Washington, DC Hybrid $210,000 - $230,000

Upside is hiring a Staff Application Security Engineer

Responsibilities

  • Design and implement security measures to protect applications.
  • Conduct security assessments and vulnerability testing.
  • Collaborate with development teams to integrate security into the software development lifecycle.
  • Develop and maintain security documentation and standards.
  • Monitor and respond to security incidents and alerts.
  • Provide security training and guidance to development teams.
  • Ensure compliance with industry security standards and regulations.
  • Perform code reviews to identify and mitigate security vulnerabilities.
  • Develop and implement security tools and frameworks.
  • Conduct security audits and risk assessments.
  • Participate in incident response and forensic investigations.
  • Stay updated with the latest security trends and best practices.
  • Work with cross-functional teams to address security concerns.
  • Implement security controls and measures.
  • Conduct threat modeling and analysis.
  • Develop and maintain security policies and procedures.
  • Perform security testing and validation.
  • Collaborate with stakeholders to address security issues.
  • Ensure the confidentiality, integrity, and availability of applications.
  • Provide technical leadership in security initiatives.
  • Conduct security awareness training for employees.
  • Implement security best practices in application development.

Nice to Have

  • Certifications in application security (e.g., CISSP, CEH).
  • Experience with cloud security.
  • Knowledge of DevSecOps practices.
  • Familiarity with container security.
  • Experience with security information and event management (SIEM) systems.
  • Knowledge of secure coding standards (e.g., OWASP Top 10).
  • Experience with static and dynamic application security testing (SAST/DAST).
  • Familiarity with security orchestration, automation, and response (SOAR) tools.
  • Knowledge of network security principles.
  • Experience with identity and access management (IAM) systems.

Compensation

Competitive salary and benefits package.

Work Arrangement

On-site with flexible hours.

Team

Collaborative and dynamic team environment.

What You'll Do

  • Design and implement security measures to protect applications.
  • Conduct security assessments and vulnerability testing.
  • Collaborate with development teams to integrate security into the software development lifecycle.
  • Develop and maintain security documentation and standards.
  • Monitor and respond to security incidents and alerts.
  • Provide security training and guidance to development teams.
  • Ensure compliance with industry security standards and regulations.
  • Perform code reviews to identify and mitigate security vulnerabilities.
  • Develop and implement security tools and frameworks.
  • Conduct security audits and risk assessments.
  • Participate in incident response and forensic investigations.
  • Stay updated with the latest security trends and best practices.
  • Work with cross-functional teams to address security concerns.
  • Implement security controls and measures.
  • Conduct threat modeling and analysis.
  • Develop and maintain security policies and procedures.
  • Perform security testing and validation.
  • Collaborate with stakeholders to address security issues.
  • Ensure the confidentiality, integrity, and availability of applications.
  • Provide technical leadership in security initiatives.
  • Conduct security awareness training for employees.
  • Implement security best practices in application development.

What You'll Need

  • Bachelor's degree in Computer Science, Information Technology, or a related field.
  • Proven experience in application security or a related role.
  • Strong knowledge of security principles and best practices.
  • Experience with security tools and technologies.
  • Familiarity with secure coding practices.
  • Knowledge of industry security standards and regulations.
  • Experience with vulnerability assessment and penetration testing.
  • Strong analytical and problem-solving skills.
  • Excellent communication and teamwork skills.
  • Ability to work in a fast-paced environment.
  • Experience with incident response and forensic investigations.
  • Knowledge of threat modeling and analysis.
  • Experience with security audits and risk assessments.
  • Familiarity with security frameworks and standards.
  • Ability to develop and maintain security documentation.
  • Experience with code reviews and security testing.
  • Knowledge of secure software development lifecycle (SDLC).
  • Ability to provide security training and guidance.
  • Experience with security tools and frameworks.
  • Familiarity with compliance and regulatory requirements.
  • Strong technical leadership skills.

Nice to Have

  • Certifications in application security (e.g., CISSP, CEH).
  • Experience with cloud security.
  • Knowledge of DevSecOps practices.
  • Familiarity with container security.
  • Experience with security information and event management (SIEM) systems.
  • Knowledge of secure coding standards (e.g., OWASP Top 10).
  • Experience with static and dynamic application security testing (SAST/DAST).
  • Familiarity with security orchestration, automation, and response (SOAR) tools.
  • Knowledge of network security principles.
  • Experience with identity and access management (IAM) systems.

Our Benefits

  • Competitive salary and benefits package.
  • On-site with flexible hours.
  • Collaborative and dynamic team environment.

Not provided.

About company
Upside
Our technology uses the sophistication of online retail—profit measurement, attribution, and incrementality—to provide users with more value on their everyday purchases and brick-and-mortar businesses with new, profitable customers.
All jobs at Upside Visit website
Job Details
Department Information Office
Category security
Posted 3 months ago