Contract DevSecOps Engineer - AppSec Specialist

Motion Recruitment • United State
Remote
Apply
AI Summary

Support critical AppSec operations, reduce backlog, and manage cyber risk across company applications. Enable stronger security throughout the software development lifecycle through automated, developer-friendly tools and processes. 100% remote role with Greensboro, NC (Guilford County) requirement.

Key Highlights
Secure CI/CD design and implementation
Application security tool integration and automation
Support enterprise application security assessments
Key Responsibilities
Support end-to-end AppSec services, including intake, assessment scoping, and application team engagement
Support SAST, SCA, DAST, API security, and mobile security assessment activities
Help reduce AppSec backlog and improve vulnerability management
Technical Skills Required
Application Security DevSecOps CI/CD SAST SCA/OSCA DAST API Security Vulnerability Assessment GitHub Jira Jenkins Cloud Security REST/SOAP APIs Scripting/Development (Java, Python, Ruby, Go, Node.js)
Benefits & Perks
12-month contract with FTE conversion potential
100% remote work
Nice to Have
Checkmarx One
Sonatype Nexus IQ
WhiteHat or Black Duck DAST
Noname API Security
NowSecure
Atlas
Salesforce intake workflows
Docker
Kubernetes
AWS
Azure
CISSP
CSSLP
GIAC
Security Plus
AWS Security
Azure Security

Job Description


Our client, a leader in healthcare, is seeking a contract DevSecOps Engineer, AppSec Specialist, . This is a 100% remote role with candidates required to be in Greensboro, NC. (or Guilford County)



This is a contractor request to address an immediate AppSec capacity need due to resource gaps. The role is critical to sustaining AppSec operations, reducing backlog, supporting enterprise application security assessments, and managing cyber risk across company applications. U.S. based ClickStaff path is needed to restore capacity sooner



This position supports the Application Security program by enabling stronger security throughout the software development lifecycle through automated, developer friendly security tools and processes integrated into application delivery workflows. Responsibilities include secure CI/CD design and implementation, application security tool integration, security automation, cloud based DevSecOps processes, vulnerability scanning integration, documentation, developer self service enablement, security tooling improvement, and guidance to cybersecurity and development teams. The role will also support AppSec assessment activities across web, mobile, API, and cloud enabled applications, including SAST, OSCA, DAST, API security, and mobile security testing. The resource will help validate vulnerabilities, reduce false positives, provide remediation guidance, support defect tracking, and work directly with development teams to drive timely remediation. This role requires experience with application security best practices, enterprise security solutions, AWS or Azure, scripting or coding, software design and architecture, Agile delivery, CI/CD, DevSecOps tools, vulnerability assessment practices, and strong communication skills to explain technical findings clearly to developers and stakeholders.


Contract duration: – 12 months (with FTE conversion potential)


Required skills:


  • 3 to 6 years of related application security, DevSecOps, software development, security testing, or vulnerability management experience.
  • Specific Systems Knowledge Required: Application Security, DevSecOps, CI/CD pipelines, secure SDLC, SAST, SCA/OSCA, DAST, API security, vulnerability validation, remediation guidance, GitHub, Jira, Jenkins, cloud security concepts, REST/SOAP APIs, and scripting or development experience such as Java, Python, Ruby, Go, or Node.js.


Required Level of Education:


  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, Information Technology, Engineering, or equivalent related experience.


Top Three Skillsets needed:


  • Strong hands-on application security and secure coding know
  • ledge.DevSecOps, CI/CD, and security tool integration exper
  • ience.Strong communication skills with the ability to explain vulnerabilities, risk, and remediation clearly to developers and stakeholders.


Preferred skills:


Specific Systems Knowledge Preferred:


  • Checkmarx One, Sonatype Nexus IQ, WhiteHat or Black Duck DAST, Noname API Security, NowSecure, Atlas, Salesforce intake workflows, Jira defect management, Docker, Kubernetes, AWS, Azure, and enterprise DevSecOps pipeline integration.


  • Preferred certifications include CISSP, CSSLP, GIAC, Security Plus, AWS Security, Azure Security, or other relevant application security or cloud security certifications.


  • Preferred Level of Education: Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Information Security, or related field.


Daily Responsibilities:


Top Three things Worker will be doing:


  • Support end to end AppSec services, including intake, assessment scoping, and application team engagement.
  • Support SAST, SCA, DAST, API security, and mobile security assessment activities, including onboarding, validation, reporting, and remediationguidance.
  • Help reduce AppSec backlog and improve vulnerability management by working with application teams on findings, remediation, and closure.

Similar Jobs

Explore other opportunities that match your interests

Application Security Engineer

Cyber Security
•
2h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State

Staff Application Security Engineer

Cyber Security
•
2h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Agility Robotics

United State

Senior Security Analyst - Project Lead

Cyber Security
•
3h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Not Applicable

Jobs via Dice

United State

Subscribe our newsletter

New Things Will Always Update Regularly