{"schemaVersion":"jobsearcher.job.v1","id":"2964c6e9be687a82de4e970b","url":"https://jobsearcher.com/jobs/2964c6e9be687a82de4e970b","canonicalUrl":"https://jobsearcher.com/jobs/2964c6e9be687a82de4e970b","title":"DevSecOps Application Security Engineer","description":"Role: DevSecOps Application Security EngineerLocation: Richardson, TX(Hybrid)Full TimeJob DescriptionIn the assigned Job Role of Infrastructure Consultant 2, your Area Of Responsibility will be as below:⦁ Collaborate with internal and client teams to resolve complex incidents, conduct root cause analyses, and document findings with preventive recommendations⦁ Participate in evaluation of client IT infrastructure, prepare actionable assessment reports, and support due diligence to document infrastructure maturity and improvement opportunities⦁ Contribute to the design of scalable, cost-effective IT infrastructure solutions, review reusable components, and develop technical documentation for deployed systems⦁ Align release schedules and environment readiness, execute deployments as per protocols, perform post-deployment testing, and manage version control to track changes⦁ Co-ordinate maintenance schedules, emergency fixes, and technology upgrades while ensuring uninterrupted integration into existing systems and processes⦁ Facilitate performance data analysis across systems, coordinate insights on system behavior, and support capacity planning to optimize performance⦁ Conduct security checks, recovery drills, and compliance audits, implement security measures, and coordinate continuity plans to maintain adherence to standards⦁ Gather feedback to identify automation opportunities, analyze existing infrastructure processes, and propose enhancements for efficiency gains⦁ Act as liaison with onsite, offshore, and vendor teams to document project requirements, ensuring effective collaboration⦁ Develop a centralized repository of technical and procedural knowledge, leveraging insights from other projects to drive efficiency and retain organizational expertiseYour contribution to the team:⦁ A collaborative spirit and excellent communication skills.⦁ Ability to handle complex incidents and implement resolutions⦁ A knack for conducting IT infrastructure assessment and identifying key optimization opportunities⦁ Focused approach towards deployment management, system optimization, and process automation initiatives including sector specific focus⦁ The ability to work with cross-functional teamsRequired Skill and Experience• Application Security Testing: Conduct SAST/SCA using GHAS and DAST using Burp Suite; validate and classify vulnerabilities aligned with OWASP.• DevSecOps & Integration: Integrate GHAS into CI/CD, automate scans across SDLC, configure policies, reduce false positives, and enable shift-left security with development teams.• Vulnerability Management: Analyze findings, provide remediation guidance, track vulnerabilities through lifecycle, and support risk-based prioritization.• Reporting & Stakeholder Management: Prepare technical and executive reports, communicate findings with stakeholders, and support audits, compliance, and AppSec initiatives.Preferred Skill and Experience• Security Advisory & Review: Conduct secure code reviews and architecture level assessments; Coordinate with development teams on secure coding and mitigation strategies.• Knowledge Of: SDLC and DevSecOps practices, microservices/API/cloud security, strong analytical/problem-solving skills, and stakeholder communication/consulting experience.Good to Have:• Exposure to SAST (Fortify, SonarQube), DAST (Netsparker, Fortify on Demand), and SCA (BlackDuck, Dependabot) tools• Certifications: CEH, OSCP, GWAPT, CSSLP, CISSP• Experience in threat modeling and architecture reviewsEEO/About UsBenefitsAlong with competitive pay, as a full-time employee you are also eligible for the following benefits:Medical/Dental/Vision/Life InsuranceLong-term/Short-term DisabilityHealth and Dependent Care Reimbursement AccountsInsurance (Accident, Critical Illness , Hospital Indemnity, Legal)401(k) plan and contributions dependent on salary levelPaid holidays plus Paid Time Off","company":"NeerInfo Solutions","rawCompany":"neerinfo solutions","city":"Richardson","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-09-04T08:24:25.889Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"DevSecOps Application Security Engineer","description":"Role: DevSecOps Application Security EngineerLocation: Richardson, TX(Hybrid)Full TimeJob DescriptionIn the assigned Job Role of Infrastructure Consultant 2, your Area Of Responsibility will be as below:⦁ Collaborate with internal and client teams to resolve complex incidents, conduct root cause analyses, and document findings with preventive recommendations⦁ Participate in evaluation of client IT infrastructure, prepare actionable assessment reports, and support due diligence to document infrastructure maturity and improvement opportunities⦁ Contribute to the design of scalable, cost-effective IT infrastructure solutions, review reusable components, and develop technical documentation for deployed systems⦁ Align release schedules and environment readiness, execute deployments as per protocols, perform post-deployment testing, and manage version control to track changes⦁ Co-ordinate maintenance schedules, emergency fixes, and technology upgrades while ensuring uninterrupted integration into existing systems and processes⦁ Facilitate performance data analysis across systems, coordinate insights on system behavior, and support capacity planning to optimize performance⦁ Conduct security checks, recovery drills, and compliance audits, implement security measures, and coordinate continuity plans to maintain adherence to standards⦁ Gather feedback to identify automation opportunities, analyze existing infrastructure processes, and propose enhancements for efficiency gains⦁ Act as liaison with onsite, offshore, and vendor teams to document project requirements, ensuring effective collaboration⦁ Develop a centralized repository of technical and procedural knowledge, leveraging insights from other projects to drive efficiency and retain organizational expertiseYour contribution to the team:⦁ A collaborative spirit and excellent communication skills.⦁ Ability to handle complex incidents and implement resolutions⦁ A knack for conducting IT infrastructure assessment and identifying key optimization opportunities⦁ Focused approach towards deployment management, system optimization, and process automation initiatives including sector specific focus⦁ The ability to work with cross-functional teamsRequired Skill and Experience• Application Security Testing: Conduct SAST/SCA using GHAS and DAST using Burp Suite; validate and classify vulnerabilities aligned with OWASP.• DevSecOps & Integration: Integrate GHAS into CI/CD, automate scans across SDLC, configure policies, reduce false positives, and enable shift-left security with development teams.• Vulnerability Management: Analyze findings, provide remediation guidance, track vulnerabilities through lifecycle, and support risk-based prioritization.• Reporting & Stakeholder Management: Prepare technical and executive reports, communicate findings with stakeholders, and support audits, compliance, and AppSec initiatives.Preferred Skill and Experience• Security Advisory & Review: Conduct secure code reviews and architecture level assessments; Coordinate with development teams on secure coding and mitigation strategies.• Knowledge Of: SDLC and DevSecOps practices, microservices/API/cloud security, strong analytical/problem-solving skills, and stakeholder communication/consulting experience.Good to Have:• Exposure to SAST (Fortify, SonarQube), DAST (Netsparker, Fortify on Demand), and SCA (BlackDuck, Dependabot) tools• Certifications: CEH, OSCP, GWAPT, CSSLP, CISSP• Experience in threat modeling and architecture reviewsEEO/About UsBenefitsAlong with competitive pay, as a full-time employee you are also eligible for the following benefits:Medical/Dental/Vision/Life InsuranceLong-term/Short-term DisabilityHealth and Dependent Care Reimbursement AccountsInsurance (Accident, Critical Illness , Hospital Indemnity, Legal)401(k) plan and contributions dependent on salary levelPaid holidays plus Paid Time Off","datePosted":"2026-09-04T08:24:25.889Z","dateModified":"2026-09-04T08:24:25.889Z","hiringOrganization":{"@type":"Organization","name":"NeerInfo Solutions","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Richardson","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"2964c6e9be687a82de4e970b"},"url":"https://jobsearcher.com/jobs/2964c6e9be687a82de4e970b"}}