This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for an experienced Application Security Architect & Engineer to join our team on a contract basis in Richmond, Virginia. In this role, you will collaborate closely with application teams to embed security into all stages of the software development lifecycle, ensuring compliance and the implementation of secure coding practices. This position offers an opportunity to make a significant impact by improving the security posture of critical applications while working in a dynamic environment.
Job Responsibility:
Provide comprehensive security guidance and training to development and operations teams to enhance secure software practices
Evaluate application architecture and design to identify security risks and align them with DevSecOps principles
Promote and enforce secure coding standards across diverse programming languages such as JavaScript, Java, and C#
Conduct detailed reviews of source code to identify vulnerabilities and recommend effective remediation strategies
Assess and secure modern web application frameworks, including cloud technologies, APIs, microservices, and client-server models
Utilize application security testing tools and platforms, such as Accunetix, Veracode, Jenkins, Splunk, Rapid7, and Tenable, to identify and address security weaknesses
Ensure compliance with relevant security regulations and standards, including NIST 800-53 and IRS Pub 1075
Develop and maintain System Security Plans (SSPs) to document security policies and procedures effectively
Collaborate with cross-functional teams, including QA engineers and operations staff, to integrate security measures into workflows
Stay updated on emerging threats, technologies, and industry trends to continuously improve security practices
Requirements:
Minimum of 5 years of experience in application security or a related field
Strong understanding of secure coding practices and vulnerability management
Proficiency in programming languages such as JavaScript, Java, C#, and SQL
Familiarity with Agile and Scrum methodologies to support secure software development
Experience with modern web application architectures, including cloud technologies and APIs
Expertise in using application security tools like Accunetix, Veracode, and Splunk
Knowledge of compliance standards such as NIST 800-53 and IRS Pub 1075
Excellent communication skills to convey technical concepts to both technical and non-technical audiences