Padmi

JPC - 205425 - Application Security Engineer

Remote · HoustonPosted 1 month ago
CybersecurityUnspecified
Apply at Indotronix International

Opens the source posting on iic.com

Source description

About the role

View original

Application Security Engineer (SAST/DAST Focus) Location: Houston, TX (Remote Eligible) | Job Type: C2C

About the Role

Join Chevron’s forward-thinking cybersecurity team as an Application Security Engineer focused on SAST/DAST. Drive secure software development, integrate security into DevOps, and make a measurable impact on enterprise risk reduction. This is your opportunity to advance your career in a collaborative, innovation-driven environment dedicated to modern security practices.

Responsibilities

  • Implement, manage, and optimize SAST and DAST tools (Checkmarx, Veracode, Fortify, SonarQube, Burp Suite, OWASP ZAP) across multiple application environments

  • Integrate automated security testing into CI/CD pipelines (Azure DevOps, GitHub, Jenkins) to enable true DevSecOps

  • Conduct code reviews and vulnerability assessments to ensure robust, secure applications

  • Identify, triage, and remediate vulnerabilities with a focus on the OWASP Top 10

  • Collaborate with development teams to embed secure coding best practices into SDLC

  • Support threat modeling and security design review initiatives

  • Monitor and report on application security posture and emerging risk trends

  • Provide expert assistance in application-related security incident response

  • Required Skills and Experience

  • Proficient with SAST and DAST tools

  • In-depth knowledge of OWASP Top 10 and secure coding practices

  • Experience integrating security into CI/CD pipelines

  • Strong understanding of web application architecture (APIs, microservices)

  • Familiarity with container security (Docker, Kubernetes)

  • Hands-on with open-source scanning tools (SCA)

  • Programming or scripting experience (Java, Python, .NET)

  • Proven collaboration with developers in agile environments

  • Preferred Skills

  • Experience with cloud security (especially Azure)

  • Exposure to Infrastructure-as-Code (IaC) security scanning

  • Security certifications (CSSLP, GWAPT, Security+)

Benefits

  • Dynamic, high-impact projects in the energy sector

  • Opportunities for career growth and upskilling in the latest security technologies

  • Supportive, diverse, and collaborative team environment

  • Remote work flexibility

  • How to Apply Ready to power Chevron’s secure digital future? Submit your resume and a brief cover letter outlining your application security accomplishments via our application portal.

One address, no account. We’ll tell you when matching roles go live.

More at Indotronix International

Related open roles

View all roles