Application Security Engineer
Role:-Application Security EngineerLocation:-Atlanta-GA 5 days onsiteDuration:-6 months contract-Primary Need:-Reduce backlog of application security vulnerabilities.~400 WordPress websites to secure.Majority of work is remediating vulnerable plugins, custom code, and third-party packages.Maintain Ruby API (Gem updates); Python API experience is transferable.Secondary Focus:-Ongoing application security within GCP (and some AWS/Kubernetes).~20% of websites have migrated.Help secure CI/CD pipeline, security keys, and infrastructure as code.Day-to-Day:-Work alongside developers, but not embedded on a dev team.Review vulnerability scans and recommend/fix remediations.Maintain PCI compliance for payment pages.Less feature development, more security-focused engineering.Technical Environment:-WordPressJavaScript / TypeScriptPHPRuby (nice to have)React or AngularGCP, AWS, KubernetesCI/CDSecurity scanning tool called Wiz (or similar file system vulnerability scanner).What They're Looking ForStrong AppSec engineer with development background.Must understand JavaScript/front-end code enough to identify and remediate vulnerabilities.WordPress security experience is the biggest priority.Ruby not required if they have comparable Python/API experience.Team is roughly 30% onsite / 70% remote.