Application Security Engineer 4

Location Taguig City, National Capital Region (Manila), Philippines Category Technology Job Id ASU0012380
Apply Now
JOB DESCRIPTION
The Application Security Engineer will assist Asurion in developing secure products by providing best-in-class application security services to the product development organization. This role is responsible for proactively working with our product team to build secure software, validating code level compliance with security standards, assessing applications and services for weaknesses, and working with our development teams to correct security defects.

Essential Duties and Responsibilities:

  • Provide application/product security guidance to globally distributed product development organization.
  • Advise and educate development teams with respect to application security best practices, security automation within the SDLC, and the proper use of application security products and services.
  • Perform application security assessments of internally developed products and systems, covering architecture, design, and implementation.
  • Build threat models for and perform architectural risk assessments of internally developed products and systems.
  • Perform automated and manual security code reviews.
  • Build and maintain positive and productive working relationships with product development teams and individuals.
  • Provide assistance in response to product security incidents where application / product security expertise is required.
  • Participate in blameless postmortems and retrospectives in effort to improve security of products / systems.
  • Develop security assessment scripts and frameworks.
  • Develop applications and/or scripts as needed to support product security tooling, automation, or other day-to-day work.
  • Continuously learn and keep abreast of the latest technical developments in the application/product security and cloud security spaces.
  • Perform research into and present on relevant security technology, practices, and threats.
  • Work closely with a small team of application security and penetration testing staff, in conjunction with product development, to ensure company products and services withstand foreseen and reasonable attacks.

Here’s what you’ll bring to the team:

  • Bachelor’s Degree in Computer Science, Software Engineering, Computer Engineering, Electrical Engineering, Electronics Engineering, or related field
  • 4+ years of experience as a software engineer/developer in a product development organization with a focus application security, specifically reviewing code, identifying security defects, and working with developers to make the appropriate corrections.
  • 2+ years of hands-on, experience in application security reviewing, assessing, and providing guidance to product development teams.
  • Knowledge of application security vulnerabilities and best practices including OWASP & SANS identified common security coding flaws, a general understanding of threat modeling, and automated & manual static security code analysis.
  • Experience with application security scanning tools including SAST, SCA, and DAST; Familiarity with GitHub Advanced Security is a plus.
  • Demonstrable knowledge of coding in two or more of the following: C#, Java, JavaScript, Python, or SQL. 
  • Knowledge of authentication & authorization techniques, public cloud security, and cryptography.
  • Strong analytical and problem-solving skills.
  • Excellent communication (oral, written, presentation) skills.
  • Penetration testing experience is desirable.
  • GWEB highly desirable; GWAPT, GXPN, OSCP, OSCE, OSWE, OSEE certifications also desirable.
Apply Now

Get notified for similar jobs

Sign up to receive job alerts

Success! Successfully subscribed for similar jobs ok Failure! You have already subscribed for this job ok Failure! Failed to subscribed for similar jobs ok

Get tailored job recommendations based on your interests.

Similar Jobs

No recommendations found

Jobseekers Also Viewed

  • Acyan) Customer Experience Planning - Contact Center Planning, Manager

    Location Yokohama, Kanagawa, Japan Category Customer Care Support and Sales Job Id ASU0013708

    アシュリオンは人と最新のテクノロジーを繋げ、人の生活をより快適なものにしたいという思いを持った企業です。. 日本事業は携帯端末ユーザーに独自の補償プログラムとカスタマーサービスを提供し、どんな機種を利用していても、電話一本、画面のクリックを一つさえすれば、翌日にスマホの交換、データの移管等、簡単な事から専門性の高い事までスムーズに解決まで導きます。. 株式会社アサイアンは、このビジネスモデ...

  • Employee Relations Analyst

    Location Sta. Rosa, Laguna, Philippines Category Legal Job Id ASU0012869 Job Type Full time

    The Analyst, Employee Relations partners with HR and business leaders to administer human resources policies and procedures that pertain to employee relations. Understands commonly used concepts, p...

  • Security Information & Event Management (SIEM) Engineer III

    Location Taguig City, National Capital Region (Manila), Philippines Category Technology Job Id ASU0013325

    The SIEM Engineer III within the Monitoring and Response team contributes to a variety of global enterprise information security services in support of the Chief Security Officer. The Analyst III w...

  • 2nd Shift Senior Maintenance Technician

    Location Smyrna, Tennessee, United States of America Category Supply Chain Job Id ASU0011277 Job Type Full time

    Summary: The responsibilities of the Maintenance Technician will be distributed broadly across several functional areas supported by Engineering. Primary responsibilities will include maintenance,...

  • IAM Engineer 3

    Location Taguig City, National Capital Region (Manila), Philippines Category Technology Job Id ASU0009271

    Essential Duties & Responsibilities. Assist in day-to-day operational requests and requirements related to the IAM platform. Maintain and create IAM roles as requested or assigned. Use problem solving...

No recommendations found