Skip to main content

Application Security DevSecOps Specialist

Technology
RemoteHunter
1 months agoUntil 5/30/2026
Full timeFully remote

Job description

About the Company The organization is a global provider of security services, collaborating with leading security technology brands. It operates within the cybersecurity industry, addressing the need for robust protection and secure software delivery in a rapidly evolving threat landscape. The company focuses on integrating advanced security measures into development processes to enhance the security posture of applications at scale.

About the Rol eThe Application Security DevSecOps Specialist role is responsible for implementing and managing security testing within continuous integration and continuous delivery (CI/CD) pipelines. This position plays a critical role in ensuring secure software delivery by identifying and mitigating vulnerabilities across applications, APIs, containers, and open-source components. The specialist collaborates closely with development teams, providing guidance on secure coding practices and integrating security tools to maintain compliance with industry standards.

The role also involves evaluating AI-powered security tools, communicating findings to stakeholders, and supporting the organization's efforts to reduce risk and improve software security

.

Responsibiliti

  • esImplement security measures within CI/CD pipelin
  • esUse Static Application Security Testing (SAST) tools to analyze source code or binari
  • esEmploy Dynamic Application Security Testing (DAST) tools to identify vulnerabilities in running applicatio
  • nsUtilize Software Composition Analysis (SCA) tools to detect vulnerabilities in open-source libraries and third-party componen
  • tsConduct secret scanning to prevent exposure of sensitive informati
  • onPerform container scanning to identify vulnerabilities and misconfiguratio
  • nsReview code security and triage findin
  • gsCollaborate with developers to remediate vulnerabilities and promote secure codi
  • ngConduct API security testing for standalone AP
  • IsManage automation of security testing process
  • esIntegrate security tools with organizational systems such as CMDB, ticketing, and reporting platfor
  • msMaintain tool certifications and stay current with advancemen
  • tsCommunicate findings clearly to support informed, prioritized actio
  • nsDeliver detailed assessment reports with remediation recommendations by risk lev
  • elPresent results to technical and non-technical stakeholders, including leadersh
  • ipMaintain documentation of security assessments and remediation tracki
  • ngWork with development teams to embed security in workflo
  • wsTrain developers on secure coding and security tool usa
  • geEvaluate and implement AI-powered application security testing tools with human validati
  • onMonitor AI tools for limitations and compliance adheren
  • ceEnhance the speed and reliability of secure code delive
  • ryReduce vulnerabilities and improve application security postu
  • reEnsure compliance with OWASP Top 10, CIS Benchmarks, and secure coding standar
  • dsCollaborate with Security Design Engineers and Security Architects on security framework implementati on

Requireme

  • ntsBachelor's degree in Computer Science, Information Technology, or related fi
  • eld3 to 5 years of experience with security testing tools and automat
  • ionKnowledge of DevSecOps practices and CI/CD pipeline integrat
  • ionFamiliarity with standards such as OWASP, CIS Benchmarks, and secure coding guideli
  • nesStrong collaboration and communication skills for working with developers and stakehold
  • ersProficient in spoken and written Engl ish
Compensa tionCompensation will be determined based on the candidate's experience, skills, and other relevant fact ors.

Equal Opportunity Stat ementOur client is an equal opportunity employer. They celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, or national or igin.

RemoteHunter is not the Employer of Record (EOR) for this role. Our purpose in this opportunity is to connect exceptional candidates with leading employers. We help job seekers worldwide discover roles that match their goals and guide them to complete their full application directly through the hiring company's career page o r ATS.

Keywords
enterprise-application-securityweb-application-securityapplication-securitydevsecopsclubs-organizationsinsurance-consulting-and-technologytechnology-securitycyber-securitysecurity-solutionstraining-and-developmenttesting-and-analysiscontinuous-integrationci-cdcontinuous-deliverycustomer-intelligence-cicd-certificate-of-depositmalware-and-vulnerabilitiesopen-sourcepolicies-and-practicessecurity-toolscomplianceartificial-intelligenceapplication-security-testing-aststatic-application-security-testing-sastdynamic-application-security-testing-dastsoftware-composition-analysissudden-cardiac-arrestapplication-programming-interface-apiapi-securityaccounts-payableconfiguration-management-database-cmdbticketingreporting-and-disclosureadaptive-project-management-and-reportingtraining-certificationassessment-assessment-toolsstudent-retention-remediation-in-higher-educationremediationopen-web-application-security-project-owaspsecurity-architectureplanning-and-designvisual-art-designproduct-development-and-designcomputer-scienceinformation-technologyinformation-and-communication-technology-ictdiversityenvironment-health-and-safety-hsseecology-environmentreligion-belief-and-spiritualitysexual-orientationapplicant-trackingapplicant-tracking-systems-ats

¿Te interesa este puesto?