Search jobs > Atlanta, GA > Temporary > Senior application security

Senior Cloud/Applications Security Engineer

Motion Recruitment
Atlanta, GA, United States
$65,22 an hour
Temporary

Every year, nearly 200 million travelers trust our client to get them where they're going. Take your career to new heights by working for this longstanding leader in air travel that services more worldwide destinations than any other airline.

We are looking for a Senior Cloud / Applications Security Engineer for a 12 month contract in Atlanta, GA.

Contract Duration : 12 Months

Required Skills & Experience

  • B.S. degree in Computer Science, Computer Engineering, Information Assurance or related field
  • Minimum 5+ years of professional experience in application security, penetration testing, security assessment, secure software development or related field
  • Extensive knowledge with dynamic scanners like Palo Alto Prisma or VeraCode.
  • Extensive knowledge of the OWASP Top 10
  • Experience with vulnerability risk and impact assessment
  • Experience integrating security capabilities in cloud and application lifecycle management platforms especially in a DevOps model
  • Extensive knowledge of the secure development lifecycle
  • Extensive knowledge with static analysis tools and flaw triage such as HP Fortify, IBM Rational, Veracode or Coverity, FindBugs, FindSecurityBugs, Brakeman and Open Source scanning tools such as Sonatype CLM
  • Extensive knowledge with vulnerability scanners like Qualys and Tenable
  • Strong sense of urgency and ownership

Desired Skills & Experience

  • Extensive experience in application security and ethical hacking
  • Extensive experience exploiting web, mobile and application security vulnerabilities
  • Extensive experience in software development
  • Extensive experience integrating secure coding techniques with product teams
  • Professional certifications such as CISSP, CISM, OSCP and CEH

What You Will Be Doing

  • Identify weaknesses and vulnerabilities that affect the confidentiality, integrity and availability of corporate protected, sensitive and confidential company information and data
  • Conduct Static Application Security Test (SAST) and Dynamic Application Security Test (DAST) using VeraCode
  • Work within the DevSecOps model to secure Containers, withing ROSA, Tekton and OpenShift pipelines
  • Possess a knowledge of CI / CD orchestration tools such as Jenkins, Tekton, GitLab, or Bamboo.
  • Provide operational support for container security tools (Palo Alto Prisma, Aqua, or equivalent)
  • Perform Baseline Image validation of new container template images.
  • Perform Vulnerability scans on container environments. Develop, test, and maintain containerized applications security
  • Troubleshoot any connectivity or operational issues.
  • Ensure security requirements are implemented within various stages of the system development lifecycle process; work closely with development teams to pen test new features within internally developed applications
  • Apply software development skills (e.g., Java, C#.NET, JavaScript) to recommend secure coding practices
  • Validate and address vulnerability / threat findings from static and dynamic analysis tools
  • Characterizes threats and provides recommendations for remediation; manages remediation efforts to completion
  • Develops and presents finding and remediation reports to audiences including team members from all department areas and levels of the company
  • Perform security reviews of software designs and assist developers to ensure quality and robustness of our internal products
  • Conduct security assessments against web applications and APIs across a variety of technology stacks
  • Ensure adequate security requirements and privacy by design are built into all architecture / infrastructure / projects
  • Integrating threat modeling practices into the application testing lifecycle
  • Impart application security and ethical hacking subject matter expertise into team processes
  • Drive improvements in the security testing practice to include execution methodology and metrics
  • Partner effectively with development and infrastructure teams to integrate security
  • Drive awareness and knowledge of security in developers
  • Effectively communicate technical issues to non-technical leaders
  • Continually improve proficiency in application and API exploitation, tools, techniques, and countermeasures
  • 30+ days ago
Related jobs
Promoted
VirtualVocations
Norcross, Georgia

A company is looking for a Senior/Lead Security Engineer - IAM/IGA - Identity Governance and Administration. ...

Hive Financial Services
Atlanta, Georgia

The Senior Cloud Security Engineer will be responsible for protecting the company's cloud infrastructure across multiple cloud environments. CISSP required; other advanced degrees or certifications (CISM, CEH, AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer, Google Pro...

Promoted
VirtualVocations
Norcross, Georgia

A company is looking for a Senior Cloud DevOps Engineer to lead the implementation and management of DevOps practices in Azure and Google Cloud environments. Key Responsibilities:Lead deployment and management of DevOps practices utilizing Kubernetes and TerraformOversee technology projects ensuring...

NCR Corporation
Atlanta, Georgia

Play a key role as a Senior Software Engineer on scrum teams focused on developing NCR’s Cloud Platform that will serve each of our major industries – Financial Services, Retail and Hospitality. Software EngineerCloud Services. Our platform as a service is responsible for providing the foundation...

Promoted
VirtualVocations
Atlanta, Georgia

A company is looking for an InfoSec Cloud Security Engineer. ...

Jobs via eFinancialCareers
Atlanta, Georgia

The security team leads the company's programs for information security, insider risk and cybersecurity. As a member of this team, you'll lead projects and be responsible for the upkeep of the team's technology stack as well as creation of log pipelines that feed our SIEM, SOAR, TIP and other securi...

Funding Societies | Modalku Group
Atlanta, Georgia

The Engineer will carry out security threat identification, analysis, and remediation to ensure efficient and timely mitigation of the threats, as well as understand the threats' risks and potential business impacts. The engineer will act as an incident handler and manage the end-to-end workflow of ...

Circle
Atlanta, Georgia

As a Senior Site Reliability Engineer at Circle, you will design, build, and maintain Circle's infrastructure estate to meet the growing worldwide customer base on public cloud providers across multiple regions. Collaborate with the Security team to create and maintain security-focused tools and fra...

Dallas
Atlanta, Georgia

Job Description We are seeking a Cloud Security Engineer to manage and enhance cloud security operations across Azure, AWS, and OCI environments. You will work closely with application teams to identify and remediate security risks, enforce cloud security policies, and support cloud architecture rev...

ServiceNow
Atlanta, Georgia
Remote

Work closely with product security, AI engineers, security GRC, enterprise security and digital technology (IT) teams to ensure alignment on AI security objectives. The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company a...