Junior Application Security Engineer
Wilmington, DE, United States
CSC
A provider of Registered Agent, UCC search and filing, compliance and entity services, CSC helps Fortune 500 corporations do business better.Junior Application Security Engineer
Wilmington, DE-Hybrid
Monday through Friday 8:00 a.m. to 5:00 p.m.
Candidates for this position must be eligible to work in the United States without sponsorship. Time on-site or time zone may be necessary based on business need.
Some of the things you will be doing:
- Provide expertise in the Application Security areas of Web Application Security Services, API Security and Application Security Testing.
- Develop policies to protect web application and API’s from malicious payload attacks, provide virtual patching capabilities and validation with Security Testing.
- Assist in developing an automated security framework for robust deployment tools and processes, leveraging various scripting languages and open-source solutions.
What technical skills, qualifications, and experience do you need?
- Knowledge in building the F5 WAF, API Security, BOT protection, DOS/DDOS protection policies and extending them to hybrid cloud environment -AWS and Azure environment
- Familiarity with DevSecOps ecosystem: Terraform, Ansible, GitHub, Jenkins, Azure DevOps, SAST, DAST & SCA
- Knowledge of Cloud & Kubernetes Resource Security, Secure Network and Architecture, SDLC standard and policies
- Familiarity with Web App Protection AWS and Azure App Protection Policy, Configuration, and Security Management tools
- Expertise in Programming languages Python, NodeJS, SQL query and Vulnerable Code remediation.
- Stay up to date with the latest application security threats and trends
- Proficiency in designing, implementing, and maintaining effective security policies for web applications using WAF technologies
- Experience coordinating and performing vulnerability assessments using automated and manual tools
- Ability to review and analyze WAF logs to detect and respond to security incidents promptly
- Ability to review and analyze vulnerability data to identify security risks to the organization's network, infrastructure, and application's and determine any reported vulnerabilities that are false positives
- Experience with BI Design and Development
- Familiarity with Information Security frameworks/standards (i.e. CIS, NIST, RFC2196, etc.)
- Familiarity with common security libraries, security controls, and common security flaws
#LI-SP1
CSC is a global business, legal, and financial services company based in Wilmington, Delaware, USA, providing knowledge-based solutions to clients worldwide. We have offices and capabilities in over 140 jurisdictions in the Americas, Europe, Asia Pacific, and the Middle East, and more than 8,000 colleagues. We are the business behind business.®
Visit our careers site to learn more about CSC and our commitment to our clients, communities, and each other.
CSC is committed to creating a feeling of belonging through a diverse and growth-oriented environment where everyone is valued.
CSC colleagues have global career opportunities and excellent benefits, including annual success-sharing bonuses or commission plans based on individual performance. To learn more, visit cscglobal.com/service/careers.
We offer a range of support to colleagues with disabilities, ensuring people have the necessary resources to thrive in their roles. We encourage candidates to work closely with our talent acquisition partners to convey their specific needs. Our commitment to accessibility reflects our broader dedication to diversity and belonging,
CSC only accepts resumes from employment agencies that are part of our approved supplier program. Resumes submitted from other agencies either to talent acquisition, our hiring leaders, employees, or through any other mechanism other than our supplier process, will not be eligible to claim related fees and the submitted resumes will be considered property of CSC.
We encourage candidates to apply directly to our website and not through third-party sources.
Disclaimer: The information above describes the general nature and level of work performed by employees in this role. It is not intended to describe all duties, responsibilities, and qualifications.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible APIs Application security AWS Azure Business Intelligence Cloud DAST DDoS DevOps DevSecOps GitHub Jenkins Kubernetes NIST Node.js Python SAST Scripting SDLC SQL Terraform Vulnerabilities
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.