GuidePoint Security LLC
Senior Application Security Consultant, Strategic Services- Remote (Anywhere in the U.S.)
Remote role where the employee must remain based in a particular country.
United States only
Employer listed it 7 weeks ago · Added 5 days ago
Been open since 7 weeks ago. Long-running listings are sometimes left up after the role is filled.
Salary
Not stated
Location
United States only
Timezone
Not stated
Contract
Full-time
Experience
Senior
Category
Software
This employer didn't state pay. Jobs like this usually pay around $180k–$230k a year, a typical range taken from 596 senior-level software roles on Nomaders that do state pay. It's a guide, not an offer.
Remote flexibility
Work from home
This is a remote role, but the employee must be based in United States. It is work from home rather than work from anywhere.
What the employer says
- Source listing states candidate location: "Remote, Professional Services"
- Job description states: "U.S. based"
What Nomaders makes of it
- Payroll and tax are likely handled in that country only
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
Summary
GuidePoint Security offers an inclusive set of strategic Application Security services, including Application Threat Modeling, Application Architecture Reviews, and AppSec/DevSecOps Program Assessments. As a Senior Application Security Consultant within Strategic Services, you’ll deliver these offerings to clients across various industries.
You’ll join GuidePoint’s elite team to perform engagements, communicate with clients, deliver comprehensive reports, and provide remediation guidance. You’ll also contribute to evolving our service offerings in response to emerging threats and client needs.
We’re ideally seeking candidates who have transitioned from software development into application security, bringing practical coding experience and an in-depth understanding of secure software development practices.
Role Requirements
Willingness to travel up to 10%
Delivering Application Security services, including Application Threat Modeling, Application Architecture Reviews, and AppSec/DevSecOps Program Assessments
Author comprehensive assessment deliverables tailored to both technical and managerial audiences detailing technical execution, deficiencies, business impact, and remediation strategies
Understanding of application security landscape, tools, methodologies, and frameworks such as OWASP SAMM, OWASP DSOMM, NIST SSDF, SLSA, NIST AI RMF, and MITRE ATLAS
Deep understanding of application security issues, mitigation strategies, and common security controls
Ability to analyze and understand complex application architectures
Experience working directly within development teams and integrating security into the SDLC
Assist with Practice development, improving offerings, and mentoring team members
Contribute to marketing initiatives via research, speaking, writing, and tool development
Foster client relationships through support, information, and guidance while managing concurrent client engagements
Demonstrates a startup mentality with a highly driven, high-performance approach to work
Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
Education, Credentials, and Experience
Comprehensive hands-on experience using generative AI in automated workflows
Direct hands-on experience in application security service offerings, including application threat modeling, architecture reviews, and AppSec/DevSecOps program assessments
Experience with application security controls, architectures, requirements, and industry standards
Development and/or application architecture design background with understanding of secure implementation practices for cryptography, input validation techniques to prevent injection attacks, and exception management
Operational DevSecOps experience
Requirements
- ·Willingness to travel up to 10%
- ·Delivering Application Security services, including Application Threat Modeling, Application Architecture Reviews, and AppSec/DevSecOps Program Assessments
- ·Author comprehensive assessment deliverables tailored to both technical and managerial audiences detailing technical execution, deficiencies, business impact, and remediation strategies
- ·Understanding of application security landscape, tools, methodologies, and frameworks such as OWASP SAMM, OWASP DSOMM, NIST SSDF, SLSA, NIST AI RMF, and MITRE ATLAS
- ·Deep understanding of application security issues, mitigation strategies, and common security controls
Benefits
No benefits package published with this listing. Ask about it at first interview.
How to apply
- 1Check the flexibility label above, work from home, matches where you plan to live and work.
- 2Tailor your CV to the role at GuidePoint Security LLC, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 5d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
Typically $180k to $230k per year · You'll be taken to the employer's careers page.