- Title: Application Security Analyst
- Code: RCI-10460
- RequirementID: 47186
- Location: Basking Ridge, NJ 07920
- Posted Date: 12/22/2017
- Duration: 6 Months
- Name:Vishal Trivedi
- Email: vishal.trivedi@rangam.com
- Phone: 000-000-0000 ✖ 435
Business Overview:
- Focused on working with application project and development teams throughout the entire software development lifecycle to build security into applications produced.
Responsibilities:
- Work with development teams to employ a secure architecture
- Provide education and guidance about secure coding practices
- Ensure compliance with Policies, Standards, Requirements, and Directives are met
- Schedule, scope and prioritize security assessments of applications
- Assess applications for vulnerabilities using manual and automated methods, such as threat modeling, code reviews, tool scans and penetration testing
- Identify, document, rate, and communicate vulnerabilities in terms of Confidentiality, Integrity and Availability to multiple audiences
- Reproduce, demonstrate and retest vulnerabilities
- Provide guidance and direction on remediating vulnerabilities
- Maintain awareness of security issues amongst the development community
- Continually improve the secure development process and environment
Required Qualifications:
- Understanding of the Software Development Lifecycle (SDLC)
- Understanding of multi-tiered architecture
- Passion for application security
- Process oriented
- Ability to describe vulnerabilities and application security concerns to both technical and non-technical persons
- 1-3 years of hands-on technical experience developing and testing apps in .NET or Java
- 3-5 years application security experience
- Experience performing architecture reviews and threat modeling
- Experience with cloud security: Amazon AWS, Windows Azure
Preferred Qualifications:
- Experience with SAST tools such as Fortify, Veracode, Checkmarx
- Experience with DAST tools such as IBM AppScan, HP WebInspect, Acunetix, Qualys WAS, Zap, Burp
- Experience with Open Source Software security tools such as Nessus and vulnerability remediation guidance
- Ethical hacking Certificate
- GIAC GWAPT, GSSP, or GWEB certified
Rangam Consultants is a minority, women-owned, disability workforce solutions global organization. Specialized in attracting and retaining talents globally for a rewarding career in IT, Engineering, Scientific, Clinical, Healthcare, Administrative, Finance, Business Management, and many more, while integrating veterans and individuals with disabilities into the workforce. Indeed, we connect career aspirants to relevant job opportunities, be it jobs in USA, UK, India, or Ireland. Also remote jobs, work-from-home jobs, or contract jobs in different verticals and industries. Rangam strives to put job seekers first, giving them free access to search for jobs, post resumes, and research companies.Every day, we connect millions of people to new opportunities. p >