Job ID :
27260
Company :
Internal Postings
Location :
Irvine, CA
Type :
Contract
Duration :
6 Months
Salary :
DOE
Status :
Active
Openings :
1
Posted :
20 Apr 2020
Job Seekers, Please send resumes to resumes@hireitpeople.com

Qualifications:

  • Experience with Veracode SAST, DAST and Nexus IQ
  • Subject matter expertise in application security and vulnerability assessments
  • Strong knowledge of OWASP Top 10 (2013 and/or 2017 Version) vulnerability detection and mitigation
  • High degree of accuracy and attention to detail
  • Excellent organization skills and ability to multitask
  • Familiarity in .NET or Java is desirable
  • Familiarity with IDEs, e.g. Visual Studio, eclipse or IntelliJ IDEA
  • Familiarity with ServiceNow, Jira
  • Familiarity with build systems such as Bamboo, Jenkins, AWS native build tool

Minimum years of experience*: 5

Responsibilities you would expect the Subcon to shoulder and execute*:

  • Assist in onboarding application teams and applications to Secure SDLC controls (e.g., SAST, DAST) including remediation guidance, issue tracking and metrics
  • Assist in integration of security tools (e.g., DAST, SAST, SCA, etc.) in the delivery pipeline and the S-SDLC process
  • Provide remediation coaching to development teams on how to build a more secure application, including explanations of risk assessment, e.g. likelihood, impact, and the OWASP Top 1

Interview Process (Is face to face required?) No