5 days ago
Halifax, CanadaSenior
Base Salary
$80k - $94k/yr
Responsibilities
- Analyze and remediate application security vulnerabilities identified through SAST, DAST, SCA, and penetration testing.
- Implement secure coding practices across .NET applications in alignment with OWASP standards.
- Investigate and resolve findings from Checkmarx, Fortify, AppScan, SonarQube, and similar platforms.
- Perform root cause analysis and implement sustainable security remediation strategies.
- Collaborate with development, architecture, DevOps, and security teams to resolve vulnerabilities.
- Support Secure SDLC initiatives and application security compliance requirements.
- Conduct security-focused code reviews addressing maintainability and performance.
- Improve CI/CD pipelines by integrating automated security scanning and remediation processes.
- Provide technical guidance and mentorship on secure development and vulnerability prevention.
Requirements
- Bachelor's degree in Computer Science, Information Technology, Software Engineering, or a related field.
- Strong hands-on experience developing enterprise applications with .NET and C#.
- Proven experience identifying, analyzing, and remediating application security vulnerabilities.
- Deep understanding of OWASP Top 10 vulnerabilities and secure coding principles.
- Experience with SAST, DAST, SCA, and penetration testing reports.
- Hands-on experience with Checkmarx, Fortify, AppScan, SonarQube, or equivalent tools.
- Experience performing root cause analysis and implementing long-term security fixes.
- Familiarity with CI/CD pipelines and automated security controls.
- Security certifications such as CSSLP, GWAPT, GSEC, Security+, or similar are helpful.
- Experience securing applications in Azure or AWS environments is helpful.
- Knowledge of DevSecOps, automated compliance frameworks, threat modeling, secure architecture reviews, and security risk assessments is helpful.
- Strong communication skills and the ability to work independently with minimal onboarding support are helpful.
Benefits
- Hybrid work arrangement requiring three days per week in a client or Cognizant office.
- Wellbeing programs supporting work-life balance.
- Eligibility for Cognizant's discretionary annual incentive program, subject to performance and applicable plan terms.
About Cognizant
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value. We build full-stack AI solutions powered by deep industry, process and engineering expertise — embedding an organization's unique context into technology systems that amplify human potential and drive tangible outcomes. From strategy to deployment, we help global enterprises move from AI ambition to AI impact and stay ahead in a fast-changing world. See how at cognizant.ai | Follow us @cognizant
