Security Remediation Engineer
Roles & Responsibilities:
- Triage and perform root-cause analysis of vulnerabilities identified through SAST, DAST and penetration testing.
- Implement and/or guide remediation for OWASP Top 10, API, authentication, access control and dependency vulnerabilities.
- Work with Java, Angular/React application teams to deliver secure code fixes and dependency upgrades.
- Validate false positives, coordinate security retesting/rescans and provide remediation evidence.
- Track vulnerability backlog, SLA, aging and closure status using JIRA.
- Prepare remediation reports, dashboards, exception registers and governance updates.
- Provide secure coding recommendations and drive reduction of recurring security findings.
Skills Required
- Strong hands-on experience in Application Security and vulnerability remediation.
- Good knowledge of OWASP Top 10, secure SDLC, SAST, DAST and penetration testing findings.
- Strong Java and modern web application experience, preferably Angular/React.
- Experience with REST APIs, API security, authentication, authorization and secure coding.
- Knowledge of cloud security practices, dependency management and secrets protection.
- Experience with JIRA and vulnerability tracking/reporting processes.
- Strong analytical, communication, stakeholder-management and problem-solving skills.