Senior Application Security Engineer responsible for ensuring secure development practices at Ventura Foods. Collaborating with engineering teams to enhance application security through various assessments.
Responsibilities
Manage and develop the application security program by developing the program, working with peers and stakeholders to adopt the program(s) and grow and manage the team as needed
Develop and implement a Threat Modeling program that drives a Secure by Design SDLC process while working to train and educate stakeholders
Identify, document, rate, and communicate vulnerabilities in terms of Confidentiality, Integrity and Availability
Undertake static and dynamic application security assessments for Ventura Foods Entities
Assess applications for vulnerabilities using manual and automated methods, threat modeling, code reviews, SAST/DAST/Open-Source tool scans, penetration testing
Develop, curate, and improve application security detections (static and dynamic) to identify vulnerabilities at scale
Facilitate conversations between developers and security teams to further the security of Ventura Foods software
Mentor and train developers on secure code best practice
Requirements
8 years of work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD)
3+ years of relevant application security experience
Deep understanding of OWASP Top 10 and CWE 25; with experience in implementing remediation strategies
Deep knowledge and experience in using SAST, DAST and Open-Source Vulnerability Scanning tools
Hands-On experience with any programming language (React, C#, JavaScript, Java, Go, Python, etc)
Well versed in web application design, penetration testing, application risk assessment and risk categorization
Well versed with driving and implementing DevSecOps practices in to develop ability to successfully integrate security into a developer's world
Ability to effectively present and communicate security threats and risks to ANY audience and impress upon them the mitigation techniques and strategies
Solid problem solving and analytical skills; able to quickly digest any issue/problem encountered and recommend an appropriate solution
Benefits
Medical, Prescription, Dental, & Vision – coverage beginning on your 1st day for eligible employees
Profit Sharing and 401(k) matching (after eligible criteria is met)
Network Security Engineer at Eurobank leading the design of network security architectures. Collaborating with teams to ensure compliance and effective network security implementations in a banking environment.
Patrol Officer creating a secure environment for patients at Health Sciences Centre. Enforcing laws and assisting in medical and nursing staff in Winnipeg, Canada.
OT (Cyber) Security Officer responsible for securing IT and OT systems in large infrastructure projects. Collaborating with a security team to develop cybersecurity strategies and incident responses.
Cyber Security Consultant at NewTec aiding clients in implementing security measures and management plans. Engaging in project diversity with experienced specialists in a supportive environment.
Technical Security Engineer supporting national security by implementing security solutions for government clients. Collaborating with teams to assess vulnerabilities and protect mission data.
Lead Information Systems Security Manager at Booz Allen managing Risk Management Framework authorization and continuous monitoring of IT systems in compliance with security policies.
ISSO providing advanced cyber solutions for government clients. Leading security assessments and mitigation planning to secure mission - critical systems.
Cybersecurity Senior Associate analyzing complex cybersecurity issues and mentoring junior team members. Building client relationships while contributing to threat intelligence and vulnerability management initiatives.
Cybersecurity Manager leading threat intelligence and SIEM solutions initiatives for a global accounting firm based in Taguig. Plan and direct resources for successful project outcomes while mentoring junior staff.
Senior IT - Security Engineer responsible for implementing cyber security solutions in complex IT infrastructures for clients. Leading technical security projects with focus on customer support and security strategy development.