Application Security Remediation Engineer

Posted 16hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Application Security Remediation Engineer remediating Wiz findings across enterprise applications for Arctiq’s technology services clients. Securing code, dependencies, containers, and DevSecOps delivery pipelines.

Responsibilities:

  • Analyze and remediate application-level vulnerabilities identified by Wiz
  • Resolve code vulnerabilities within .NET, Java, PHP, Go, and Node.js applications
  • Upgrade vulnerable libraries, frameworks, packages, and third-party dependencies
  • Perform compatibility and regression testing for upgraded software components
  • Remediate container image vulnerabilities and insecure build configurations
  • Modernize and rebuild affected images to comply with organizational security standards
  • Work with development teams to incorporate secure coding practices
  • Address insecure configurations within application runtimes and frameworks
  • Validate completed remediations and ensure findings are accurately resolved within Wiz
  • Design and document reusable remediation patterns for recurring vulnerability classes
  • Support secure software delivery through DevSecOps and CI/CD integration
  • Collaborate with SRE, cloud, platform, and security teams throughout remediation activities
  • Work alongside customer software engineering teams across .NET, Java, Go, PHP, Node.js, SQL Server, and MySQL workloads

Requirements:

  • Strong software engineering experience in one or more of .NET/C#, Java, Go, PHP, or Node.js
  • Experience working with enterprise-scale application environments
  • Experience remediating application vulnerabilities and applying secure coding practices
  • Strong understanding of OWASP Top 10 vulnerabilities and software supply-chain security
  • Experience upgrading third-party libraries, frameworks, packages, and application dependencies
  • Docker and container image remediation experience
  • Kubernetes application deployment and container security experience
  • Experience with SQL Server and/or MySQL, including application-to-database security fundamentals
  • CI/CD pipeline integration, Git-based workflows, and Secure Software Development Lifecycle practices
  • Experience with automated security testing, SAST, SCA, and dependency-management tooling
  • Experience with vulnerability management programs and prioritization of Critical and High findings
  • Experience using Wiz, Snyk, Veracode, Checkmarx, SonarQube, or similar tools
  • Strong debugging, analytical, root-cause investigation, documentation, and communication skills
  • Preferred: Hands-on Wiz experience
  • Preferred: Experience securing containerized microservices architectures
  • Preferred: Cloud-native application development experience
  • Preferred: Experience with Amazon EKS and Kubernetes
  • Preferred: Secure coding or application-security certifications
  • Preferred: Experience in healthcare, payments, or other regulated industries

Benefits:

  • Equal opportunity employer
  • Accommodations or adjustments throughout the interview process and beyond
  • Inclusive work environment
  • 3 months contract engagement