DirectDefense Logo

DirectDefense

Application Security Consultant

Posted 14 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
90K-100K Annually
Junior
Remote
Hiring Remotely in USA
90K-100K Annually
Junior
Conduct application security assessments, identify and validate vulnerabilities, perform dynamic testing and static code reviews, and recommend remediation strategies. The consultant collaborates with development teams, uses tools such as Burp Suite, stays current with application security methodologies, and communicates complex security issues to diverse audiences.
The summary above was generated by AI

Are you passionate about application security and ready to make an immediate impact in a contract role? We are seeking a motivated Application Security Consultant with experience in software development, DevOps, or software quality assurance—or a strong foundation in application security. In this role, you will assess customer applications, identify and validate vulnerabilities, leverage innovative security tools, and recommend practical remediation strategies.

Responsibilities:

  • Conduct thorough analysis to identify and exploit vulnerabilities in customer applications.
  • Collaborate with development teams to creatively remediate identified vulnerabilities and enhance application security.
  • Perform dynamic testing and static code reviews to identify security vulnerabilities and weaknesses.
  • Utilize industry-leading tools, with a focus on application testing workspaces such as Burp Suite.
  • Stay abreast of the latest developments in application security, tools, and methodologies such as OWASP ASVS

Qualifications:

  • 1-3 years of hands-on experience in network/infrastructure security and penetration testing.
  • Bachelor’s degree in Computer Science, Engineering, Math, or a related field (or equivalent hands-on experience, classroom project work, or internship).
  • Strong understanding of application security principles and common vulnerabilities.
  • Experience in performing dynamic and static code reviews.
  • Familiarity with vulnerability scanning tools, specifically Burp Suite.
  • Excellent written and verbal communication skills, with the ability to convey complex security topics clearly and concisely to diverse audiences.
  • Experience in automated and manual application testing is a big plus.

Preferred Skills:

  • Certifications such as OSCP, BSCP, OSWE, GWAPT or related offensive security certifications are a strong plus.
  • Knowledge of common web application vulnerabilities and exploitation techniques.
  • Understanding of cryptography, authentication, and authorization mechanisms.
  • Excellent problem-solving skills and a proactive approach to addressing security concerns.
  • Effective communication and collaboration skills to work with cross-functional teams.
  • Experience with automated and manual application testing is a significant plus.
  • AWS experience is a big plus.

Salary Range: 100K-108K + up to 10% annual bonus

Benefits include:

  • 401(k)
  • AD&D Insurance
  • Dental Insurance
  • Disability insurance
  • Health insurance
  • Life insurance
  • Vision insurance
  • Flex PTO program
  • Paid certification and continuing education

Work schedule: Monday through Friday

Work hours: 40 hours a week

A little about DirectDefense

Since coming together in 2011 to form DirectDefense, our team has been committed to offering Cybersecurity defense strategies that are unmatched in the industry. Whether we are performing assessments of networks, platforms, and applications or applying managed services to improve your organization’s security posture, we are focused on providing world-class services that don’t just work–they work for you.

OUR MISSION

We establish partnerships with our clients based on trust and results. We leverage our deep industry knowledge and expertise to identify and remediate blind spots in your security program, provide meaningful visibility of your entire enterprise, and align your organization with security best practices and compliance standards.

OUR VISION

We aim to secure organizations across all industries against advanced threats and attacks in today’s world. Partnering with organizations, we provide unmatched information security services designed to improve your overall security posture, close gaps, and continuously track vulnerabilities through ongoing education and support.

A little about DirectDefense

Since coming together in 2011 to form DirectDefense, our team has been committed to offering unmatched cybersecurity defense strategies. Whether we are performing assessments of networks, platforms, and applications or applying managed services to improve your organization’s security posture, we are focused on providing world-class services that don’t just work–they work for you.

OUR MISSION

We establish partnerships with our clients based on trust and results. We leverage our deep industry knowledge and expertise to identify and remediate blind spots in your security program, provide meaningful visibility of your entire enterprise, and align your organization with security best practices and compliance standards.

OUR VISION

We aim to secure organizations across all industries against advanced threats and attacks in today’s world. Acting in partnership with organizations, we will provide unmatched information security services designed to improve your overall security posture, close gaps, and track vulnerabilities on an ongoing basis through continued education and support.

PAY TRANSPARENCY

In accordance with applicable state laws, we are providing a good-faith estimate of the compensation range for this role. The anticipated salary range for this position is $90,000 to $100,000 per year. Actual compensation will be based on several factors, including but not limited to the candidate’s qualifications, experience, skills, and location. This position may also be eligible for bonus incentives and a comprehensive benefits package.

Similar Jobs

One Month Ago
Remote
USA
70-90 Hourly
Junior
70-90 Hourly
Junior
Security
Conduct application security assessments, identify and validate vulnerabilities, perform dynamic testing and static code reviews, and recommend remediation strategies. Collaborate with development teams to improve application security, use tools such as Burp Suite, and stay current with application security methodologies, web vulnerabilities, and exploitation techniques.
Top Skills: AWSBurp SuiteOwasp Asvs
One Month Ago
In-Office or Remote
124K-185K Annually
Senior level
124K-185K Annually
Senior level
On-Demand • Security • Software
Leads client engagements focused on application security and DevSecOps transformation. Configures application security testing tools in CI/CD pipelines, supports vulnerability triage, conducts maturity assessments using BSIMM and NIST SSDF, and develops multi-year strategic roadmaps. Facilitates executive workshops, presents recommendations to security and engineering leaders, creates maturity models and dashboards, and contributes to thought leadership on secure software governance.
Top Skills: Ai/Ml AssuranceAWSBsimmCi/CdDastDevsecopsGitlab Ci/CdGrafanaNist SsdfOwasp SammPythonSastScaSdlcSscrm
3 Hours Ago
Remote or Hybrid
Oregon, USA
Mid level
Mid level
Digital Media • Information Technology • News + Entertainment
Develop and manage local advertising clients and agencies to achieve sales goals. Create market research, advertising proposals, forecasts, reports, and sales documentation. Prospect for new customers, coordinate advertising schedules and client requirements with internal teams, monitor account activity and collections, and maintain accurate customer records. The role requires independent judgment, punctual attendance, and flexibility to work nights, weekends, variable schedules, and overtime.
Top Skills: Advertising TechnologyDigital AdvertisingMultiscreen Video AdvertisingTv Advertising

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account