Job Summary
We are seeking an experienced Information Security Engineer IV to support and enhance enterprise code security capabilities. The ideal candidate will have expertise in Application Security, SAST, SCA, and API Security, along with strong programming skills to build automation and integrations across the software development lifecycle.
Required Skills
- Strong experience with Static Application Security Testing (SAST)
- Hands-on experience with Software Composition Analysis (SCA)
- Experience implementing and managing API Security
- Proficiency in JavaScript/Node.js and Python
- Experience with Terraform or Infrastructure as Code (IaC)
- Knowledge of Secure Software Development Lifecycle (SSDLC)
- Experience developing automation, integrations, and security tooling
- Strong troubleshooting and end-user support skills
Preferred Skills
- AWS
- CI/CD pipelines and DevSecOps practices
- API Gateways
- Unit Testing
- Power BI
- Windows Server Administration
Responsibilities
- Administer and support SAST, SCA, and API Security platforms.
- Build automation and integrations using JavaScript/Node.js and Python.
- Develop Infrastructure as Code using Terraform.
- Monitor security tools, analyze vulnerabilities, and support remediation efforts.
- Integrate security tools with CI/CD pipelines and engineering workflows.
- Create dashboards, reports, and operational metrics.
- Partner with Development, DevOps, and Security teams to improve application security.
- Provide technical support and onboarding for security platforms.
Experience: 5+ years in Application Security, Code Security, or DevSecOps Engineering.