Senior Application Security Consultant, Strategic Services- Remote (Anywhere in the U.S.)

GuidePoint Security
United States
Workplace: RemoteFull timeFunction: Consulting & AdvisoryExperience: 6+ yearsEducation: bachelorsSkills: ["Writing","Communication","Time management","Mentoring","Problem-solving"]

Senior Application Security Consultant within Strategic Services delivering AppSec offerings such as Threat Modeling, Architecture Reviews, and DevSecOps program assessments to diverse clients. You’ll translate security requirements into technical implementations, mentor teammates, contribute to service development, and engage with clients while traveling up to 10%.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GuidePoint Security
GuidePoint Security
2 months ago

Senior Application Security Consultant, Strategic Services- Remote (Anywhere in the U.S.)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 21 hours agoStatus: Live

Job Summary

Senior Application Security Consultant within Strategic Services delivering AppSec offerings such as Threat Modeling, Architecture Reviews, and DevSecOps program assessments to diverse clients. You’ll translate security requirements into technical implementations, mentor teammates, contribute to service development, and engage with clients while traveling up to 10%.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Consulting & Advisory
Seniority: Sr. Manager level

Key Responsibilities

  • •Deliver Application Security services, including Application Threat Modeling, Architecture Reviews, and AppSec/DevSecOps Program Assessments
  • •Author comprehensive assessment deliverables tailored to both technical and managerial audiences detailing technical execution, deficiencies, business impact, and remediation strategies
  • •Understand application security landscape, tools, methodologies, and frameworks such as OWASP SAMM, OWASP DSOMM, NIST SSDF, SLSA, NIST AI RMF, and MITRE ATLAS
  • •Analyze and understand complex application architectures and integrate security into the SDLC with development teams
  • •Assist with Practice development, improving offerings, and mentoring team members
Travel: Low travel

Pay and Benefits

Perks:Health InsuranceDentalRemote Work401kRetirementPet Benefit

Key Requirements

  • •Willingness to travel up to 10%
  • •Delivering Application Security services, including Application Threat Modeling, Application Architecture Reviews, and AppSec/DevSecOps Program Assessments
  • •Author comprehensive assessment deliverables tailored to both technical and managerial audiences detailing technical execution, deficiencies, business impact, and remediation strategies
  • •Understanding of application security landscape, tools, methodologies, and frameworks such as OWASP SAMM, OWASP DSOMM, NIST SSDF, SLSA, NIST AI RMF, and MITRE ATLAS
  • •Deep understanding of application security issues, mitigation strategies, and common security controls
  • •Ability to analyze and understand complex application architectures
  • •Experience working directly within development teams and integrating security into the SDLC
  • •Assist with Practice development, improving offerings, and mentoring team members
  • •Contribute to marketing initiatives via research, speaking, writing, and tool development
  • •Foster client relationships through support, information, and guidance while managing concurrent client engagements
  • •Demonstrates a startup mentality with a highly driven, high-performance approach to work
  • •Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
  • •Comprehensive hands-on experience using generative AI in automated workflows
  • •Direct hands-on experience in application security service offerings, including application threat modeling, architecture reviews, and AppSec/DevSecOps program assessments
  • •Experience with application security controls, architectures, requirements, and industry standards
  • •Development and/or application architecture design background with understanding of secure implementation practices for cryptography, input validation techniques to prevent injection attacks, and exception management
  • •Operational DevSecOps experience
  • •Development experience in JavaScript, shell, Python, Java, C++, PHP, or C#, with ability to translate security requirements into technical implementations
  • •Excellent writing, communication, and time management skills
  • •Minimum of 6 years of experience in Application Security and/or Software Development, with at least 3 years in Application Security
  • •Minimum of 2 years of experience in consulting services or internal security roles requiring effective communication with both technical teams and executive leadership
  • •Bachelor’s degree in a relevant discipline or equivalent experience
Experience:6+ yearsCybersecurityInformation securityAppSecConsulting
Education:Bachelor's
Skills:WritingCommunicationTime managementMentoringProblem-solving
Languages:English
Tech Stack:JavaScriptPythonJavaC++PHPC#Shell

Company Brief

GuidePoint Security
Provides cybersecurity consulting, managed security services, incident response, cloud and network security, and compliance solutions to enterprises and government organizations, helping clients identify, mitigate, and respond to cyber threats across complex environments.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Established Company
Headquarters: Herndon, United States
Founded: 2010
WebsiteLinkedIn