
Specialist II, Application Security (TCF)
Concentrix2 days ago
Remote, Colombia or Bogotá, ColombiaMid Level
Responsibilities
- Partner with Security, DevOps, and Development teams to embed application security throughout the SDLC.
- Promote secure coding practices, identify security gaps, and recommend remediation with application developers.
- Provide training and guidance on secure coding standards, application security risks, and security tooling.
- Integrate and maintain SAST, DAST, and SCA tools within CI/CD pipelines.
- Automate application security assessments, including API security testing for authentication, authorization, rate limiting, sensitive data exposure, and access control.
- Support external exposure management through internet-facing asset discovery, attack surface monitoring, and vulnerability identification.
- Track, prioritize, coordinate, and report remediation of vulnerabilities identified through security testing and external scanning.
- Collaborate on root cause analysis, security control improvements, documentation, and ongoing DevSecOps enhancements.
- Ensure application security practices align with organizational policies and OWASP and NIST standards.
- Complete mandatory training and participate in scheduled 1:1 meetings.
Requirements
- Experience or working knowledge in application security, DevSecOps, secure SDLC practices, or related security functions.
- Understanding of secure coding practices and common application security risks.
- Familiarity with SAST, DAST, and SCA security testing tools and approaches.
- Knowledge of API security concepts, including authentication, authorization, rate limiting, access control, and sensitive data exposure.
- Experience supporting vulnerability management activities such as tracking, prioritization, remediation coordination, and reporting.
- Familiarity with CI/CD pipelines and integrating automated security testing into development workflows.
- Understanding of external exposure management, internet-facing application risks, and attack surface monitoring.
- Knowledge of OWASP and NIST security standards and frameworks.
- Strong documentation, communication, analytical, and problem-solving skills.
- Ability to collaborate cross-functionally, support root cause analysis, recommend improvements, and train technical teams on security practices and tooling.
Benefits
- Remote/work-from-home position in Bogotá, Colombia.
- Full-time employment.
Categories
About Concentrix
We’re Concentrix, a Fortune 500® technology and services leader, helping the world's best brands cut through AI hype and create intelligent operations that perform in the real world. We design, build, and run integrated human and AI solutions, harnessing the insight from billions of real-world interactions to help 2000+ of the world’s most complex organizations solve their toughest business challenges. Backed by 20+ years of operational experience and battle tested AI, we’re the Intelligent Transformation Partner that helps clients across every major vertical move from AI ambition to measurable, scalable performance.