Vulnerability Remediation Analyst – Application

Current Need

This position will be responsible for driving application vulnerability remediation in all phases of the Software Development Life Cycle (SDLC). They will work with development teams, business groups, and risk management teams to understand the remediation timelines and provide remediation guidance as needed.


Position Description

The qualified candidate will possess a working knowledge of multiple programming languages (C#, Java, Ruby, Python, and .NET) and be able to read and understand code; utilizing that knowledge to assist in remediation of application level vulnerabilities across the deployment process. The individual must have a knowledge of built-in security practices, knowledge of the application remediation lifecycle, have excellent communication and time management skills, and be effective at influencing individuals outside of their reporting structure.


This is a hands-on role that involves evaluating and enforcing application security in all phases of the Software Development Life Cycle (SDLC). This position will work closely with our development teams to define the application security best practices and support the identification, interpretation, and remediation of vulnerabilities across a variety of applications, programming languages, and platforms.


All members of the Vulnerability Management team will work collectively to improve the overall capabilities of identifying and remediating weaknesses in the enterprise by continuously improving the vulnerability management program.


Critical Skills

  • Excellent problem solving and analytical skills
  • Outstanding oral and written communication skills
  • Self-motivation and the ability to work under minimal supervision are a must.
  • Experience with any of the following: Veracode, Synopsys, SonarQube, Sonatype, and other security inspection and analysis solutions.
  • Experience with common SDLC tools: static and dynamic code analysis, open source management, threat modeling, etc.
  • Assist with program assessments ensuring programmatic goals are well documented.
  • Foundational knowledge of information security principles, web applications and a level of familiarity with malicious code and common techniques used by malicious actors.
  • Foundational knowledge of cloud-based infrastructures/software and how they affect security needs.
  • Solid understanding of commonly used web and database technologies, for example, HTTP/HTTPS, HTML, JavaScript, Rails, and SQL.
  • Good working knowledge of industry and commonly adopted secure standards, practices (e.g. applicable NIST standards, CIS, ISO, OWASP, SANS, BSIMM, and CERT)

PLEASE REVERT WITH YOUR CV TO info@lcaconsulting.ie 

Tagline here

New Title

This is a paragraph. Writing in paragraphs lets visitors find what they are looking for quickly and easily. Make sure the title suits the content of this text.

Learn more
by RG309642 14 February 2025
SENIOR FULLSTACK SOFTWARE ENGINEERS (with React but NOT React Native)
by RG309642 14 February 2025
SAILPOINT TECHNICAL LEAD
by RG309642 14 February 2025
BLUE YONDER WMS
by RG309642 14 February 2025
QLIKVIEW ADMINISTRATOR
by RG309642 2 October 2024
FULL-STACK ENGINEER FRONT END
by RG309642 2 October 2024
FULL-STACK SOFTWARE ENGINEER BACK END
by RG309642 23 May 2024
JD EDWARDS DEVELOPER - Permanent Role
by RG309642 14 May 2024
SAP FICO CONSULTANT
by RG309642 25 April 2024
DEVOPS TECHNICAL LEAD
by RG309642 18 April 2024
IT DEVELOPER SCADA
Show More