Application Security Engineer
Remote
Hey, this job isn't fresh anymore! 👉 Find fresh remote jobs here
The Application Security (AppSec) team focuses on mitigating risk within our engineering environment by implementing strategic security measures in areas of high risk or significant leverage. We engage in risk identification, the development and implementation of security strategies, and the execution of critical security projects throughout Included Health’s applications.
We are looking for a thoughtful and unusually responsible Application Security Engineer, someone who’s self-motivated, self-aware and self-disciplined, to help advance our mission. They will work closely with our infrastructure and platform teams to help improve our security posture in these areas to meet dynamic business demands.
We are looking for a thoughtful and unusually responsible Application Security Engineer, someone who’s self-motivated, self-aware and self-disciplined, to help advance our mission. They will work closely with our infrastructure and platform teams to help improve our security posture in these areas to meet dynamic business demands.
Duties and Responsibilities
- Security Integration: Embed security practices into the software development lifecycle, ensuring that security is considered at every stage, and implemented as a self-service capability wherever feasible (shift-left).
- Automation: Develop and maintain automated security tools and scripts to identify and remediate security vulnerabilities in code and infrastructure.
- Code Review and Analysis: Perform security code reviews and static/dynamic analysis to identify vulnerabilities in applications written in JavaScript, Go, and Python.
- Collaboration: Work closely with Engineering and IT teams to promote security best practices and provide guidance on secure coding standards.
- Incident Response: Assist in the investigation and response to security incidents and vulnerabilities, providing technical expertise and recommendations.
- Continuous Improvement: Stay up-to-date with the latest security trends, vulnerabilities, and tools, and continuously improve the security posture of our applications and infrastructure.
- Documentation: Create and maintain comprehensive security documentation, including policies, procedures, and guidelines.
- Consultant: Act as a security consultant on secure software development practices, and provide hands-on training and coaching for Developers
Qualifications
- A bachelor’s degree in a related discipline or equivalent professional experience.
- At least 4 years acting in an Application Security Engineer role with progressive responsibility.
- Strong experience integrating and managing DAST, SAST or IAST, and SCA tools and how these feed into Vulnerability Management initiatives.
- Understanding of how scanning tools, penetration tests, and post-deploy scanning tools work together in the application security lifecycle.
- Deep, hands-on experience implementing AppSec tools into a DevOps pipeline.
- Solid understanding of application security issues, risks, and mitigation strategies.
- Experience developing and refining Secure SDLC documents and processes.
- Experience building and leading Information Security training focused on developers and based on OWASP principles.
- Experience assessing and securing open-sourced software components.
- Strong interpersonal verbal and written communications skills with proven experience of collaboration across different engineering areas.
- Deep knowledge of containers and …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Benefits/PerksBenefits Compassionate Leave Comprehensive medical, vision, and dental coverage Equity Paid parental leave Paid Time Off Remote-first culture Work-From-Home reimbursement
Tasks- Collaborate with teams
- Improve security posture
Advocacy Application Security Automation Behavioral health CI/CD Coaching Code Review Coding Collaboration Communications Containers DAST DevOps Engineering Go Healthcare Iast Incident Response In-person care Interpersonal Java Javascript Leadership Management Primary Care Python SAST SCA Secure Software Development Security Documentation Specialty care Telemedicine Terraform Urgent care Virtual care Vulnerability Management
Experience4 years
EducationBachelor's degree Business Equivalent professional experience Related discipline
Certifications
Remote Jobs in North America
Remote Jobs in Europe
Remote Jobs in Asia/Pacific
Remote Jobs in South America
Remote Jobs in Africa
Remote Jobs in Middle East
Full Time Remote Jobs
Part Time Remote Jobs
Contract Remote Jobs
Internship Remote Jobs
Temporary Remote Jobs
Freelance Remote Jobs
Mid-Level Remote Jobs
Senior-Level Remote Jobs
Entry-Level Remote Jobs
Exec-Level Remote Jobs
Lead-Level Remote Jobs
Junior-Level Remote Jobs
Remote Event Jobs
Remote Designer Jobs
Remote Project Manager Jobs
Remote Business Development Jobs
Remote Customer Service Jobs
Remote Analytics Jobs
Remote Sales Manager Jobs
Remote Sales Specialist Jobs
Remote Senior Software Engineer Jobs
Remote Technician Jobs
Remote Sales Representative Jobs
Remote Contract Jobs
Remote Scientist Jobs
Remote Spanish Jobs
Remote Quality Jobs
Remote Full Time Jobs
Remote Pathologist Jobs
Remote Engineer I Jobs
Remote Program Manager Jobs
Remote Speech Language Pathologist Jobs
Remote Jobs with EUR > 100K in Salary
Remote Jobs with CAD > 140K in Salary
Remote Jobs with GBP > 120K in Salary
Remote Jobs with CAD > 160K in Salary
Remote Jobs with EUR > 120K in Salary
Remote Jobs with PLN > 40K in Salary
Remote Jobs with PLN > 60K in Salary
Remote Jobs with PLN > 100K in Salary
Remote Jobs with PLN > 80K in Salary
Remote Jobs with PLN > 120K in Salary
Remote Jobs with GBP > 140K in Salary
Remote Jobs with PLN > 180K in Salary
Remote Jobs with PLN > 140K in Salary
Remote Jobs with PLN > 200K in Salary
Remote Jobs with PLN > 160K in Salary
Remote Jobs with PLN > 220K in Salary
Remote Jobs with EUR > 140K in Salary
Remote Jobs with CAD > 180K in Salary
Remote Jobs with PLN > 260K in Salary
Remote Jobs with PLN > 240K in Salary