about 2 hours ago
Base Salary
$150k - $200k/yr
Responsibilities
- Lead the development and implementation of application security protocols throughout the SDLC.
- Partner with engineering teams to incorporate security into architecture, design, development, testing, and deployment.
- Perform hands-on security testing of web applications, APIs, and cloud-native services.
- Build and improve automated security testing within CI/CD pipelines.
- Evaluate the effectiveness of application security tools and improve tooling output quality.
- Develop secure coding standards with developer-focused documentation.
- Contribute application security expertise to vulnerability management and post-incident reviews.
- Evaluate third-party applications and integrations for security risk.
- Ensure adherence to healthcare regulatory and compliance requirements.
Requirements
- 4+ years of experience in application, product, or software security.
- Strong understanding of application security vulnerabilities and attack techniques.
- Experience performing manual security testing of modern web applications and APIs.
- Ability to review application architecture and source code for security weaknesses.
- Experience integrating application security tools into CI/CD workflows.
- Familiarity with static and dynamic application security testing.
- Understanding of authentication, authorization, and secure API design.
- Strong expertise in cloud technology and modern programming languages.
- Demonstrated experience in establishing enterprise-wide security policies.
