MANDATORY REQUIREMENTS:
-
Experience with Application Security scanning tools (SAST, DAST, SCA, ASOC, Container/Cloud) a must
-
HTTP Request/Response headers for web and Restful API calls
-
Ability to explain in detail any of the OWASP top 10 vulnerabilities
-
Cross Site Scripting, Injection attacks, SSRF, CSRF, XML entity, etc.
-
Minimum of 5+ years of total IT related experience
-
3+ years implementing/utilizing Federal, Industry and Open-Source Security Guidance and Secure Coding Practices (OWASP Top 10, SANS, CERT, CWE Top 25, Critical Security Controls, Cloud Security Alliance, SafeCode etc.)
-
3+ years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks
-
3+ years with networking, infrastructure, secure application development and security automation (DevSecOps)
-
3+ years of hands-on knowledge building and deploying secure complex distributed web and mobile applications
-
Local MICHIGAN candidates ONLY - Must be located within 100 miles of Dimondale, MI at time of submission.
-
Must have the ability to pass a CJIS background check
-
2nd round interview will be conducted IN-PERSON in Dimondale, MI.