Skip to content


Charlotte North Carolina - 105-120K Full Time Posted: Wednesday, 20 June 2018
Applicants must be eligible to work in the specified location

Prestigious Fortune 500 Company is currently seeking a Application Security Test Engineer. Candidate will help develop a security testing framework within the SDLC, establish a software security testing assurance process, and work with product delivery teams to build applications securely. Candidate will be responsible for integrating security testing into the development of applications. This role will work closely with the product and software development team to threat model, vulnerability scan, and penetration test the software early and identify required control points in the application stack. Candidate will also work closely with developers to diagnose, document, and remediate application security vulnerabilities.


  • Work closely with application development and platform teams to help formulate and implement a testing strategy for software security that is tailored to the specific risks facing the organization, including threat modelling and applications security advisement services.
  • Develop and maintain a balanced application security testing program based on a well-defined application security framework.
  • Conduct application security assessments/penetration tests and reuse tools for dynamic/automated code reviews.
  • Able to advise risks in the program and testing activities and also propose mitigation plans for encountered risks
  • Able to prioritize work around security testing based on business priorities and assign testing priorities accordingly
  • Continuously evaluate the organization's existing application security practices, define and measure security-related activities, and demonstrating concrete improvements to the application assurance program within the organization.
  • Provide secure application development training to developers and provide guidance on the development of web-based training for ongoing awareness.
  • Conduct Application, API and penetration testing.
  • Work with Developers to Develop and maintain unit and integration tests designed to ensure security controls are tested on every build.
  • Partner with Company Security team to evaluate and perform Root cause analysis on Security Scan reports, understand what remedial actions are needed with development teams and ensure vulnerabilities are closed with highest priority and attention
  • Partner with Flight Product teams to work together on application, API testing and have Security tests run in parallel to ensure Dynamic testing is achieved from Security standpoint
  • Have Security test requirements Embedded in the Product development life cycle
  • Manage Security test engineers across geographies from delivery standpoint, responsible for delivery of Security testing for products and applications
  • Work with Security teams to manage, execute and deliver on App Security, API Security and Penetration Security testing


Bachelor's Degree or equivalent in Computer Science, Information Systems Management, Information Technology, or other related discipline; advanced degree preferred.

5 years' experience as an Application Security Engineer, Application Developer, Architect, Software Quality Assurance.

Organized, responsive and highly thorough problem solver.

Possess business acumen with ability to work with application development, QA and security teams.

Strong understanding of application security frameworks.

Knowledge of the OWASP Top 10 and ASAP standards.

Must have a good understanding of application security code reviews and penetration testing.

Practical understanding and use of commercial application security tools.

Strong self-starter who has the ability to operate independently.

Solid understanding and experience with establishing application security testing policies across an organization.

Excellent oral/written presentation skills with ability to communicate effectively with Leadership; proficiency in preparation of presentations, reports, and documents regarding program status and performance.

Understanding and Passion for Agile/XP/Scrum/Kanban.

Understanding of Test Driven Development built on User Stories.

Understanding of Continuous Integration/Testing/Delivery.

Be a self starter and manage team member working on Security Testing

Ability to present Security testing related updates and progress to Leadership

Charlotte North Carolina, United States of America
IT, Engineering
Craig Johnson 
6/20/2018 2:21:04 PM

About Request Technology - Craig Johnson
You may be just a keystroke away from fulfilling yourREQUEST for success...REQUEST is an executive search firm specializing in recruiting Information technology professionals for organizations in the...

We strongly recommend that you should never provide your bank account details to an advertiser during the job application process. Should you receive a request of this nature please contact support giving the advertiser's name and job reference.

Other jobs like this

Charlotte North Carolina
Charlotte North Carolina