Fragomen

Security Engineer - Application Security

Fragomen$90K — $130K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in web application development (.net, python, java, etc.)
  • Proficiency in Secure Software Development Life Cycle (SDLC)
  • Experience with Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST)
  • Solid understanding of web application penetration testing and secure coding practices
  • Strong communication skills, especially in high-pressure situations

Responsibilities

  • Build, deploy, and maintain security tools for code validation and tracking
  • Collaborate with development teams to ensure secure code design
  • Triage and automate findings from programmatic source code analysis
  • Lead developers in secure coding techniques and threat modeling
  • Contribute to vulnerability detection and remediation efforts
  • Deploy security applications to support security initiatives
  • Engage in cross-functional response to cyber security incidents

Benefits

  • Opportunity to work within a talented Cyber Security team
  • Contribution to transformative projects in industry-leading immigration software
  • Engagement with innovative security practices
  • Professional development in a high-impact role
  • Collaborative team environment focused on security excellence
Full Job Description
Job Description

Fragomen is seeking a Security Engineer - Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh.

Our industry-leading, immigration specific software and supporting infrastructure is undergoing tremendous transformation and security is on the critical path to success in that endeavor. A professional, who is passionate about security, capable of effecting change, and ready to build a strong AppSec program, is what we seek. You will be joining a small team of Security Engineers who make security a distinguishing factor in our technological offerings. A successful candidate will help engineer solutions to secure software development, identify threats and mitigate vulnerabilities throughout our environment.

What an Application Security Engineer does at Fragomen:
  • Build, deploy and maintain tooling to validate and track security controls in and around our code
  • Work closely with application development and infrastructure architectural teams to create code which is secure by design and default
  • Triage programmatic source code findings and automate penetration testing to decrease potential introduction of vulnerabilities
  • Lead and collaborate with developers on secure coding techniques and threat modeling
  • Contribute to vulnerability detection and remediation of technological offerings
  • Deploy developed or OTS security applications to support our efforts
  • Participate in a cross-functional response to cyber security incidents
  • Work closely the security team to establish prevention, detection and mitigation techniques
  • Support the scoping and rules of engagement of our penetration testing regime


Let's talk if you have the following experience, knowledge, skills and education:
  • A passionate team player who builds knowledge and solves complex problems
  • 5+ years of web application development (.net, python, java, etc.)
  • Secure SDLC (Software Development Life Cycle), DAST (Dynamic Application Security Testing), and SAST (Static Application Security Testing) experience
  • Demonstrated understanding of web application penetration testing, secure coding and source code analysis
  • Strong, professional communication skills that maintain under pressure


These things are great, but not required:
  • Experience in developing highly automated detection and triage tools
  • Deep understanding of cyber security techniques
  • Technical certification demonstrating technical prowess in secure software development e.g. Certified Secure Software Lifecycle Professional (CSSLP), or Certified Application Security Engineer (CASE) or similar
  • BA degree in a related field or a combination of related experience is a must


About Fragomen

Fragomen is a global immigration law firm that provides immigration services to clients in over 170 countries. The firm has over 50 offices worldwide and employs over 5,000 people. Fragomen provides a range of immigration services, including assistance with work visas, permanent residence, and citizenship applications. The firm also provides compliance and advisory services to help clients navigate the complex and ever-changing immigration landscape. Fragomen's clients include multinational corporations, small businesses, and individuals.
Learn more about Fragomen
Size
5,000 employees
Industry

Similar Jobs

More Jobs at Fragomen

More Information Technology Jobs

Find similar Security Engineer - Application Security jobs: