
Application Security Engineer – Associate
Sumitomo Mitsui Banking Corporation – SMBC Group
full-time
Posted on:
Location Type: Hybrid
Location: Charlotte • North Carolina • 🇺🇸 United States
Visit company websiteJob Level
JuniorMid-Level
Tech Stack
JavaPythonSDLC
About the role
- Administer security projects to safeguard Capital Market’s information systems
- Ensure any code being developed follows the prescribed SDLC process
- Act as a subject matter expert to resolve complex problems
- Ensure all code scanning vulnerabilities follow organizational policies
- Work closely with developers to ensure issues are fixed before production release
- Manage respective code scanning tools in the stack
Requirements
- 3+ years of experience as a developer with strong focus on Application Security
- Development background with one or more of programming languages, C#, C++, Java, Python, .Net
- Ability to read and understand code deficiencies needed
- Ability to write code fixes for stakeholders and create automation scripts
- 2+ years of experience with Static Application Security Testing (SAST) or Dynamic App Security Testing (DAST)
- 2+ years of experience with container security issues and technologies
- Strong knowledge of OWASP Top 10 or CWE
- Understanding of common software threats and mitigations
- Experience with Jira/Confluence
Benefits
- Hybrid workforce model allowing work from home
- Reasonable accommodations for applicants with disabilities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
C#C++JavaPython.NetStatic Application Security Testing (SAST)Dynamic Application Security Testing (DAST)code scanningautomation scriptscode fixes
Soft skills
problem solvingcollaborationcommunication