Search jobs > Providence, RI > Application security

Application Security Principal

PPL Services Corporation
Providence, Rhode Island, US
Full-time

Responsibilities

Core Responsibilities

  • Work with Product Development teams to help prioritize and validate urgency of mitigation of identified product vulnerabilities and security feature enhancement requests.
  • Define security best practices and standards and ensure Product Development teams understand them and receive pertinent annual secure coding training.
  • Develop and maintain the application security architecture, ensuring that it aligns with overall security strategy and standards.
  • Evaluate, implement, and manage security tools and technologies that enhance the security posture of applications.
  • Conduct risk assessments for applications to identify potential vulnerabilities and threats, develop strategies to mitigate these risks.
  • Oversee and coordinate security testing activities, including static code analysis, dynamic application security testing, and penetration testing.
  • Perform system hardening and remediation to effectively guide developers and system administrators in addressing vulnerabilities and implementing security controls.
  • Perform security assessments, penetration testing, and code reviews to identify potential flaws in codes and mitigate vulnerabililties.
  • Analyze security needs and software requirements to determine feasibility of design within time and cost constratints and security requirements.
  • Perform threat modeling, risk assessment, and vulnerability management to identify potential security risks and work with development teams to implement appropriate security controls.
  • Provide guidance and training to development teams on secure coding practices and promote security awareness across the organization.
  • All other duties and projects as assigned.

Qualifications

Education

Bachelor’s degree in computer science, Information Security, or a related field.

Experience

  • A minimum of 10+ years of experience using penetration testing tools like Burp Suite.
  • Experience in application security tools and IDE Plug-in environments, including HP Fortify.
  • Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25.
  • Expertise in system hardening and remediation.
  • Proficiency in security assessments, penetration testing, and code reviews.
  • Expertise in threat modeling, risk assessment, and vulnerability management.
  • Knowledge of federal compliance standards, including NIST 800-53 and NIST CSF.
  • Strong leadership, communication, and interpersonal skills.
  • Collaborative and effective in cross-functional team environments.
  • Strong analytical skills to assess risks and vulnerabilities in complex systems.

Preferred Qualifications

  • Professional certifications such as CISSP, CSSLP, or CEH
  • Cloud Technology Expertise : Demonstrate a working knowledge of various enterprise technology stacks used to build applications in the cloud.

Your understanding of cloud infrastructure will enable you to assess secruity aspects unique to cloud-based mobile applications and API's.

Cloud Platform Experience : Possess working knowledge and practical experiences in security testing within cloud platforms, particularly Azure.

Your familiarity will be crucial for assessing the secruity of cloud-hosted mobile applications and APIs.

  • Proficiency in scripting and automation for security testing.
  • 30+ days ago
Related jobs
PPL Services Corporation
Providence, Rhode Island

Develop and maintain the application security architecture, ensuring that it aligns with overall security strategy and standards. Evaluate, implement, and manage security tools and technologies that enhance the security posture of applications. Oversee and coordinate security testing activities, inc...

Promoted
SAIC
Work, Rhode Island

Responsibilities include overseeing the systems engineering principles throughout the systems life cycle phases: Concept, Requirements Analysis, Architecture Design, Implementation, Verification and Validations, Transition, Support, and Disposal. Chief Engineer of Undersea Systems. This position wil...

Promoted
Bally's Corporation
Tiverton, Rhode Island

Unable to act as current law enforcement security officers and cannot assist with disturbances or arrests. Staff the Security Dispatch Center 24 hours a day. Officers assigned to dispatch will answer phones, answer/monitor all radio communications from all departments, will monitor surveillance came...

Promoted
Neighborhood Health Plan of Rhode Island
Smithfield, Rhode Island

Evaluate, select, and implement data governance tools and technologies to support data governance initiatives, such as data cataloging, data lineage, and data quality monitoring. Classify data assets based on sensitivity and criticality, establish metadata standards, and implement metadata managemen...

Promoted
Amgen
West Greenwich, Rhode Island

Principal Manufacturing Systems Engineer - Amgen Rhode Island Site Lead. Principal Manufacturing Systems Engineer. Doctorate degree and 2 Information Systems, Manufacturing Process automation/Information system experience. Master's degree and 6 Information Systems, Manufacturing Process automation/I...

Promoted
FM Global
Johnston, Rhode Island

The Data Engineer III is responsible for analysis, data modeling, data collection, data integration, and preparation of data for consumption. The Data Engineer is responsible for creating and managing data infrastructure, data pipeline design, implementation and data verification. The Data Engineer ...

Promoted
Sky Systems, Inc
Woonsocket, Rhode Island

Scrum Master or Project Management Certification. Agile methodology and Project Management. Experience with SCRUM/Agile methodologies with enterprise-level application development projects. Strong hands-on experience with Microsoft Office tools (Word, Excel, Project, PowerPoint, and Visio). ...

Promoted
Capital One
North Smithfield, Rhode Island

Locations: VA - Richmond, United States of America, Richmond, VirginiaSenior Software EngineerDo you love building and pioneering in the technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and iterative delivery environment? At Capital One, you...

Promoted
Fidelity TalentSource LLC
Smithfield, Rhode Island

The Security Representative is a Brand Ambassador for Global Security Operations who provides outstanding customer service during the course of their assigned duties as part of a larger team of security professionals. We are currently sourcing for a Security Officer to work in Smithfield, RI!. The i...

Promoted
REGENT
RI, United States

As a Senior Mechanical Engineer, you will work to develop various static and kinematic systems. Candidates with additional experience in electrical engineering will be highly valued as many of the mechanical systems are tightly coupled and interface with electrical components for control and feedbac...