Search jobs > Des Moines, IA > Remote > Application security

Application Security Engineer - Remote

Ryder System, Inc.
Des Moines, IA, United States
Remote
Full-time

RyderApplication Security Engineer - Remote

Des Moines, IA, 50381, USA

Job Seekers can review the Job Applicant Privacy Policy by clicking HERE. (

SUMMARY

We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data.

The Application Security Engineer must understand development, coding, security engineering, and secure systems configurations.

This position ensures that every step of the software development lifecycle (SDLC) follows security best practices. This involves conducting security assessments with SAST and DAST tools, reading source code, threat modeling, and designing and implementing secure software development practices.

They will determine where security vulnerabilities exist and implement fixes. They must understand how an application may be misused and exploited.

The Application Security Engineer will collaborate with software development teams and provide guidance on best practices for secure coding.

They will also stay up to date on the latest security trends and technologies and integrate them into the organization's security strategy.

The ideal candidate will have strong analytical and problem-solving skills, as well as experience in application security and knowledge of programming languages and web technologies.

A Bachelor's degree in Computer Science and certifications such as CISSP, OSCP, or CASE are preferred.

ESSENTIAL FUNCTIONS

Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.

Collaborate with software development teams to integrate security into the development life cycle.

Conduct security assessments of web, mobile, and other applications. Analyze security assessment results to identify security vulnerabilities and provide guidance on remediation.

Design and implement secure software development practices, including threat modeling, secure coding standards, and code review.

Stay current with security threats, trends, and technologies, and recommend new security controls as needed.

Conduct application security investigations and provide recommendations to mitigate risk.

Maintain security documentation, provide subject matter expertise, and collaborate on security policies, procedures, and standards.

ADDITIONAL RESPONSIBILITIES

Performs other duties as assigned.

EDUCATION

Bachelor's degree in computer science, information security, or a related field

EXPERIENCE

Five (5) years or more experience with OWASP, SAST, DAST, SCA, RASP and common security tools, required.

Seven (7) years or more application security, security engineering, software development, or a related field, required.

Five (5) years or more strong understanding of web application security and common attack vectors. (. SQL injection, XSS, CSRF), required.

Five (5) years or more experience with secure coding practices, threat modeling, and secure software development life cycle (SDLC) methodologies. required

Five (5) years or more proven experience in diagnosing, isolating, resolving complex issues and recommending / implementing strategies to resolve problems, required.

Five (5) years or more demonstrated experience with systems integration processes, methodology and tools, required.

Seven (7) years or more development and scripting experience, required.

Five (5) years or more professional application security role, required.

Five (5) years or more experience with API and Web Security, required.

Three (3) years or more experience with WAF, or similar application security infrastructure a plus, preferred.

Seven (7) years or more experience in integrating security in CI / CD, DevOps, required.

Six (6) years or more experience process or operation management

Six (6) years or more experience Value Stream Mapping, Continuous Flow, Pull Replenishment and other process improvement experience.

SKILLS

Excellent communication skills, both verbal and written, and the ability to work effectively with cross-functional teams.

Ability to create and maintain professional relationships within all levels of the organization (peers, work groups, customers, supervisors).

Ability to work independently and as a member of a team.

Flexibility to operate and self-driven to excel in a fast-paced environment.

Capable of multi-tasking, highly organized, with excellent time management skills

Proficiency in at least one programming language (. Python, .NET, Javascript) with .NET preferred., advanced, required.

Proficiency in at least one common scripting language (. PowerShell, bash, , advanced, required.

Familiarity of NIST framework, PCI, ISO 27001, SOC, SOX, CCPA, GDPR and global regulations, expert, required.

CI / CD experience with Azure Devops, Terraform or other automation and integration technologies, expert, required.

Risk management findings, vulnerability prioritization, threat modeling, and mitigation strategy, advanced, required.

LICENSES

CISSP, OSCP, CASE, or other industry-leading certifications, preferred.

TRAVEL

1-10%

Applicants from California, Colorado, Hawaii, New Jersey, New York City, and Washington :

Salary is determined based on internal equity; internal salary ranges; market

data / ranges; applicant’s skills; prior relevant experience; certain degrees or

certifications, etc.

The salary for this position ranges from $120,000.00 to $150,000.00. Employees may also be eligible

to receive an annual bonus, as applicable.

Ryder offers comprehensive health and welfare benefits, to include medical,

prescription, dental, vision, life insurance and disability insurance options, as well as

paid time off for vacation, illness, bereavement, family and parental leave, and a tax advantaged 401(k) retirement savings plan

Job Category : Information Security

30+ days ago
Related jobs
Ryder System, Inc.
Des Moines, Iowa
Remote

Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies. The Application Security Engineer must understand development, coding, security engineering, and...

Promoted
Apex Systems
IA, United States

We are seeking a highly skilled Full Stack Developer to join our client in Des Moines, IA.The ideal candidate will have a strong background in Java development and experience working in cloud environments.This role requires a proactive individual who can contribute to both backend and frontend devel...

Promoted
Rocket Software
Des Moines, Iowa

As a senior cybersecurity engineer focused on cloud security with Rocket Software, you are part of a global, fast-paced IT organization with a primary mission to provide world-class service to software development labs and internal departments ensuring our employees have secure access and communicat...

Promoted
Accenture
Des Moines, Iowa

Accenture Core Systems Lead Engineer - Des Moines, Iowa. As a Core Systems Lead Engineer, you will be at the forefront of transforming banking, hospitality, logistics, and insurance sectors. In this role, you will set principles, practices, and standards to implement systems that are the heart of bu...

SynergisticIT
Des Moines, Iowa
Remote

Currently, We are looking for entry-level software programmers, Java Full stack developers, Python/Java developers, Data analysts/ Data Scientists, Machine Learning engineers for full time positions with clients. ...

Zirous
West Des Moines, Iowa

Zirous is seeking an Application Developer who is eager to work with a variety of technologies and to continue to develop their technical expertise. For over 38 years, Zirous has been committed to executing best practices and going above and beyond industry standards to provide viable solutions for ...

Athene
West Des Moines, Iowa

As a Software Developer III at Athene, you will be accountable for participating in design, building, and maintaining software applications to meet the needs of our business. Successful candidates should have a proven track record of delivering high quality solutions by collaborating with a team of ...

N. Harris Computer Corporation - CAD
Iowa, United States
Remote

As a Java Software Developer, you will play a critical role in the design, development, and support of software solutions for our clients. Collaborate with a team of software developers, software quality analysts, and user experience designers. We are currently seeking an experienced and passionate ...

Stanley Consultants
Des Moines, Iowa

Stanley Consultants is currently seeking a skilled Power System Studies Engineer with 5+ years of experience in High Voltage Transmission System studies using tools like PSS/E, PSLF, ASPEN, or CAPE. As part of our team, you'll be at the helm of analytical studies, reviewing and optimizing power supp...

Emonics LLC
Iowa, United States

Support systems, hardware, and software engineering teams in defining system safety requirements during development activity. Review analysis of peer safety engineers. Mentor and train less experienced safety engineers. Degree in Science, Technology, Engineering or Mathematics (STEM). ...