INSPYR Solutions

Application Security Analyst/Engineer

Posted: 5 minutes ago

Job Description

Title: Application Security Analyst/EngineerLocation: RemoteDuration: 12 MonthsCompensation: $60.00- $85.00Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S. Skillset / Experience:Our company is seeking an Application Security Analyst / Engineer who will be responsible for analyzing the security of new or existing web applications and services and delivering actionable results. This role will provide guidance in the technology evaluation, design and the implementation of web application security technologies providing expertise around secure coding practices, application security technical assessments and tools.Responsibilities This role will require the applicant to be able to complete tasks and responsibilities relating to thefollowing areas:Perform black-box and white box security testing on web applications and web services, including web application penetration testingIntegrate security testing tools into the quality assurance processPerform code reviews with the software engineering team and identity common coding flawsConduct vulnerability analysis of software patches and updates and prepare vulnerability analysis reportsConduct threat modeling and document software attack service elementsConduct risk analysis of applications and systems undergoing major changesDetermine project security controls from customer requirements and develop documentation to capture themIntegrate software cybersecurity objectives into project plans and schedulesAddress security implications in the software acceptance phaseConduct trial runs of programs and software applications with software engineeringDevelop software system testing and validation proceduresDetermine cybersecurity measures for steady state operation and management of softwareIncorporate product end-of-life cybersecurity measuresCollaborate with the InfoSec team to assess and assist in remediation of vulnerabilitiesQualifications: This role will require the applicant to have proficient knowledge in the following areas:Confidentiality, Integrity and Availability (CIA) principles and practicesRisk management processes, models, frameworks, principals and best practices including the supply chainRisk acceptance and documentationRoot cause analysis tools and techniquesCustomer and cybersecurity requirements and gatheringCybersecurity and privacy principles and practicesCybersecurity threats and their characteristicsCybersecurity vulnerabilitiesDefense-in-depth principles and practicesSoftware engineering and software security principles and practicesSecure coding tools and techniquesCode analysis tools and techniquesWeb application and web service riskWeb application and web service protocolsSecurity and penetration testing principles, practices, tools and techniquesAutomated and black-box software security testing tools and techniquesThis role will require the applicant to have proficient skills in the following areas:Performing root cause analysisIdentifying systems designed without security considerationsScanning for and recognizing vulnerabilitiesApplying black-box software testingDesigning secure test plansCommunicating with engineering staffConducting customer interviewsPerforming risk analysisPerforming static code analysisPreferred Experience:Web Application Security Testing CertificationGIAC, PortSwiggerFive or more years performing web application and web service security assessments, including threat modeling, automated scanning and manual penetration testingEquivalent professional experience Our benefits package includes:Comprehensive medical benefitsCompetitive pay, 401(k)Retirement plan…and much more! About INSPYR SolutionsTechnology is our focus and quality is our commitment. As a national expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients’ business objectives and cultural needs. Our solutions are tailored to each client and include a wide variety of professional services, project, and talent solutions. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at inspyrsolutions.com. INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, INSPYR Solutions complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. Information collected and processed through your application with INSPYR Solutions (including any job applications you choose to submit) is subject to INSPYR Solutions’ Privacy Policy and INSPYR Solutions’ AI and Automated Employment Decision Tool Policy: https://www.inspyrsolutions.com/policies/. By submitting an application, you are consenting to being contacted by INSPYR Solutions through phone, email, or text.

Job Application Tips

  • Tailor your resume to highlight relevant experience for this position
  • Write a compelling cover letter that addresses the specific requirements
  • Research the company culture and values before applying
  • Prepare examples of your work that demonstrate your skills
  • Follow up on your application after a reasonable time period

You May Also Be Interested In