Job Information
FLIGHTSAFETY INTERNATIONAL, INC. Application Security Analyst in Grove City, Ohio
About FlightSafety International FlightSafety International is the world's premier professional aviation training company and supplier of flight simulators, visual systems and displays to commercial, government and military organizations. The company provides training for pilots, technicians and other aviation professionals from 167 countries and independent territories. FlightSafety operates the world's largest fleet of advanced full-flight simulators and award-winning maintenance training at Learning Centers and training locations in the United States, Canada, France and the United Kingdom. Purpose of Position This role involves safeguarding the security of our applications at every stage of development. Responsibilities include conducting code reviews, detecting vulnerabilities, implementing security measures, and offering guidance to developers. The ideal candidate should possess a solid background in software development coupled with expertise in security best practices and technologies. Tasks and Responsibilities * Conduct meticulous code reviews to identify security vulnerabilities and design flaws. * Work closely with development teams to address security issues promptly. * Perform static and dynamic application security testing (SAST, DAST) to uncover vulnerabilities. * Provide hands-on support in remediating security vulnerabilities identified in applications. * Facilitate security training and awareness sessions for development teams. * Respond to security incidents promptly, conducting thorough root cause analysis. * Collaborate with architects and developers to devise and implement secure application architectures. * Research and evaluate emerging security technologies and tools to enhance our security infrastructure. * Develop and enforce security requirements, guidelines, and best practices for application development. * Participate in threat modeling exercises to anticipate potential security threats and risks. * Create comprehensive documentation outlining application security processes and procedures. Minimum Education * Bachelor's degree in computer science, Information Security, or a related field. Advanced degree preferred. * Relevant certifications such as CISSP, CEH, or OSCP are preferred. Minimum Experience * 3+ years of experience in application security, software development, or a related field Knowledge, Skills, Abilities * Ability to conduct thorough code reviews and security testing using tools like Fortify, Veracode, Burp Suite, etc. * Ability to develop and implement security requirements and guidelines. * Capability to anticipate and mitigate potential security threats and risks. * Capacity to train and educate development teams on security best practices. * In-depth understanding of web application security concepts, including OWASP Top 10. * Familiarity with secure coding practices and secure software development lifecycle (SDLC) methodologies. * Proficiency in programming languages such as Java, Python, .NET, or C#. * Knowledge of cloud platforms (e.g., AWS, Azure, GCP) and container technologies (e.g., Docker, Kubernetes). * Strong analytical and problem-solving skills. * Excellent communication and collaboration abilities. Physical Demands and Work Environment The physical demands and work environment described here are representative of those that must be met and/or encountered by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability. FlightSafety is an Equal Opportunity Employer/Vet/Disabled.