Application Security Engineer - Remote Position
About the Role
OnePay is hiring a full-time Application Security Engineer to join our dynamic team, working remotely from the USA. As an Application Security Engineer, you will play a crucial role in safeguarding our applications and ensuring the security of our systems. This is a fantastic opportunity for someone passionate about cybersecurity and eager to make an impact in a rapidly growing company.
What You'll Do
- Conduct security assessments and code reviews to identify vulnerabilities in applications.
- Collaborate with development teams to implement secure coding practices.
- Develop and maintain security policies and procedures to protect sensitive data.
- Monitor and respond to security incidents, providing timely resolutions.
- Stay updated on the latest security threats and trends to proactively mitigate risks.
Requirements
- 3+ years of experience in application security or a related field.
- Strong knowledge of secure coding practices and application security frameworks.
- Experience with security tools and technologies such as static and dynamic analysis tools.
- Familiarity with compliance standards such as OWASP, PCI-DSS, and GDPR.
- Excellent problem-solving skills and attention to detail.
Nice to Have
- Certifications such as CISSP, CEH, or CSSLP.
- Experience with cloud security and DevSecOps practices.
- Knowledge of programming languages such as Python, Java, or C#.
What We Offer
- Competitive salary range of $170,000 - $210,000.
- Fully remote work environment with flexible hours.
- Comprehensive health benefits and wellness programs.
- Opportunities for professional development and training.
- A collaborative and inclusive company culture.
This Application Security Engineer role at OnePay offers a competitive salary and the chance to work remotely while contributing to vital security measures.
Who Will Succeed Here
Proficiency in secure coding practices, particularly in languages such as Java, Python, or JavaScript, ensuring the development of applications that are resistant to common vulnerabilities like SQL injection and cross-site scripting.
Strong familiarity with security assessment tools such as OWASP ZAP, Burp Suite, and Snyk, enabling effective identification and remediation of security flaws throughout the software development lifecycle.
Experience with compliance standards such as OWASP Top Ten, NIST, or ISO 27001, along with a proactive mindset to stay updated with evolving security threats and best practices in a remote work environment.
Learning Resources
Career Path
Market Overview
Skills & Requirements
Domain Trends
Industry News
Loading latest industry news...
Finding relevant articles from the last 6 months