's degree in Computer Science, Computer Engineering, or related area of study, or equivalent experienceOffensive Security Web Expert (OSWE), Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT) certifications preferred

Things You Should Know & Be Able to Do:

Familiar with the Open Web Application Security Project (OWASP) Top TenAbility to work with multiple technology platforms and application stacksKnowledge of security audit processesAbility to communicate effectively to a variety of technical and non-technical audiencesStrong peer mentoring skillsResults orientated, business-focused, and successful interfacing across multiple organizational units, at various levelsAbility to work collaboratively across all Information Technology teamsAbility to work accurately, efficiently, and independently on detailed orientated tasksAbility to prioritize and direct others workExcellent written and oral communication skillsAbility to think critically, troubleshoot and solve complex problems, and make decisions quickly and independently that impact the companyStrong organizational, analytical, and interpersonal skillsWorking knowledge of computers and all applicable software including 3rd party Information security solutionsAbility to develop, oversee, and manage large programs from implementation through to completion. Requirements:

PI

 
Awards & Accolades for MyTechLogy
Winner of
REDHERRING
Top 100 Asia
Finalist at SiTF Awards 2014 under the category Best Social & Community Product
Finalist at HR Vendor of the Year 2015 Awards under the category Best Learning Management System
Finalist at HR Vendor of the Year 2015 Awards under the category Best Talent Management Software
Hidden Image Url