





Strong employer brand, mid-level (4–6 yrs), and metro location create high competition.
Specialized AppSec and Java secure-coding focus increases domain specificity, so medium transferability.
Explicit 4–6 years plus mandatory AppSec, Java secure-coding and SAST/DAST tooling enforce high shortlisting strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Automate and integrate security checks (SAST/DAST) into CI/CD pipelines and drive DevSecOps culture.
Conduct secure coding reviews on complex Java enterprise applications to identify and remediate vulnerabilities before production.
Mentor engineering teams on Java secure coding standards, OWASP Top 10 risks, and collaborate on vulnerability resolution.
4 to 6 years of experience in dedicated Application Security (AppSec) or DevSecOps roles.
Proven expertise in Java with deep knowledge of secure coding patterns.
Hands-on experience with commercial or open-source SAST/DAST tools.
Strong skills in threat modeling and manual code review.
Experienced in embedding security automation into enterprise CI/CD workflows with measurable impact on vulnerability reduction.
Skilled at leading vulnerability triaging and eliminating false positives in SAST/DAST results within large scale Java applications.
Able to effectively advise and mentor development teams on secure architecture, coding standards, and threat mitigation strategies.