What are the responsibilities and job description for the Application Security Engineer position at Staffing Spot, Inc.?
- Solid in secure coding practices and code-level vulnerability analysis.
- Expert with threat modeling methodologies such as STRIDE, PASTA, or attack trees.
- Strong exposure of authentication, authorization, session management, API security, and secrets management.
- Applications developed in Java, .NET, Python, JavaScript/TypeScript, Node.js, Go, or similar technologies.
- Good with integrating security controls into CI/CD pipelines and developer workflows.
- Hands-on experience with SAST, SCA, DAST, IaC scanning, container security, API security testing, software supply chain security, and runtime protection technologies.
- Experience securing AI-enabled applications and advising development teams on AI/LLM security best practices.
- Experience designing security controls for AWS, Azure, or GCP environments.
- Knowledge of software supply chain security, SBOMs, dependency risk management, artifact integrity, and package governance.
- Zero Trust architectures, policy-as-code, and secure platform engineering practices.
- Previous experience serving as a Security Champion, Application Security Lead, or embedded security engineer within development teams.
- Certifications such as CSSLP, CISSP, CCSP, GIAC GWEB, or GIAC GWAPT.
Salary : $79 - $91