FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Application Security Consultant
Wypoon Technologies. Conduct comprehensive security assessments of applications, services, APIs, and supporting architectures .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in application security assessments, secure code reviews, and threat modeling, with a strong understanding of vulnerabilities and secure coding practices. Proficient in utilizing SAST, DAST, and SCA tools while effectively communicating security risks to diverse stakeholders.
Highest-signal resume keywords
Application SecuritySecure Code ReviewsSAST, DAST, and SCA ToolsThreat ModelingOWASP Top 10
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Application Security AssessmentsVulnerability IdentificationSecure Software DevelopmentSecurity ArchitectureRemediation RecommendationsCloud Security PrinciplesSecure Coding PracticesApplication Security StandardsPenetration TestingExploitability Assessment
Soft Skills
CollaborationStakeholder ManagementAdvisory SkillsCommunicationAccountability
Tools & Technologies
CI/CDDevSecOpsAzureAWSGCPJiraAzure DevOpsConfluenceKubernetesInfrastructure as Code
Certifications & Qualifications
ISO 27001NIST CSFSOC 2GDPRDORANIS2
Industry Keywords
CybersecurityApplication Security StandardsOWASP ASVSOWASP SAMMWeb SecurityAPI SecurityMicroservices SecurityCloud-Native SecurityAuthenticationAuthorization
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityGoogle Cloud PlatformKubernetesMicroservices
About the role
Key responsibilities & impact- Conduct comprehensive security assessments of applications, services, APIs, and supporting architectures
- Perform manual and tool-assisted secure code reviews
- Facilitate threat modelling for new and existing applications
- Review application and cloud architectures and provide security recommendations
- Utilize, configure, and support SAST, DAST, and SCA tools
- Validate automated security findings, eliminate false positives, evaluate exploitability, and assess technical and business impact
- Help prioritize vulnerabilities based on severity, exploitability, application criticality, and enterprise risk
- Define remediation actions with software development teams and track resolution
- Support secure coding, security-by-design, and application security controls throughout the software development lifecycle
- Develop and improve application security standards, guidance, review processes, and reusable security patterns
- Communicate application security risks to technical and non-technical stakeholders
- Complete an agreed number of application security assessments per quarter and reduce organizational security risks
- Collaborate with software engineers, architects, security teams, and business stakeholders on enterprise projects
Requirements
What you’ll need- Proven professional experience in application security, product security, software security, penetration testing, secure software development, or a similar cybersecurity position
- Strong hands-on experience performing secure code reviews and identifying vulnerabilities in application source code
- Practical experience with SAST, DAST, and SCA tools and validating and interpreting automated security findings
- Ability to perform complex application security assessments and deliver clear remediation recommendations
- Experience conducting threat modelling and identifying attack scenarios, trust boundaries, security risks, and appropriate controls
- Strong understanding of common application vulnerabilities, attack techniques, secure coding practices, and application security architecture
- Strong knowledge of the OWASP Top 10 and relevant application security standards, methodologies, and vulnerability classifications
- Experience validating, prioritizing, documenting, and supporting remediation of security vulnerabilities
- Understanding of cloud security principles and applications deployed in cloud or hybrid environments
- Understanding of modern software development practices and integrating security throughout the development lifecycle
- Ability to explain complex application security risks and technical vulnerabilities to developers, architects, managers, and business stakeholders
- Strong advisory, collaboration, and stakeholder management capabilities
- High degree of ownership, independence, accountability, and ability to manage multiple assessments and priorities simultaneously
- Professional proficiency in English across speaking, writing, listening, and reading
- Preferred: enterprise or regulated-environment experience; CI/CD and DevSecOps integration; OWASP ASVS, OWASP SAMM, NIST SSDF or similar; web/API/microservices/mobile/cloud-native assessment; authentication, authorization, session management, cryptography, API and identity security; listed application security tools; source-code review in listed languages; Azure, AWS, or GCP; container/Kubernetes security; infrastructure as code; ISO 27001, NIST CSF, SOC 2, GDPR, DORA, or NIS2; relevant certifications; Agile, Jira, Azure DevOps, and Confluence
Benefits
Comp & perks- 25 paid vacation days (based on a 40-hour work week)
- Direct and permanent contract from day one
- Relocation and travel budget
- Eligibility for the 30% ruling
- Daily commute travel reimbursement
- High-quality work device/equipment
- Financial support for certifications, technical training, and language courses
- Visa sponsorship for partner and children under 18
- Temporary accommodation while finding permanent housing
- Comprehensive relocation assistance
- Team events and global developer community
- Visa process support