Information Security Engineer IV
Apex Systems · Ohio, United States · Yesterday
Information TechnologyContract
Location: Remote (EST hours)
Length: 6 months
About the role
The Code Security Engineer is responsible for the administration, operation, and continuous improvement of the organization's code security capabilities, including Static Application Security Testing (SAST), Software Composition Analysis (SCA), and API Security platforms. This role supports security tooling operations, runtime monitoring, developer enablement, and end-user support. The engineer will partner with engineering teams to develop integrations, automation, reporting, and processes that improve security visibility and operational efficiency across the software development lifecycle. The engineer must be available for on-call duties according to a predetermined schedule.
Responsibilities
- Administer and support SAST, SCA, and API Security platforms.
- Configure, maintain, and optimize security scanning and runtime monitoring capabilities.
- Analyze security findings and assist development teams with vulnerability remediation and risk reduction.
- Provide end-user support, troubleshooting, and onboarding assistance for security tools and related processes.
- Monitor platform health, scan coverage, performance metrics, and operational effectiveness.
- Design and develop integrations between security platforms, CI/CD pipelines, reporting systems, and other enterprise tools.
- Build automation and one-off solutions to improve security workflows and reduce operational overhead.
- Utilize Infrastructure as Code (IaC) practices to deploy and manage tooling and supporting infrastructure.
- Develop dashboards, metrics, and reporting to support security program visibility and decision-making.
- Collaborate with development, DevOps, and security teams to integrate security into engineering workflows.
- Contribute to security tooling roadmaps, enhancement efforts, and operational improvements.
Requirements
- Experience with API Security, Software Composition Analysis (SCA), and Static Application Security Testing (SAST).
- Experience with Terraform or similar Infrastructure as Code technologies.
- Proficiency in Javascript and Python.
- Experience developing automation, integrations, or operational tooling.
- Understanding of secure software development lifecycle (SSDLC) principles and application security practices.
- Experience providing end-user support and troubleshooting technical issues.
Skills
- Strong analytical, troubleshooting, and communication skills.
Preferred Qualifications
- Unit testing experience.
- Experience writing one-off automation and data-processing scripts.
- Amazon Web Services (AWS) experience.
- Power BI experience.
- Windows Server administration experience.
- Familiarity with CI/CD pipelines, API gateways, and DevOps practices.
Benefits
- Supplemental medical, dental, vision, life, and disability insurance plans.
- Employee Stock Purchase Program (ESPP).
- 401K program with company match after 12 months of tenure.
- Health Savings Account (HSA) on the HDHP plan.
- SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions.
- Corporate discount savings program and other discounts.
- On-demand training program.
- Access to certification prep, technical and leadership courses/books/seminars after 6+ months of tenure.
- Certification discounts and association perks (e.g., CompTIA, IIBA).
- Dedicated customer service team for benefits and resources.
- Access to a certified Career Coach.