Application Security Engineer
CurrentThis role focuses on triaging and assisting software engineers in remediating vulnerabilities in NET applications. Key Responsibilities: Vulnerability Triage: Analyze and prioritize security vulnerabilities identifie in NET applications, ensuring critical issues are addressed promptly. Identify false positives and unactionable results Validate and provide a proof of concept for DAST results Remediation Support: Collaborate with software engineers to provide guidance and support in fixing identified vulnerabilities, ensuring secure coding practices are followed. Tool Utilization: Utilize and interpret results from security tools such as a Security Code Scanner, OWASP Zap, BurpSuite, and Fortify on Demand to identify vulnerabilities in .NET code.Qualifications: Technical Skills: Proficiency in NET technologies (C#, VB.NET), secure coding practices, and experience with SAST and DAST tools. Experience testing for and reporting issues in the OWASP top 10 (XSS, CSRF, SSRF, SQLi, etc.) Analytical Skills: Strong analytical and problem-solving skills to triage and address security vulnerabilities effectively.Communication Skills: Excellent communication skills to work effectively with development teams and convey complex security concepts.