Blog Post

Vulnerability Remediation Analyst – Application

Current Need

This position will be responsible for driving application vulnerability remediation in all phases of the Software Development Life Cycle (SDLC). They will work with development teams, business groups, and risk management teams to understand the remediation timelines and provide remediation guidance as needed.


Position Description

The qualified candidate will possess a working knowledge of multiple programming languages (C#, Java, Ruby, Python, and .NET) and be able to read and understand code; utilizing that knowledge to assist in remediation of application level vulnerabilities across the deployment process. The individual must have a knowledge of built-in security practices, knowledge of the application remediation lifecycle, have excellent communication and time management skills, and be effective at influencing individuals outside of their reporting structure.


This is a hands-on role that involves evaluating and enforcing application security in all phases of the Software Development Life Cycle (SDLC). This position will work closely with our development teams to define the application security best practices and support the identification, interpretation, and remediation of vulnerabilities across a variety of applications, programming languages, and platforms.


All members of the Vulnerability Management team will work collectively to improve the overall capabilities of identifying and remediating weaknesses in the enterprise by continuously improving the vulnerability management program.


Critical Skills

  • Excellent problem solving and analytical skills
  • Outstanding oral and written communication skills
  • Self-motivation and the ability to work under minimal supervision are a must.
  • Experience with any of the following: Veracode, Synopsys, SonarQube, Sonatype, and other security inspection and analysis solutions.
  • Experience with common SDLC tools: static and dynamic code analysis, open source management, threat modeling, etc.
  • Assist with program assessments ensuring programmatic goals are well documented.
  • Foundational knowledge of information security principles, web applications and a level of familiarity with malicious code and common techniques used by malicious actors.
  • Foundational knowledge of cloud-based infrastructures/software and how they affect security needs.
  • Solid understanding of commonly used web and database technologies, for example, HTTP/HTTPS, HTML, JavaScript, Rails, and SQL.
  • Good working knowledge of industry and commonly adopted secure standards, practices (e.g. applicable NIST standards, CIS, ISO, OWASP, SANS, BSIMM, and CERT)

PLEASE REVERT WITH YOUR CV TO info@lcaconsulting.ie 

Tagline here

New Title

This is a paragraph. Writing in paragraphs lets visitors find what they are looking for quickly and easily. Make sure the title suits the content of this text.

Learn more
by RG309642 25 Apr, 2024
DEVOPS TECHNICAL LEAD
by RG309642 18 Apr, 2024
IT DEVELOPER SCADA
by RG309642 26 Mar, 2024
JDE PRODUCT MANAGER
by RG309642 14 Mar, 2024
SAP PTP, OTC SME - MANUFACTURING
by RG309642 14 Mar, 2024
SAP MANAGER WITH EDI
by RG309642 01 Mar, 2024
JD EDWARDS PROJECT MANAGER
by RG309642 01 Mar, 2024
JD EDWARDS DEVELOPER
by RG309642 01 Mar, 2024
JD EDWARDS FINANCIAL CONSULTANT
by RG309642 01 Mar, 2024
JD EDWARDS DISTRIBUTION CONSULTANT
by RG309642 28 Feb, 2024
SAP PMO - Germany
Show More
Share by: