Minimum Education
•    Bachelor’s degree in computer science, Information Security, or a related field. Advanced degree preferred.
•    Relevant certifications such as CISSP, CEH, or OSCP are preferred.
Minimum Experience
•    3+ years of experience in application security, software development, or a related field
Knowledge, Skills, Abilities
•    Ability to conduct thorough code reviews and security testing using tools like Fortify, Veracode, Burp Suite, etc.
•    Ability to develop and implement security requirements and guidelines.
•    Capability to anticipate and mitigate potential security threats and risks.
•    Capacity to train and educate development teams on security best practices.
•    In-depth understanding of web application security concepts, including OWASP Top 10.
•    Familiarity with secure coding practices and secure software development lifecycle (SDLC) methodologies.
•    Proficiency in programming languages such as Java, Python, .NET, or C#.
•    Knowledge of cloud platforms (e.g., AWS, Azure, GCP) and container technologies (e.g., Docker, Kubernetes).
•    Strong analytical and problem-solving skills.
•    Excellent communication and collaboration abilities.
Physical Demands and Work Environment
The physical demands and work environment described here are representative of those that must be met and/or encountered by an employee to successfully perform the essential functions of this job.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
 
#LI-BR1
FlightSafety is an Equal Opportunity Employer/Vet/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability.
Cybersecurity Notice: All official recruiting communication from FlightSafety International will come from an @flightsafety.com email address.  FlightSafety International will never ask for personal or financial information through social media or third-party email providers.