Senior Application Security Engineer
First Advantage
WorldwideremotePosted 8 days ago
Skill Required
Application-Security-EngineeringCybersecuritySecurity-EngineeringPenetration-TestingInfosecSenior-Application-Security-EngineerApplication-Security-EngineerLead-Application-Security-EngineerSecurity-EngineerSenior-Information-Security-EngineerApplication-Security-ArchitectApplication-Security-LeadSenior-Cybersecurity-EngineerSecurity EngineerApplication DevelopersecuritySystem AdministrationPenetration TestingSOCPostmanJavaScriptEngineeringnetworkingautomationITILTestNGdesignDevOps.NETJavaOWASPC#andFulltime
Key highlights
- 3-5 years of application security engineering experience required
- Experience with .NET/C#, Java, JavaScript web application/API development
- Relevant industry certifications (OffSec, SANS, isc2) preferred
- Employee Impact Groups and mentorship programs offered
- Collaboration across SecOps, Threat Intel/Hunt, Vulnerability Management, DevOps, AppDev, Networking, and Product teams
- Equal opportunity employer committed to non‑discrimination
Role overview
The Senior Application Security (AppSec) Engineer is an individual contributor role reporting to the Senior Manager of Application Security. The person in this position will drive security assessments for many different First Advantage product applications to consistently enhance security posture and reduce risk across the enterprise.
Responsibilities
- Design and implement secure application code bases and processes to support the software development life cycle (SDLC) across the global enterprise.
- Serve as a liaison between third-party penetration testing vendors and internal application teams, collaborating to schedule, scope, test, and remediate.
- Review security findings from multiple tooling sources as well as customer inquiries, assessing validity and risk levels.
- Perform threat modeling and application design reviews, working closely with stakeholders.
- Configure SAST and DAST tooling, analyze findings, and address ticketing and remediation with multiple other teams.
- Contribute to the development and automation of security testing tools and processes.
- Assist with incident response (IR) activities that may relate to application security.
- Partner with teams such as SecOps, Threat Intel/Hunt, Vulnerability Management, DevOps, AppDev, Networking, and Product to ensure a strong security posture across the organization.
Requirements
- 3-5 years of experience with a combination of application security engineering, penetration testing, web application/API development (.NET/C#, Java, JavaScript), system administration, networking, and information security.
Nice to have
- Relevant industry certifications from organizations such as OffSec, SANS, or isc2.
- Familiarity with web application/API testing, static code analysis, threat modeling, and vulnerability scanners.
- Practical knowledge with source code review to address common security issues.
Benefits
- Employee Impact Groups
- FA Cares volunteer opportunities
- Mentorship Advantage Program
- SOAR, award-winning manager development program
- Culture programs and benefits designed to enhance employee experience and development
Additional details
- At First Advantage, team members are united around a noble purpose: helping organizations to safeguard their workplaces and manage risk.
- The company’s culture is shaped by its core values — Authenticity, Curiosity, Integrity, Teamwork, Customer-Inspired — empowering team members to bring their best ideas forward, collaborate across departments, and make a real impact.
- Follow us: Facebook, Instagram, LinkedIn, X, YouTube.
- Equal Employment Opportunities at First Advantage: First Advantage is an equal opportunity employer. We are committed to providing a workplace and recruitment process that is free from unlawful discrimination, harassment, and retaliation. Employment decisions are based solely on qualifications, merit, and business needs. We do not discriminate on the basis of race, color, national origin, ancestry, citizenship, religion, creed, sex, gender identity, gender expression, sexual orientation, marital or family status, pregnancy, age, physical or mental disability, medical condition, genetic information, veteran or military status, or any other characteristic protected by applicable law.
- Originally posted on Himalayas