Application Security Engineer- job post H.W. Kaufman Group
Job Description
:
Responsibilities:
The Application Security Engineer plays a crucial role in securing our growing portfolio of applications. This role will focus on integrating security best practices into the Software Development Lifecycle (SDLC), ensuring compliance with regulatory requirements, proactively mitigating threats, and collaborating closely with developers to enhance the overall security posture of our applications.
As a subject matter expert in application security, the Application Security Engineer will lead the charge in finding and implementing innovative security solutions while ensuring the organization remains resilient against evolving threats. This individual will work closely with development and IT teams to embed security into application architecture, offer technical guidance to junior team members, and drive the implementation of security initiatives essential for meeting business and compliance needs.
Responsibilities
Partner with development teams to embed security best practices across the SDLC, including design, development, and deployment, and providesecure coding guidance
Conduct threat modeling and security architecture reviews to identifydesign-level risks and implement appropriate security controls
Identify, assess, and mitigate application vulnerabilities through a combination of automated (SAST/DAST) and manual code reviews, as well as penetration testing, and drive risk-based remediation
Implement and manage application security tools, including SAST, DAST, Software Composition Analysis (SCA), and other security scanning solutions
Ensure application security practices align with regulatory standards such as NYDFS, NIST, and OWASP guidelines
