What are the responsibilities and job description for the Senior Application Security Engineer in New York, NY position at Vista Applied Solutions Group Inc?
Title : Senior Application Security Engineer with CCSP / CISSP / CEH Certifications
Work Location : 80 Maiden Lane, New York, NY 10038
Work Authorization : Only USC & GC
Onsite ONLY LOCAL TO NJ-NY (Commutable Distance from Brooklyn, NY)
Certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Cloud Security Professional (CCSP), or GIAC Web Application Penetration Tester (GWAPT) are highly preferred.
Mandatory Skills :
- 15 years of experience in application security, with a proven track record of conducting vulnerability assessments, penetration testing, and secure code reviews.
- Extensive experience in secure application development, including knowledge of security frameworks like OWASP Top 10, and the ability to guide development teams in implementing secure coding practices.
- Proficiency in Software Composition Analysis (SCA) tools (e.g., Veracode, AppSec) for identifying and managing vulnerabilities in open-source libraries and third-party components.
- Advanced knowledge of static and dynamic application security testing (SAST / DAST) tools (e.g., Veracode, AppSec, Burp Suite) and integrating these tools into CI / CD pipelines for automated security checks.
- Strong cloud security expertise, including securing applications and workloads on AWS, Azure, or GCP, and experience with Web Application Firewalls (WAF) and cloud-native security services.
Desirable Skills / Experience :
Additional Qualifications :
SPECIAL REQUIREMENTS :
Occasional support outside of core business hours to accommodate 24 / 7 / 365 operation.