Senior .NET Developer – Application Security
Indexed description
In This Role, You Will
- Analyze and remediate application security vulnerabilities identified through SAST, DAST, SCA, and penetration testing assessments.
- Implement secure coding practices across .NET applications in alignment with OWASP standards and industry best practices.
- Review, investigate, and resolve security findings generated by tools such as Checkmarx, Fortify, AppScan, SonarQube, and similar platforms.
- Perform root cause analysis of security issues and implement sustainable remediation strategies to prevent recurrence.
- Collaborate with development, architecture, DevOps, and security teams to ensure timely resolution of identified vulnerabilities.
- Support Secure SDLC initiatives and ensure compliance with organizational and client application security requirements.
- Conduct code reviews with a strong focus on security, maintainability, and application performance.
- Contribute to CI/CD pipeline improvements by integrating automated security scanning and remediation processes.
- Provide technical guidance and mentorship on secure development practices and vulnerability prevention.
What You Need To Have To Be Considered
- Bachelor's degree in Computer Science, Information Technology, Software Engineering, or a related field.
- Strong hands-on experience developing enterprise applications using .NET and C#.
- Proven experience identifying, analyzing, and remediating application security vulnerabilities.
- Deep understanding of OWASP Top 10 vulnerabilities, secure coding principles, and application security best practices.
- Experience working with SAST, DAST, SCA, and penetration testing reports.
- Hands-on experience with security scanning tools such as Checkmarx, Fortify, AppScan, SonarQube, or equivalent.
- Experience performing root cause analysis and implementing long-term security fixes.
- Familiarity with CI/CD pipelines and integrating automated security controls within software delivery processes.
- Ability to work independently and begin reviewing and remediating security findings with minimal onboarding support.
- Security-related certifications such as CSSLP, GWAPT, GSEC, Security+, or similar.
- Experience securing applications hosted in cloud environments such as Azure or AWS.
- Knowledge of DevSecOps methodologies and automated compliance frameworks.
- Experience with threat modeling, secure architecture reviews, and security risk assessments.
- Strong communication skills with the ability to influence technical and non-technical stakeholders.
Disclaimer: The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search