I am urgently looking for a mid-senior Application Security Engineer on a 3-month contract to help with some validation of vulnerabilities and creation of an operational workflow.
Must have the below:
- Good understanding of software composition analysis
- Ability to speak to business risk when assessing software vulnerabilities
- Developing proof-of-concept exploitation scripts for known vulnerabilities
- Familiarity with Mitre Top 25 and CVSS frameworks, mapping to business risk
- Ability to write prescriptive remediation steps for vulnerabilities and weaknesses
- Clear communication -- both written and oral
- Experience triaging vulnerabilities with engineering teams
