onsite
Senior Application Security Engineer - Nutrien
Security Engineer
Lead application security initiatives, designing and enforcing secure coding practices, threat modeling, and automated security testing across the product lifecycle using OWASP, static/dynamic analysis, and penetration testing tools.
About the role
Key Responsibilities
- Define and enforce secure coding standards and secure SDLC processes across multiple development teams.
- Conduct threat modeling, risk assessments, and security architecture reviews for new and existing applications.
- Perform static and dynamic code analysis, penetration testing, and vulnerability remediation to ensure compliance with industry best practices.
- Integrate security automation into CI/CD pipelines, leveraging tools such as Burp Suite, OWASP ZAP, and SAST/DAST solutions.
- Collaborate with product, DevOps, and infrastructure teams to remediate findings and improve overall security posture.
Requirements
- 5+ years of experience in application security, with a strong background in secure coding, threat modeling, and vulnerability management.
- Hands‑on expertise with OWASP Top 10, SAST/DAST tools, and penetration testing frameworks.
- Proficient in secure design principles, secure architecture, and risk mitigation strategies.
- Excellent communication skills, able to translate technical findings into actionable recommendations for non‑technical stakeholders.
- Experience with cloud security fundamentals (AWS, Azure, or GCP) is a plus.
Skills
penetration testing