Experience: At least 6 years in static code analysis/SAST (Static Application Security Testing), secure coding, and software development.
Technical Skills: Proficiency in static code analysis tools (e.g., SonarQube, Veracode, Checkmarx) and experience with secure code review of multiple programming languages, including:
Java
Python
.NET/C#
C/C++
Code Review Skills: Ability to read and understand source code across various programming languages and tech stacks, troubleshoot false positives, and confirm genuine issues.
Secure Coding Knowledge: Strong understanding of secure coding practices, including OWASP Top 10, SANS 25, and CWE, applicable to cloud and non-cloud environments.
Job Classification
Industry: IT Services & Consulting Functional Area / Department: IT & Information Security Role Category: IT Security Role: Application Security Engineer Employement Type: Full time