Job Description:
• Caesars is seeking a dynamic and experienced Specialist Application Security Engineer to help lead our efforts in building and maintaining a robust and scalable application security program.
• This role will be pivotal in driving a "shift left" security culture, focusing on integrating security seamlessly into our software development lifecycle (SDLC).
• The ideal candidate will possess deep expertise in automated code scanning and remediation, SAST, DAST, SCA, CI/CD pipeline integration, and a proven track record of building and leading high-performing security engineering teams.
Requirements:
• 8+ years of experience in Cybersecurity or Information Technology
• 5+ years of direct experience focusing on application security and related technologies such as SAST, DAST, and IAST.
• Deep understanding of application security principles, OWASP Top 10, and common vulnerabilities.
• Proven experience in software development, with a strong understanding of secure coding practices and software architecture.
• In-depth knowledge of application security principles, including threat modeling, vulnerability assessment, and secure code review.
• Hands-on experience with security tools such as static and dynamic analysis tools, penetration testing frameworks, and security monitoring solutions.
• Strong experience integrating security testing into CI/CD pipelines using tools like Jenkins, GitLab CI, or Azure DevOps.
• Proficiency in scripting languages (e.g., Python, Bash) and infrastructure-as-code tools (e.g., Terraform, CloudFormation).
• Knowledge of cloud security principles and best practices (AWS, Azure, GCP).
• Relevant certifications such as AWS Certified Security Specialty, CISSP, GCIH, or GCED are preferred.
• Proven ability to mentor, lead, and develop application security engineers.
• Excellent verbal and written communication skills; ability to present technical concepts clearly.
• Strong teamwork skills and the ability to work with diverse teams across the organization.
• Analytical mindset with the ability to troubleshoot complex security issues.
• Ability to thrive in a fast-paced and evolving cybersecurity environment.
Benefits: