Application Security Engineer - North Central region (Remote in the U.S.)
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
Roles and Responsibilities:
- Run client SAST/DAST/SCA tools, review outputs and provide recommendations
- Work with development teams to identify and remediate security vulnerabilities
- Provide security guidance during the software development lifecycle (SDLC)
- Identify, track, and prioritize security vulnerabilities
- Validate fixes and conduct retesting
- Implement and maintain application security tools and scanning solutions
- Create reports for technical and non-technical stakeholders
Experience Requirements:
- 2-3 years experience working in Application Security
- Understanding of Integrated Development Environment (IDE) and Continuous integration / Continuous Delivery (CI/CD) Pipeline tools and processes (e.g. GitHub, etc.)
- Strong working knowledge of Secure Development Lifecycles and experience remediating technical vulnerabilities identified by web application scanning tools, Information Systems architecture, security control design, and development experience
- Deep knowledge of manual testing tools such as Burp Suite Pro
- Knowledge of and experience with SAST/DAST/SCA Application Security tools. Invicti (DAST) or Checkmarx (SAST/SCA) experience highly preferred
- Experience with the integration of tools into development pipelines
- Understanding of a broad range of Application Security issues as well as their mitigation strategies
- Understanding of Application Security related vulnerabilities
- Experience with reviewing source code written in JavaScript, Python, Java, C++, PHP, or C# a plus
- Written communication skills for written interactions with clients
- Strong communication skills that include the ability to clearly articulate thoughts and distill complex problems into digestible pieces of information
- Personal drive and passion to not only continue growing yourself but also the Application Security Engineering practice
- Bachelor's degree in Computer Science or Information Security preferred
- Standard industry certifications are preferred
We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
- Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
- Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
- Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
- 12 corporate holidays and a Flexible Time Off (FTO) program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open enrollment
- Pet Benefit Option
About the Company
GuidePoint Security is a cybersecurity company that helps organizations navigate the complex threat and cybersecurity solution landscape to make more informed risk decisions at the speed of business. Their mission is to provide robust solutions that prevent security breaches and ensure the protection of brands, reputations, and digital assets.
Key aspects of the company:
- Team of highly-certified security practitioners with deep expertise
- Assesses organizational risk, aligns and optimizes resources, and recommends best-fit security technologies through a rigorous vetting process
- Serves more than half of the cabinet-level agencies within the U.S. Federal Government and a third of Fortune 500 companies
- Offers cybersecurity advisory services, threat and attack simulation, application security, digital forensics and incident response (DFIR), exposure management, and security solutions
- Operates GuidePoint Security University (GPSU) for cybersecurity education and training
- Has a peer-to-peer recognition program called "Pay-It-Forward"
- Named amongst the Best Workplaces by Inc Magazine and Washington Business Journal
Company values:
- Take Ownership and Complete our Mission - Hold themselves accountable, become experts, and take initiative
- Always Challenge Yourself & Have Fun - Push themselves to take calculated risks and exceed expectations
- "WOW Them!" - Strive to be long-term partners and make customers' experience a success
- No Jerks! - Treat people with respect and dignity, work constructively to address issues
Employee benefits and perks:
- Fully covered employee premiums on base health plan with generous dependent support
- Generous mobile phone and home internet allowance
- Excellent work-life balance via telework and flextime
- Competitive 401k retirement plans
- Vibrant workplace culture with deep engagement