WiproNYSE: WIT: Global technology services and consulting for digital transformation.
5+ YOE5+ years experience in application security, secure code review for Java/.Net, familiarity with vulnerability assessment, OWASP/NIST frameworks, Fortify/Veracode, and strong communication skills.
Dillard'sNYSE: DDS: National department store chain retailing apparel, cosmetics, and home goods.
Experience with web and application security, DAST/SAST, web application firewalls, vulnerability verification, SDLC security controls, plus strong communication and ethical behavior.
TAB Bank: Offers commercial lending and digital banking solutions for businesses.
3+ YOE3+ years in application security, DevSecOps, or related roles; hands-on with SAST/DAST/SCA and container/code scanning; experience with Terraform and AWS; strong communication and integrity.
SmartRentNYSE: SMRT: Provides smart home and building automation for rental housing.
4+ YOE4–6 years in application security; secure SDLC; cloud and web security; strong communication; experience with OWASP, SAST/DAST/SCA; AWS and WAF knowledge.
Cyber Security Analyst III - App Security & Vulnerability (Remote)
Raleigh or North Carolina or Arizona or Texas
RemoteFull Time
First Citizens BankNasdaq: FCNCA: Provides full-service consumer, commercial, and wealth management banking.
6+ YOEHands-on experience with SAST/DAST/SCA and web application security, proficiency in scripting languages, vulnerability triage and remediation, and experience integrating security into SDLC/CI-CD.
Awardco: Software platform for employee recognition and corporate rewards programs.
6+ YOE6+ years in application security or secure software engineering; cloud SaaS security; web/API security; experience with SAST/DAST and CI/CD; mentoring developers.
Morgan StanleyNYSE: MS: Global financial services firm providing investment and wealth management.
10+ YOE10+ years IT experience with 7+ years in application security, expertise in SAST/SCA/DAST, CI/CD integration, security reviews, metrics reporting, and stakeholder communication.
Harness: AI-powered platform for automating software delivery and DevOps.
Experienced pre-sales engineer with AppSec knowledge (SAST/DAST/SCA), demo and workshop delivery, ability to translate security needs to engineering, and willingness to travel occasionally.
Mitek SystemsNASDAQ: MITK: Provider of AI-powered identity verification and mobile deposit solutions.
5+ YOE5+ years in application security with hands-on SAST/DAST/SCA, application penetration testing, secure code review, threat modeling, API security, and developer enablement.
SAST, DAST, SCA, OWASP Top 10, OAuth 2.0, mTLS, STRIDE, PASTA
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
8+ YOE8+ years experience building React and Node.js applications; backend with FastAPI, .NET, or Node.js; PostgreSQL and ORM experience; familiarity with security (DAST/SAST/SCA) and Azure DevOps.
DatadogNASDAQ: DDOG: Observability and security platform for cloud applications and infrastructure.
Software engineering background with hands-on code review; knowledge of OWASP Top 10, SAST/DAST, API security; able to mentor engineers and define secure-by-default solutions.
Go, Python, Rust, OWASP, SAST, DAST, API security, APM, CI/CD
Morgan StanleyNYSE: MS: Provides global investment banking, wealth management, and advisory services.
10+ YOE10+ years IT experience with 7+ years in application security; expertise in SDLC, SAST/SCA/DAST, container scanning, CI/CD integration, security reviews, and stakeholder communication.