





Known employer and metro location increase applicants, but AppSec specialization limits overall competition.
AppSec skills transfer across industries but required tooling and pipeline experience create moderate domain specificity.
Mandatory 5+ years plus specific SAST/DAST tools and certifications increases filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Advise and enforce secure coding and design practices throughout development pipelines.
Identify, analyze, and remediate software security defects in web applications, services, and SOA.
Utilize Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) tools within development environments.
5+ years of experience in two or more programming languages, including web application and service development.
Proficiency with SAST/DAST tools (e.g., Fortify) and strong understanding of OWASP Top 10 vulnerabilities.
Relevant cloud certifications (GCP, AWS, Azure) and security certifications such as CSSLP, GSSP-.NET, GSSP-JAVA, C|CASE, GWEB, GREM, or CEH.
Working knowledge of Git and strong analytical, documentation, and communication skills.
Experience working with development languages including Angular, Go, and Python is advantageous.
Strong familiarity with integrating security tools into CI/CD pipelines and secure software development lifecycle.
Demonstrated ability to operate in a security-focused engineering role within cloud environments (AWS, GCP, Azure).