IT Security Auditor Job at HighCloud Solutions, Dimondale, MI

bjlRV0ZpMHhuMjdZN3VidVhNWW91emFMakE9PQ==
  • HighCloud Solutions
  • Dimondale, MI

Job Description

Title

IT Security Auditor

Location

Dimondale MI (Hybrid Locals Only)

Duration

12 Months

Job Type

C2CW2

Job Description

Short Job Description

  • Senior Full Stack Application Development Security Auditor who is passionate about designing and building secure platforms and applications through Dynamic Static and Software Composition Analysis assessments.
  • This position is not a member of the Security Operations Center rather it is dedicated to working with software development teams on secure coding practices.
  • The ideal candidate will feel comfortable working with both frontend backend and cloudbased application developers.
  • Partnering with distributed teams to help transform the way systems are built secured authorized and securely operated for continuous compliance and risk mitigation.
  • Specifically this candidate will help lead efforts to implement security patterns and practices with orchestration and automation tools that automate the secure configuration verification compliance and authorization of systems and their development.
  • They will be a key member of a team tasked with maturing the organizations secure software development practices.

Long Job Description

Functional Knowledge:

  • Chrome/Firefox/Edge Development tools to see the request/response headers
  • Experience with Application Security scanning tools (SAST DAST SCA ASOC Container/Cloud) a must.
  • Experience with Coverity BlackDuck STRM Fortify a plus
  • Request/Response headers for web and Restful API calls
  • Ability to explain in detail any of the OWASP top 10 vulnerabilities
  • Cross Site Scripting Injection attacks SSRF CSRF XML entity etc.
  • API Security
  • JWT
  • OAUTH/OIDC/PKCE
  • Web API replay attacks
  • Highlevel understanding of containers
  • Cloud development experience (Azure AWS GCP)

Minimum of 5 years of total IT related experience.

  • 3 years implementing/utilizing Federal Industry and OpenSource Security Guidance and Secure Coding Practices (OWASP Top 10 SANS CERT CWE Top 25 Critical Security Controls Cloud Security Alliance SafeCode etc.)
  • 3 years with both compiled and interpreted languages such as Angular React Node.js Java Spring Boot IBM WebSphere App server Oracle JBoss .NET stacks
  • 3 years with networking infrastructure secure application development and security automation (DevSecOps).
  • 3 years of handson knowledge building and deploying secure complex distributed web and mobile applications.

Job Tags

Full time, Local area,

Similar Jobs

BroadPath

Certified Pharmacy Technician - Medicare Part D Job at BroadPath

 ...remote healthcare team and make a meaningful impact on patient care while enjoying the flexibility of working from home! We're seeking a Licensed Pharmacy Technician to play a crucial role in our Medicare quality improvement initiatives. As our Remote Licensed... 

University of Wisconsin Madison

Research Nurse | University of Wisconsin Madison Job at University of Wisconsin Madison

 ...Radiology in the School of Medicine & Public Health is seeking a Research Nurse to help advance exciting medical imaging and disease-focused...  ...study participants, and provides participant information and clinical care according to established research plans to ensure... 

Vigilant Gear Holdings

Machinist - Firearms Job at Vigilant Gear Holdings

**Position Summary: **Fabricates piece parts based on engineering models using CNC equipment. Essential Duties and Responsibilities: Operate CNC machines for production. Inspect parts before, during and after machining. Maintain CNC machines per operator-level... 

PRIMUS Global Services, Inc

Data analyst Job at PRIMUS Global Services, Inc

 ...consider candidates with fewer YOE. Data analyst role, not data scientist level Advanced SQL Power BI must have Power BI (Tableau as a replacement will not work) Ecommerce, retail, or experience working with consumer insights or supply chain data Need... 

Bloomberg

Technical Writer - Product Documentation Job at Bloomberg

Description & Requirements *Please provide writing samples with your application The...  ...team is a centralized team of technical writers, crafting user assistance materials...  ...Company does not provide benefits directly to contingent workers/contractors and interns....