BelAirNorthRecruiter Since 2001
the smart solution for Bel Air North jobs

Application Security Engineer III (NP)

Company: Cofense
Location: Leesburg
Posted on: September 12, 2019

Job Description:

Reporting to the Senior Director - Software Engineering, the Application Security Engineer III, NP is responsible for assisting the Development, Production Engineering, and Security Operations teams with application-level security assessment and threat mitigation.

Essential Duties/Responsibilities

* Actively participate in the development of software as a member of a Scrum team

* Participate in the review of the merge requests from Development and Production Engineering teams to proactively address security concerns before changes are merged to master

* Actively participate in our agile life-cycle, including planning, grooming, daily stand-ups and retrospectives.

* Use static code analysis tools to harden the software.

* Develop and evangelize secure programming standards

* Perform security reviews of software designs, assisting others to ensure quality and robustness of our products.

* Perform security focused design reviews considering elements such as: protocols, encryption, data storage, and business logic

* Validate, address, and document responses to security findings from third-party penetration testing engagements

* Other duties as assigned

The above statements are neither intended to be an all-inclusive list of the duties and responsibilities of the job described, nor are they intended to be a listing of all of the skills and abilities required to do the job. Rather, they are intended only to describe the general nature of the job. This job description is not a contract of employment, either express or implied. Employment with Cofense will be voluntarily entered into and your employment is considered at will. Cofense reserves the right to alter the job description at any time without notice.

Knowledge, Skills and Abilities Required

* Passionate about application security and development

* A self-starter who can identify work that needs to be done without waiting for direction

* Comfortable mentoring engineers that are globally distributed.

* Understand OS concepts such as scheduling, interrupt handling, virtualization of computing resources.

* Able to demonstrate an understanding of JAVA programming skills and are comfortable learning new languages.

* Comfortable working independently but able to escalate problems when necessary

* Demonstrate strong oral and written communication skills

* Willing to mentor and guide fellow team members kindly and constructively

* Enjoy sharing knowledge via documentation

* Happy to travel occasionally for team meetings and events

* Able to write PoC code and documentation that clearly demonstrate vulnerabilities

* Proficient with (or able to quickly learn) automation tools such as Selenium

* Able to find solutions to challenging technical puzzles with atypical constraints

* Able to effectively use git and understand common SCM workflows

* Able to write code that is intentional and readable, rather than magically obscure

* Enjoy tinkering

* Ability to list and demonstrate examples of the OWASP Top 10 preferred

* Familiarity with TDD/BDD preferred

* Working knowledge of AWS or other cloud computing platforms preferred

* Familiarity with proxies, firewalls, mail infrastructure, and other solutions commonly seen in large enterprises preferred

Education and/or Experience:

* Bachelor's degree preferred.

* Previous professional, full-stack app-dev experience preferred

* Have used static analysis security audit tools preferred

* Experience using CI environments (Jenkins/Docker) preferred

* Experience performing threat modeling

* Experience with secure code quality practices and tooling to support quick engagements and rapid analysis - static analysis tools (Coverity, Checkmarx, or similar), dynamic scanning (Rapid 7, AppSider, or similar), Fuzzing (AFL, Peach, or similar) and code coverage (Bullseye, LDRA, etc) preferred

* Experience with security incident response activities

* Experience penetration testing and the usage of web proxies for manual vulnerability assessment

* Customer support experience (retail, help desk, consulting, etc.) preferred

Cofense is committed to equal employment opportunity. We will not discriminate against employees or applicants for employment on any legally recognized basis [protected class] including, but not limited to: veteran status, uniform service member status, race, color, religion, sex (including pregnancy), gender identity, sexual orientation, national origin, age, physical or mental disability, marital status, genetic information or any other status or characteristic protected by applicable national, federal, state or local laws and ordinances. We adhere to these commitments in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, and discipline.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor s legal duty to furnish information.

Keywords: Cofense, Bel Air North , Application Security Engineer III (NP), Engineering , Leesburg, Maryland

Click here to apply!

Didn't find what you're looking for? Search again!

I'm looking for
in category
within


Other Engineering Jobs


Hardware Design Engineer
Description: Trident Technologies has an opportunity for a talented and experienced Hardware Design Engineer to use his or her knowledge to design and test new integrated circuits and hardware components for a wide (more...)
Company: Trident Technologies
Location: Columbia
Posted on: 09/22/2019

Principal Antenna Design Engineer Job # 3209
Description: Job 3209The selected RF engineer will report directly to the Antenna Engineering Manager, and should be a self-starter, high energy designer who has developed Radomes, and Antennas for military applications. (more...)
Company: Job Juncture
Location: Baltimore
Posted on: 09/22/2019

Principal Subsystems Integration and Test Engineer with Security Clearance
Description: Northrop Grumman Mission Systems has an opening for a Hardware Subsystem Engineer to join our team of qualified, diverse individuals. This position will be located in Baltimore, MD. The selected candidate (more...)
Company: Northrop Grumman
Location: Baltimore
Posted on: 09/22/2019


Quality Engineering & Validation Specialist
Description: Paragon Gene Therapy, now a part of Catalent, hires people with a passion to make a difference. Your expertise, coupled with our advanced technologies and collaboration with innovative pharmaceutical, (more...)
Company: Paragon Gene Therapy, a unit of Catalent Biologics
Location: Baltimore
Posted on: 09/22/2019

Professional Engineer II
Description: Professional Engineer II Requisition : 191396 br Location: Johns Hopkins Hospital/Johns Hopkins Health System, Baltimore, MD 21201 br Category: Non-Clinical Professional br Work Shift: Day Shift (more...)
Company: The Johns Hopkins Hospital
Location: Baltimore
Posted on: 09/22/2019

Mechanical Engineer Sr
Description: Description:Perform thermal analysis and computational fluid dynamics CFD analysis for multiple programs. Tasks include, but not be limited to, the following: 1 Perform analysis of discrepant hardware, (more...)
Company: Lockheed Martin Corporation
Location: Upper Falls
Posted on: 09/22/2019

Project Controls Engineer
Description: A Project Engineer/Controls Engineer--is needed in the Baltimore, MD area for a Controls System Integrator--specializing in Process Automation and Manufacturing Intelligence for the Biotech, Pharmaceutical, (more...)
Company: Job Juncture
Location: Baltimore
Posted on: 09/22/2019

Principal / Senior Firmware Engineer - Job Order 2938
Description: The Principal Firmware Engineer is a hands-on architecture design position engaged in the firmware development and sustaining of products supporting anti-theft and asset management devices in a retail (more...)
Company: Job Juncture
Location: Woodbury Heights
Posted on: 09/22/2019

Technical Support Engineer and Course Developer with Security Clearance
Description: Job Description Job Description: Primary Purpose: Under minimal supervision provide direct customer field support to include Systems Engineering, improvised design work as required and product support (more...)
Company: CACI
Location: Jessup
Posted on: 09/22/2019

Project Engineer
Description: IntegriSource is working with a top Philadelphia employer who is looking for an experienced Project Engineer. This position will handle technical support requests directly from customers as well as escalation (more...)
Company: Integrisource
Location: Philadelphia
Posted on: 09/22/2019

Log In or Create An Account

Get the latest Maryland jobs by following @recnetMD on Twitter!

Bel Air North RSS job feeds