IT Security Auditor(Local to MI)

Oorwin Labs

$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of IT experience required
  • 3+ years with secure coding practices and frameworks like OWASP, SANS, and CERT
  • Experience utilizing application security scanning tools (SAST, DAST, SCA)
  • Hands-on with both compiled and interpreted languages (Angular, Java, .NET)
  • In-depth knowledge of web security vulnerabilities (OWASP Top 10)

Responsibilities

  • Implement and configure application security tools for scanning and analysis
  • Conduct thorough assessments of web and APIs for security vulnerabilities
  • Provide detailed insights and training on identified vulnerabilities
  • Collaborate across teams to integrate security best practices into development processes
  • Develop secure application infrastructure in cloud and on-prem environments

Benefits

  • Flexible working hours
  • Opportunities for professional development and certifications
  • Access to cutting-edge security tools and technologies
  • A collaborative work environment that values innovation
  • Health and wellness programs
Full Job Description
Overview:

Required Skills

Experience with Application Security scanning tools (SAST, DAST, SCA, ASOC, Container/Cloud) a must.

HTTP Request/Response headers for web and Restful API calls

Ability to explain in detail any of the OWASP top 10 vulnerabilities

Cross Site Scripting, Injection attacks, SSRF, CSRF, XML entity, etc.

Minimum of 5+ years of total IT related experience

3+ years implementing/utilizing Federal, Industry and Open-Source Security Guidance and Secure Coding Practices (OWASP Top 10, SANS, CERT, CWE Top 25, Critical Security Controls, Cloud Security Alliance, SafeCode etc.)

3+ years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks

3+ years with networking, infrastructure, secure application development and security automation (DevSecOps).

3+ years of hands-on knowledge building and deploying secure complex distributed web and mobile applications.

Chrome/Firefox/Edge Development tools to see the request/response headers

Preferred Skills

Experience with Coverity, BlackDuck, SRM, Fortify a plus

API Security

JWT

OAUTH/OIDC/PKCE

Web, API replay attacks

High-level understanding of containers

Cloud development experience (Azure, AWS, GCP)

Skills:

years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks

Similar Jobs

More Jobs at Oorwin Labs

More Information Technology Jobs

Find similar IT Security Auditor(Local to MI) jobs: