Full Time

Application Security Engineer (prior Java or C#) - Bright Mind Solutions LLC - New York, NY

Bright Mind Solutions LLC

New York, NY
65–70 an hour
Posted 15 days ago

Lead Application Security Engineer for NYC Tech client.
Hybrid onsite 3x a week in NYC. **Local candidates only**

5+ years or experience in an enterprise technology environment, with responsibilities across a operations, networking, systems and infrastructure architecture, or other as applicable technical areas.

7+ years of enterprise experience in Web Application Security, SSDLC and Threat Modelling. Experience in managing application security testing tools like SAST, DAST and Open Source Vulnerability Scanning. Prior hands on experience with Software Development Java / C# / C++.

Job Description

HYBRID ROLE. MUST live in NYC area and able to work onsite in NYC 3 days a week.

Our software client based in the NYC area has an immediate need for an Application Security Engineer Lead to join their security team to proactively identify and resolve security risks, issues and incidents. The successful engineer with proactively assesses information risk and facilitate remediation of identified vulnerabilities within the client’s network, systems and applications.

HYBRID ROLE. MUST live in NYC area and able to work onsite in NYC 3 days a week.

RESPONSIBILITIES:
• Proactively identify and resolve security risks, issues and incidents.
• Evaluate and assess information risk, as well as remediation of identified vulnerabilities with the ecosystem.
• Report on findings and recommendations for corrective action.
• Perform assigned vulnerability assessments utilizing enterprise security tools and methodologies.
• Perform assessments of IT security/risk posture within the IT network, systems and software applications.
• Drive security mitigation efforts through identification of opportunities to reduce risk and document remediation options regarding risk scenarios.
• Facilitate and monitor performance of risk remediation tasks.
• Design security solutions to address security vulnerabilities and weaknesses
• Continuously update the monitoring environment and tools in order to