🔄 Staff Augmentation

VBest Software Inc is a staffing and recruiting agency that sources and places IT professionals for client projects, as evidenced by their job postings for contract roles (e.g., 'W2 Candidates', 'Need ex BOA candidate') and their self-description as an IT workforce outsourcing company.

This company was flagged and excluded from default search results. Proceed with caution.

VBest Software Inc
Posted 1d ago

Lead Application Security/Information Security Engineer

VBest Software Inc
Charlotte, North Carolina, United States
$75-$80/hrOnsiteContract
Responsibilities
  • defining strategy
  • securing applications
  • testing defenses
Requirements
  • Requires 9+ years of enterprise application or information security engineering experience
  • SSDLC and DevSecOps expertise
  • AI application security knowledge, and CISSP, CSSP, CISM, or equivalent certification
Technical tools mentioned
SSDLCSASTSCADASTGenAILLMDevSecOpsCI/CD

Job description

Tasks

Local Nearby Candidates required

Relevant security certifications (CISSP, CSSP, CISM, or equivalent).

must have - - 9+ years of Application Security or Information Security Engineering experience at enterprise scale.

W2 Candidates

Requirements

Must have - - 9+ years of Application Security or Information Security Engineering experience at enterprise scale.

- Deep expertise in SSDLC controls including threat modeling, secure design, SAST, SCA, DAST, and penetration testing.

- Proven ability to define security strategy and deliver outcomes through influence and technical leadership.

- Experience securing GenAI and LLM-based applications, including adversarial testing and prompt-injection defenses.

- Experience designing AI-driven security automation or decisioning capabilities.

- Strong understanding of DevSecOps and CI/CD security integration.

- Experience working in highly regulated environments such as financial services.

- Relevant security certifications (CISSP, CSSP, CISM, or equivalent).

Similar jobs

Application Security Engineer roles near Charlotte, North Carolina
1w
Save
Mark Applied
Hide
Sr. Application Security Engineer
Fort Mill or Charlotte or New York City or San Diego or Austin or Tempe
$101k-$168k/yr HybridFull Time
LPL Financial
LPL FinancialNASDAQ: LPLA: Provides wealth management and brokerage services to financial advisors.
5+ YOERequires 5+ years of application security experience, manual API and web testing, vulnerability analysis, security libraries, scanning tools, risk evaluation, secure SDLC, DevSecOps, and CI/CD expertise.
Synopsys, BlackDuck, J-Frog, PrismaCloud, Burpsuite, Postman, C#, Java, HTML, CSS, JS, React, Angular, REST, DevSecOps, CI/CD
1w
Save
Mark Applied
Hide
Sr. Application Security Engineer
Fort Mill or Charlotte or New York City or San Diego or Austin or Tempe
$101k-$168k/yr HybridFull Time
LPL Financial
LPL FinancialNASDAQ: LPLA: Provides independent financial advisory and wealth management services.
5+ YOERequires 5+ years of application security experience, manual API and web testing, vulnerability analysis, security libraries, scanning tools, risk evaluation, secure SDLC, DevSecOps, and strong communication skills.
Synopsys, Black Duck, JFrog, Prisma Cloud, Burp Suite, Postman, C#, Java, HTML, CSS, JavaScript, React, Angular, REST, CI/CD, OWASP Top 10, IAST
3w
Save
Mark Applied
Hide
Senior Application Security Engineer
Malvern or Charlotte or Plano or Dallas
HybridFull Time
Vanguard
Vanguard: Global investment management and financial services provider.
Requires a related undergraduate degree or equivalent experience, strong DAST deployment and CI/CD integration experience, application security expertise, and familiarity with NIST, OWASP, and MITRE.
DAST, CI/CD, SAST, SCA, IAST, RASP, NIST, OWASP, MITRE
3w
Save
Mark Applied
Hide
Senior Application Security Engineer
Malvern or Charlotte or Dallas or Fort Worth
HybridFull Time
Vanguard
Vanguard: Provides mutual funds, ETFs, and investment management services.
Undergraduate degree or equivalent; strong experience with DAST and CI/CD integration; familiarity with SAST, SCA, IAST, RASP, secure SDLC, and standards such as NIST, OWASP, MITRE.
DAST, SAST, SCA, IAST, RASP, CI/CD, NIST, OWASP, MITRE