Know ATS Score
CV/Résumé Score
  • Expertini Resume Scoring: Our Semantic Matching Algorithm evaluates your CV/Résumé before you apply for this job role: Senior Application Security Engineer.
United States Jobs Expertini

Urgent! Senior Application Security Engineer Job Opening In Brooklyn – Now Hiring City of New York

Senior Application Security Engineer



Job description

The Office of Technology and Innovation (OTI) leverages technology to drive opportunity, improve public safety, and help government run better across New York City.

From delivering affordable broadband to protecting against cybersecurity threats and building digital government services, OTI is at the forefront of how the City delivers for New Yorkers in the 21st century.

Watch our welcome video to see our work in action, follow us on social media @NYCOfficeofTech, and visit oti.nyc.gov to learn more.



At OTI, we offer great benefits, and the chance to work on projects that have a meaningful impact on millions of people.

You'll have the opportunity to work with cutting-edge technology and collaborate with other passionate professionals who share your drive and commitment to making a difference through technology.



About New York City Cyber Command
Cyber Command is charged with protecting all City systems against cyber threats, including systems that deliver vital services to New Yorkers.

Headed by the Chief Information Security Officer of the City of New York, we provide in-depth support to over agencies and offices to protect, detect, identify, respond to, and recover from cyber threats.



The Senior Application Security Engineer at NYC Cyber Command plays a pivotal role in safeguarding the city's digital infrastructure by identifying and mitigating security risks in software applications.

Reporting to the Application Security Director, this role involves conducting in-depth security assessments using methodologies like SAST, DAST, and IAST to uncover vulnerabilities in citywide applications.

The engineer will oversee the Software Security Assurance Program (SSAP) to ensure compliance with security standards across all city agencies, including cloud-based applications.

Responsibilities also include developing and enforcing secure coding practices, managing the use of Software Composition Analysis (SCA) tools, and collaborating with cross-functional teams to implement security requirements effectively.

This position is critical in protecting sensitive data, guiding development teams on security principles, and staying ahead of emerging cybersecurity threats.

The Senior Application Security Engineer will also mentor junior team members and contribute to the continuous improvement of the city’s application security posture.



Responsibilities will include:
-Conduct and oversee security assessments, including SAST, DAST, and IAST, to identify vulnerabilities in citywide applications and software systems.


- Develop and enforce application security standards, guidelines, and best practices across all city agencies to ensure a secure development lifecycle.


- Evaluate security risks associated with software applications and prioritize remediation efforts to mitigate potential threats.


- Manage the Software Security Assurance Program (SSAP) to ensure that all software applications meet security standards before deployment.


- Oversee the use of Software Composition Analysis (SCA) tools to identify and manage vulnerabilities in open-source and third-party components used in city applications.


- Act as a liaison between cybersecurity teams, software developers, and other stakeholders to ensure security requirements are understood and implemented effectively.


- Perform security assessments of cloud vendors and services, ensuring that cloud-based applications meet NYC3’s security requirements.


- Provide guidance and training to development teams on secure coding practices and application security principles.


- Contribute to the development and implementation of security policies, procedures, and standards to protect the city’s digital infrastructure.


- Stay up to date with the latest cybersecurity threats, vulnerabilities, and technologies to enhance the security of the city’s applications.


- Mentor junior security engineers and developers on security practices and tools to build a stronger, more knowledgeable team.


- Lead or participate in security-related projects, ensuring timely and effective delivery of security solutions.


- Ensure that application security practices comply with relevant regulations, standards, and guidelines (e.g., NIST, OWASP).
- Handle special projects and initiatives as assigned.

HOURS/SHIFT
Day - Due to the necessary technical duties of this position in a 24/7 operation, candidate may be required to work various shifts such as weekends and/or nights/evenings.



WORK LOCATION
Brooklyn, NY

TO APPLY
* Interested applicants with other civil service titles who meet the preferred requirements should also submit a resume for consideration

Please go to and search for Job ID #

SUBMISSION OF A RESUME IS NOT A GUARANTEE THAT YOU WILL RECEIVE AN INTERVIEW
APPOINTMENTS ARE SUBJECT TO OVERSIGHT APPROVAL

OTI participates in E-Verify

IT SECURITY SPECIALIST -


Minimum Qualifications

A baccalaureate degree from an accredited college and four years of satisfactory full-time experience related to projects and policies required by the particular position; or,

Education and/or experience which is equivalent to 1 above.


Preferred Skills
The preferred candidate should possess the following:- Bachelor’s degrees in computer science or information systems or equivalent experience.

- 8 years of experience in software development and security - Familiarity with programming technologies and logical structures used in web, non-web, native, and mobile software development, including languages like Java, C#, JavaScript, HTML, and others.

- Knowledge of relational databases, web applications and services - Strong understanding of application security principles, including secure coding practices, threat modeling, and vulnerability management.

- Experience with security testing methodologies such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST).

- Knowledge of Software Composition Analysis (SCA) tools and practices to identify and manage open-source components and their associated risks.

- Ability to evaluate security risks in software applications and prioritize remediation efforts based on potential impact.

- Experience integrating security practices into the software development lifecycle, including code reviews, security testing, and continuous integration/continuous deployment (CI/CD) pipelines.

- Understanding of securing applications in cloud environments (e.g., AWS, Azure, Google Cloud) and familiarity with cloud security best practices.

- Proficiency in one or more programming languages (e.g., Java, Python, JavaScript, C#) to understand and review code from a security perspective.

- Experience with DevSecOps practices, including automation of security tasks in CI/CD pipelines and collaboration with development teams.

- Familiarity with relevant security standards and regulations (e.g., OWASP, NIST, HIPAA) and how they apply to application security.

- Experience with a variety of security tools, such as vulnerability scanners, SAST/DAST tools, and application firewalls (WAF).

- Strong problem-solving skills and the ability to think analytically when addressing security challenges.

- Ability to clearly communicate security issues and risks to both technical and non-technical stakeholders.

- A commitment to staying updated with the latest trends, vulnerabilities, and tools in the application security field.

- Relevant certifications such as Certified Ethical Hacker (CEH), GIAC Web Application Penetration Tester (GWAPT) are a plus.
Public Service Loan Forgiveness
As a prospective employee of the City of New York, you may be eligible for federal loan forgiveness programs and state repayment assistance programs.

For more information, please visit the U.S. Department of Education’s website at class=jobad-residencyRequirement>Residency RequirementNew York City Residency is not required for this position


Required Skill Profession

Computer Occupations



Your Complete Job Search Toolkit

✨ Smart • Intelligent • Private • Secure

Start Using Our Tools

Join thousands of professionals who've advanced their careers with our platform

Rate or Report This Job
If you feel this job is inaccurate or spam kindly report to us using below form.
Please Note: This is NOT a job application form.


    Unlock Your Senior Application Potential: Insight & Career Growth Guide


  • Real-time Senior Application Jobs Trends in Brooklyn, United States (Graphical Representation)

    Explore profound insights with Expertini's real-time, in-depth analysis, showcased through the graph below. This graph displays the job market trends for Senior Application in Brooklyn, United States using a bar chart to represent the number of jobs available and a trend line to illustrate the trend over time. Specifically, the graph shows 190418 jobs in United States and 186 jobs in Brooklyn. This comprehensive analysis highlights market share and opportunities for professionals in Senior Application roles. These dynamic trends provide a better understanding of the job market landscape in these regions.

  • Are You Looking for Senior Application Security Engineer Job?

    Great news! is currently hiring and seeking a Senior Application Security Engineer to join their team. Feel free to download the job details.

    Wait no longer! Are you also interested in exploring similar jobs? Search now: .

  • The Work Culture

    An organization's rules and standards set how people should be treated in the office and how different situations should be handled. The work culture at City of New York adheres to the cultural norms as outlined by Expertini.

    The fundamental ethical values are:
    • 1. Independence
    • 2. Loyalty
    • 3. Impartiality
    • 4. Integrity
    • 5. Accountability
    • 6. Respect for human rights
    • 7. Obeying United States laws and regulations
  • What Is the Average Salary Range for Senior Application Security Engineer Positions?

    The average salary range for a varies, but the pay scale is rated "Standard" in Brooklyn. Salary levels may vary depending on your industry, experience, and skills. It's essential to research and negotiate effectively. We advise reading the full job specification before proceeding with the application to understand the salary package.

  • What Are the Key Qualifications for Senior Application Security Engineer?

    Key qualifications for Senior Application Security Engineer typically include Computer Occupations and a list of qualifications and expertise as mentioned in the job specification. Be sure to check the specific job listing for detailed requirements and qualifications.

  • How Can I Improve My Chances of Getting Hired for Senior Application Security Engineer?

    To improve your chances of getting hired for Senior Application Security Engineer, consider enhancing your skills. Check your CV/Résumé Score with our free Tool. We have an in-built Resume Scoring tool that gives you the matching score for each job based on your CV/Résumé once it is uploaded. This can help you align your CV/Résumé according to the job requirements and enhance your skills if needed.

  • Interview Tips for Senior Application Security Engineer Job Success
    City of New York interview tips for Senior Application Security Engineer

    Here are some tips to help you prepare for and ace your job interview:

    Before the Interview:
    • Research: Learn about the City of New York's mission, values, products, and the specific job requirements and get further information about
    • Other Openings
    • Practice: Prepare answers to common interview questions and rehearse using the STAR method (Situation, Task, Action, Result) to showcase your skills and experiences.
    • Dress Professionally: Choose attire appropriate for the company culture.
    • Prepare Questions: Show your interest by having thoughtful questions for the interviewer.
    • Plan Your Commute: Allow ample time to arrive on time and avoid feeling rushed.
    During the Interview:
    • Be Punctual: Arrive on time to demonstrate professionalism and respect.
    • Make a Great First Impression: Greet the interviewer with a handshake, smile, and eye contact.
    • Confidence and Enthusiasm: Project a positive attitude and show your genuine interest in the opportunity.
    • Answer Thoughtfully: Listen carefully, take a moment to formulate clear and concise responses. Highlight relevant skills and experiences using the STAR method.
    • Ask Prepared Questions: Demonstrate curiosity and engagement with the role and company.
    • Follow Up: Send a thank-you email to the interviewer within 24 hours.
    Additional Tips:
    • Be Yourself: Let your personality shine through while maintaining professionalism.
    • Be Honest: Don't exaggerate your skills or experience.
    • Be Positive: Focus on your strengths and accomplishments.
    • Body Language: Maintain good posture, avoid fidgeting, and make eye contact.
    • Turn Off Phone: Avoid distractions during the interview.
    Final Thought:

    To prepare for your Senior Application Security Engineer interview at City of New York, research the company, understand the job requirements, and practice common interview questions.

    Highlight your leadership skills, achievements, and strategic thinking abilities. Be prepared to discuss your experience with HR, including your approach to meeting targets as a team player. Additionally, review the City of New York's products or services and be prepared to discuss how you can contribute to their success.

    By following these tips, you can increase your chances of making a positive impression and landing the job!

  • How to Set Up Job Alerts for Senior Application Security Engineer Positions

    Setting up job alerts for Senior Application Security Engineer is easy with United States Jobs Expertini. Simply visit our job alerts page here, enter your preferred job title and location, and choose how often you want to receive notifications. You'll get the latest job openings sent directly to your email for FREE!