- Implement, operationalize, and troubleshoot SAST platforms in client environments.
- Design and integrate automated security testing into CI/CD pipelines.
- Author and adapt custom SAST rules, and triage, validate, and guide remediation of identified vulnerabilities.
- Advise client development teams on OWASP Top 10, threat modeling, and secure coding practices throughout the SDLC.
- Use AI-assisted tooling to accelerate rule development, triage, and remediation guidance.
- Contribute reusable pipeline patterns, rule libraries, and delivery accelerators for the AppSec practice.
- Deliver client engagements across the Northeast/Mid-Atlantic region, with occasional on-site presence as needed.
CI/CDGitHub Actions