Senior Application Security Engineer
π Role Overview & Responsibilities
Role: Application Security EngineerLocation: Fort worth, TXLongterm
Job Description:Duties:API Security responsibilities:Defines specifications and develop code and utilities, modifies existing programs, prepares test data, and prepares functional specifications.Establishes, participates, and maintains relationships with customers and subject matter experts to remain apprised of direction, architectural and technology trends, risks, and functional/integration issues.Analyzes, designs, develops, codes and implements programs in one or more programming languages, for Web and Rich Internet Applications. Create various automated security integration solutions.Work with the API Management platforms to develop APIs, Products, Plans, etc. and test them.Develop UI and API functionality in languages including, but not limited to JavaScript, TypeScript and python.Work with application development personnel and other technical team members to review existing and/or new APIs/web services in support of quality implementations that align with Security policies, procedures, and generally-accepted best practices.Work closely with DevOps and cloud infrastructure architects and engineers to design, implement and manage secure, scalable, and reliable cloud infrastructure environmentsParticipates as a technology advisor to collaborate with Agile squads to deliver business benefits with effective and efficient use of technology Platform(s)Ensures teams are validating for OWASP and performing industry leading application security practices.Performs application program interface security assessments and remediation activities as part of the API security program.Leverages the enterprise SSDLC processes and toolset.Skills:Bachelor's degree in computer science, Computer Engineering, Technology, Information Systems (CIS/MIS), Engineering or related technical discipline, or equivalent experience/training2 years of experience working as a frontend or backend software developerAPI: Experience with HashiCorp Vault APIs, Cloud APIs and API gatewayExperience as a developer on a team consisting of five or more software developersAbility to conduct independent researchBroad understanding of web service implementation paradigms (REST, SOAP)Basic understanding of Cryptography concepts: hashing, signing, symmetric/asymmetric encryption and decryptionBasic understanding microservice application architecture, software cohesion and software couplingComfortable learning new programming languages as needed to conduct code reviewscomfortable with the following tools and technologies: Git, SoapUI, Jenkins, Antifactory, Sonar Qube, Find Bugs, Docker Experience with deploying and configuring API scanning toolsExperience in Identity and access management concepts and technical specificationsExperience creating continuous integration pipelines (Cloud bees, Jenkins, Buddy, Urban Code, etc.)Experience using integrated development environments (e.g. Visual Studio, Visual Studio Code, Eclipse)Experience with Azure Resource Manager (ARM) and scripting tools, including PowerShell, Azure CLI, JavaScript, Shell scripts, Python, or similar languages.Experience developing solutions that combine data from APIs, endpoints, and databasesOutstanding communication, analytical skills and ability to function in a globally diverse work environmentExperience working within an agile team (Scrum, Rally, etc.)Familiarity with OWASP and the Sanβs Top 25Education and Experience:Bachelor's degree in computer science or related field or equivalent experience/certificationAPI security 1 year2 years working as a Security Engineer1-year experience developing automation solutions in Python, Java or PowerShellAbility to analyze complex problems and implement solutions and/or workaroundsFamiliarity with NIST Special Publications (e.g. 800-171,800-53, CSF)
- -Suzanne Rogers7866280721suzanne.rogers@concorditsystems.com
Frequently Asked Questions
How do I apply for the Senior Application Security Engineer position at Concord IT Systems? βΌ
Click the “Apply for this Position” button on this page to submit your application directly to Concord IT Systems without recruitment intermediary fees.
Is this position eligible for remote work or visa sponsorship? βΌ
This position is located in Fort Worth, TX with potential relocation and sponsorship assistance depending on candidate qualifications.
Are there any candidate fees on Hirely? βΌ
No. Hirely is completely free for candidates. We never charge registration fees or placement fees.
Legitimate employers will never ask you to transfer funds, purchase equipment from unauthorized vendors, or pay application/visa fees. Hirely rigorously monitors listings, but always verify communication is from official corporate email domains.
Learn how to protect yourself against employment fraud →