Hitachi America

Application Security Engineer-68257

Hitachi America$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Minimum 2 years of experience in Application Security, DevSecOps, or Secure Development.
  • Strong understanding of OWASP Top 10 and Secure SDLC practices.
  • Familiarity with CI/CD platforms like Azure DevOps, GitHub Actions, and Jenkins.
  • Hands-on experience with SAST, DAST, and SCA security tools.
  • Knowledge of container and Kubernetes security fundamentals.
  • Basic scripting/programming skills in Python, PowerShell, JavaScript, and others.

Responsibilities

  • Perform application security assessments for various application types.
  • Conduct secure code reviews and assist in vulnerability remediation.
  • Integrate security controls into CI/CD pipelines.
  • Analyze findings from security tools such as SAST and DAST.
  • Participate in threat modeling and security design reviews.
  • Guide teams on secure coding practices following OWASP guidelines.
  • Collaborate with developers to enhance security posture.

Benefits

  • Work onsite in Dallas, TX.
  • Exposure to cutting-edge AI-enabled security initiatives.
  • Opportunities to develop secure coding practices across a diverse range of applications.
  • Engagement with collaborative teams focused on improving security measures.
  • Access to advanced tools and technologies for application security.
Full Job Description

Function

Cloud & Data Engineering

Job description

Application Security Engineer

Company: Hitachi Digital Services
Practice: HARC Security
Location: Dallas, TX (Onsite)
Experience: 2+ Years


Role Overview

Hitachi Digital Services is seeking an Application Security Engineer to support application security, DevSecOps, secure software development, and AI-enabled security initiatives. The ideal candidate should have hands-on experience with application security testing, CI/CD security, vulnerability management, secure code reviews, and OWASP-based security practices.

Key Responsibilities
  • Perform application security assessments for web, API, cloud-native, and AI-enabled applications.
  • Conduct secure code reviews and support vulnerability remediation efforts.
  • Integrate security controls into CI/CD pipelines and DevSecOps workflows.
  • Analyze findings from SAST, DAST, SCA, container security, and secret scanning tools.
  • Participate in threat modeling and application security design reviews.
  • Provide guidance on secure coding practices, OWASP Top 10, and OWASP API Security Top 10.
  • Collaborate with development teams to improve security posture and adopt secure-by-design principles.
Required Skills
  • Minimum 2 years of experience in Application Security, DevSecOps, Secure Development, or Software Security.
  • Strong understanding of:
    • OWASP Top 10
    • Secure SDLC
    • Threat Modeling
    • Secure Code Review
    • API Security Fundamentals
  • Familiarity with CI/CD platforms such as:
    • Azure DevOps
    • GitHub Actions
    • Jenkins
    • GitLab CI/CD
  • Hands-on experience with one or more:
    • SAST: Checkmarx, Veracode, Fortify, SonarQube
    • DAST: Burp Suite, OWASP ZAP
    • SCA: Snyk, Mend, Black Duck
  • Knowledge of containers and Kubernetes security fundamentals.
  • Basic scripting/programming skills (Python, PowerShell, JavaScript, Java, C#, etc.).
Preferred Qualifications
  • Experience with Azure and/or AWS cloud environments.
  • Knowledge of DevSecOps automation and Infrastructure-as-Code security (Terraform, Bicep, ARM, CloudFormation).
  • Experience securing containerized and cloud-native applications.
  • Familiarity with AI-assisted development tools (GitHub Copilot, Amazon Q, Cursor, etc.).
  • Understanding of AI/LLM security concepts, including prompt injection, sensitive data exposure, model misuse, and OWASP Top 10 for LLM Applications.
  • Experience with vulnerability management and application security governance programs.
Preferred Certifications
  • Security+
  • SSCP
  • CySA+
  • CEH
  • CSSLP
  • AZ-500
  • AWS Certified Security 6 Specialty
  • Relevant Application Security, DevSecOps, or Cloud Security certifications
Skills Summary

Application Security 6 DevSecOps 6 Secure SDLC 6 OWASP Top 10 6 OWASP API Security Top 10 6 AI Security 6 Secure Code Review 6 Threat Modeling 6 SAST 6 DAST 6 SCA 6 CI/CD Security 6 Container Security 6 Kubernetes Security 6 Cloud Security (Azure/AWS) 6 Vulnerability Management 6 Security Automation

Job Level: P10
Focus Areas: Application Security, DevSecOps, AI Security, Secure SDLC, CI/CD Security, Vulnerability Management, Container & Kubernetes Security, Cloud Security (Azure/AWS).

About Hitachi America

Hitachi America is a subsidiary of Hitachi, Ltd., a Japanese multinational conglomerate. They provide a wide range of products and services, including information technology, power systems, and social infrastructure. They work with clients in a variety of industries, including healthcare, transportation, and finance. They are committed to sustainability and social responsibility, and have implemented various initiatives to reduce their environmental impact.
Learn more about Hitachi America
Size
368,247 employees
Industry
Founded
1959
NASDAQ

Similar Jobs

More Jobs at Hitachi America

More Information Technology Jobs

Find similar Application Security Engineer-68257 jobs: