- Technology
Application Security Analyst
WHAT WE WANT: You will be responsible for performing application security assessments, code reviews and application design reviews.
YOUR ROLE:
- Understanding and familiarity with common code review methods and standards
- Experience with code scanning toolsets such as Fortify and Appscan
- Knowledge of OWASP tools and methodologies
- Understanding of HTTP and web programming
- Knowledge of common security requirements within Java application
- Knowledge of standard SDLC practices
- Minimum of 3 years work experience in application security
- Ability to present findings to technical staff
- Degree in either Computer Engineering, Computer Science, or Information Systems Management
- Experience working in software development
- Experience with vulnerability scanning tools (e.g., Qualys, Nessus, NCircle)
- Experience with web application vulnerability scanning tools (e.g., IBM AppScan, Fortify)
- Experience with static analysis tools (e.g., IBM Appscan Source, HP Fortify)
- Experience with programming languages (e.g., Java, C++, PHP, Ruby)
- Current security certifications (e.g., CISSP, CEH)
ARE YOU READY TO MAKE STUFF HAPPEN?:
- Understanding and familiarity with common code review methods and standards
- Experience with code scanning toolsets such as Fortify and Appscan
- Knowledge of OWASP tools and methodologies
- Understanding of HTTP and web programming
- Knowledge of common security requirements within Java application
- Knowledge of standard SDLC practices
- Minimum of 3 years work experience in application security
- Ability to present findings to technical staff
- Degree in either Computer Engineering, Computer Science, or Information Systems Management
- Experience working in software development
- Experience with vulnerability scanning tools (e.g., Qualys, Nessus, NCircle)
- Experience with web application vulnerability scanning tools (e.g., IBM AppScan, Fortify)
- Experience with static analysis tools (e.g., IBM Appscan Source, HP Fortify)
- Experience with programming languages (e.g., Java, C++, PHP, Ruby)
- Current security certifications (e.g., CISSP, CEH)




