Key Skills: Rapid7 InsightAppSec, Application Security, DAST, CI/CD, DevSecOps, Python, Bash, API Security, SDLC, Vulnerability Management, JIRA, ServiceNow, Cloud-Native Applications, OWASP Top 10, Web Application Security, Security Incident Response, Communication Skills.
Roles & Responsibilities:
- InsightAppSec Implementation & Management: Deploy and configure Rapid7 InsightAppSec for dynamic application security testing (DAST). Manage scan configurations, schedules, and policies for web applications and APIs. Analyze scan results, prioritize vulnerabilities, and coordinate remediation with development teams.
- DevSecOps Integration: Integrate InsightAppSec with CI/CD pipelines (e.g., Jenkins, GitLab, Azure DevOps) to enable DevSecOps practices. Automate vulnerability reporting and ticketing through integrations with tools like JIRA, ServiceNow, or Slack.
- Collaboration & Incident Support: Collaborate with SOC teams to correlate application vulnerabilities with threat intelligence and incident response. Provide support for security incidents involving web applications and APIs.
- Client Engagements & Proposals: Prepare and present RFPs, technical proposals, and solution architectures for application security. Conduct client workshops, demos, and PoCs to showcase InsightAppSec capabilities.
- Security Recommendations & Reporting: Translate technical findings into business-impact narratives for stakeholders. Stay updated on AppSec trends and evaluate complementary tools such as Burp Suite, OWASP ZAP, Veracode, or Checkmarx. Recommend improvements to the organization's application security posture.
Experience Requirements:
- 5-8 years of experience in Application Security, with at least 4 years using Rapid7 InsightAppSec.
- Strong understanding of OWASP Top 10, DAST, and SDLC security best practices.
- Experience with scripting (Python, Bash) for automation and reporting.
- Familiarity with DevOps tools, API security, and cloud-native applications.
- Excellent communication and presentation skills for client-facing roles.
Education : Any Graduation