Cybersecurity Engineer
Listed on 2026-01-24
-
IT/Tech
Cybersecurity, Cloud Computing, Security Manager
We’re looking for a Cybersecurity Engineer specializing in application security and Dev Sec Ops to join the Express Employment International corporate-based Cybersecurity team. In this role, you’ll manage security tools, integrate security into CI/CD pipelines, and guide development teams on secure coding practices. You’ll drive vulnerability management, automate security processes, and strengthen security across web apps, APIs, and cloud environments.
Ideal candidates have hands‑on experience with Traceable (API security), Invicti (DAST), and Mend (SCA), plus expertise in secure SDLC, CI/CD automation, and cloud‑native architecture. Strong collaboration and communication skills are key to delivering secure, high‑quality solutions.
Responsibilities- Application & API Security Tooling Operations
- Configure, manage, and maintain application security tools including Traceable, Invicti, and Mend.
- Monitor scan results, alerts, and findings; validate vulnerabilities and eliminate false positives.
- Ensure continuous coverage across web applications, APIs, microservices, and CI/CD pipelines.
- CI/CD Security Integration & Automation
- Integrate security testing tools into CI/CD pipelines (e.g., Git Hub Actions, Git Lab CI, Azure Dev Ops, Jenkins).
- Automate security scans for source code, open‑source dependencies, dynamic testing, and API runtime monitoring.
- Develop and maintain scripts, policies, and guardrails to enforce secure development practices.
- Vulnerability Management & Remediation Support
- Prioritize vulnerabilities based on risk, exploitability, and business impact.
- Partner with engineering teams to provide actionable remediation guidance.
- Track remediation progress and validate fixes through re‑scanning and verification.
- Secure SDLC Enablement & Developer Support
- Act as a security subject‑matter expert for development teams.
- Provide guidance on secure coding practices, API security, and dependency management.
- Create documentation, runbooks, and developer‑facing security guidance.
- Security Metrics, Reporting, & Continuous Improvement
- Develop dashboards and metrics to measure application security posture and Dev Sec Ops maturity.
- Report trends, risks, and improvements to cybersecurity leadership.
- Continuously evaluate and optimize tooling configurations and processes.
- Governance, Risk, and Compliance Alignment
- Support internal security standards, policies, and regulatory requirements.
- Assist with audits, risk assessments, and evidence collection related to application security controls.
- Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field.
- Equivalent professional experience may be considered in lieu of a degree.
- 3–6 years of experience in application security, Dev Sec Ops , or cybersecurity engineering.
- Demonstrated experience integrating security tooling into CI/CD pipelines.
- Experience supporting developers with vulnerability remediation and secure coding practice.
- Experience in cloud environments (AWS, Azure, or GCP) preferred.
- CSSLP, GWAPT, OSCP, or similar application security certifications.
- Cloud security or Dev Ops certifications (AWS, Azure, Kubernetes).
- Hands‑on experience with application security and Dev Sec Ops tooling, specifically:
- Traceable (API security, runtime visibility, API threat detection).
- Mend (White Source) for software composition analysis (SCA).
- Invicti for dynamic application security testing (DAST).
- Strong understanding of:
- Secure SDLC and Dev Sec Ops principles.
- Web application and API security (OWASP Top 10, OWASP API Top 10).
- Microservices and cloud‑native architectures.
- Proficiency in CI/CD platforms and automation.
- Experience with scripting or programming (e.g., Python, Bash, Power Shell, or similar).
- Ability to analyze vulnerabilities and communicate risk clearly to technical and non‑technical stakeholders.
- Strong collaboration skills with development, platform, and security teams.
- Ability to manage multiple priorities in a fast‑paced engineering environment.
Not sure you meet every requirement? Apply anyway!
At Express, we celebrate what makes you, you. We value diverse backgrounds, perspectives, and talents—because we know that’s what makes us stronger together. If you’re excited about the role, we’re excited to hear from you.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).