GuidePoint Security
ApplicationSecurityEngineer
Neural analysis suggests this role is
optimal for Mid candidates.
“Application Security Engineer at GuidePoint Security. Skills: Application Security, SAST/DAST/SCA, CI/CD integration. Run client SAST tools. Run client DAST tools”
Industry & Context.
Root cause analysis
US based, Some travel may be required
What They're Looking For.
Must Have
4 years progressive experience, 2 years IDE/CI/CD experience, 2 years secure development lifecycle experience, 2 years remediating technical vulnerabilities, 2 years Information Systems architecture experience, 2 years security control design experience, 2 years development experience, 2 years SAST/DAST/SCA experience, 2 years tool integration experience, 2 years application security experience, 2 years source code review experience
Nice to Have
Master's degree preferred, Invicti experience preferred, Checkmarx experience preferred
What You'll Do.
Run client SAST tools
Run client DAST tools
Implement tool integrations
Integrate tools into pipelines
Integrate tools into ticketing systems
Collaborate with developers
Provide secure design guidance
Provide remediation guidance
Manage application security tooling
Maintain application security tooling
Operate application security tooling
Configure application security tooling
Tune application security tooling
Automate application security tooling
How You'll Work.
Team & Collaboration
Collaborate with developers
Full Job Description
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U. S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. Run client SAST, DAST, and SCA tools, review outputs and provide recommendations; Implement integrations for tools into pipelines, ticketing systems, etc.; Collaborate with developers to provide secure design guidance and remediation strategies; Familiarity with CI/CD systems (i. e. GitHub) and integrating software security tools into the development workflow; Strong understanding of web application security principles and best practices; Manage, maintain and operate application security tooling, including configuration, tuning, and automation. Position allows for 100% remote work from within the US. Requirements: Bachelor's degree in Computer Science, Information Systems or Information Security, and 4 years progressive baccalaureate experience as a security engineer, security analyst or related position working in Application Security. Must have 2 years of experience with each of the following: Integrated Development Environment (IDE) and Continuous integration / Continuous Delivery (CI/CD) Pipeline tools and processes (e. g. Azure Dev Ops, Jenkins, Bamboo, etc.); Secure Development Lifecycles and experience remediating technical vulnerabilities identified by web application scanning tools, Information Systems architecture, security control design, and development experience; Manual testing tools such as Burp Suite Pro; Knowledge of and experience with SAST/DAST/SCA Application Security tools (Invicti (DAST) or Checkmarx (SAST/SCA); Experience with the integration of tools into development pipelines; Experience underst
Applying for this Application Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Greenhouse
- Create a Greenhouse profile before applying — it saves time across multiple applications.
- Upload your resume as a PDF; the parser handles it better than Word.
- Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
- Enable email notifications to track application status in real time.
ANONYMOUS · UNFILTERED
What do employees actually say about GuidePoint Security?
Real rants from real employees. Read before you apply.