Application Security (AppSec) + AI Engineering
Role summary
This is a 6-month contract role for an Application Security (AppSec) + AI Engineer. The primary focus is on leveraging AI, particularly OpenAI and GitHub Copilot, to enhance application security. Responsibilities include using AI for automated secure code fixes, vulnerability detection, and generating remediation suggestions. The role requires production-level experience deploying AI tools at scale within AppSec pipelines, integrating them with existing tools like Checkmarx, and automating vulnerability remediation. A strong background in Python, exposure to TensorFlow/PyTorch, and experience with JIRA and Confluence are essential. This is a hybrid role requiring 3 days onsite per week.
Title: Application Security (AppSec) + AI Engineering
Location: Iselin, NJ (Main) and other Cyber prime locations like Minneapolis, MN, Chander AZ, Dallas, TX (Los Colinas), Charlotte, NC
Duration: 6 Months Contract with Possible Ext.
Onsite Expectation: 3 days/week (Tuesday–Thursday)
JD:
Core focus:
Application Security (AppSec) + AI Engineering
Strong Application Security background
Hands-on with AppSec tools like:
- Checkmarx (critical)
- Other SAST/DAST tools
AI-driven Code Security & Remediation (production-level experience)
- Using AI to:
- Auto-generating secure code fixes
- Detect vulnerabilities
- Generate code remediation suggestions
- Integrating AI into security workflows
Tools / Platforms
- OpenAI (PRIMARY focus)
- GitHub Copilot
- Cloud-based AI coding tools
Real Use Cases Expected
- Deploying AI tools within AppSec pipelines
- Integrating AI with tools like Checkmarx
- Automating vulnerability remediation
- Improving developer productivity using AI
Required Tech Stack:
- Python
- Exposure to TensorFlow / PyTorch
- Experience with:
- JIRA (tracking)
- Confluence (documentation)
- True Engineer background required
AppSec Tools and AI tooling
- Focus on AppSec AI eng. Deploying AI toolsto complement existing Appsec tools like Checkmarx and Black Duck
- experience in deploying AI tools for AppSec processes, including auto code remediation.
- The role requires experience with models like Copilot, OpenAI, and Entropic Cloud for code remediation.
- Candidates should have production experience implementing AI tools at scale, not just proof of concept (POC) code.
- The role is specific to AppSec AI engineering, not traditional AI engineering roles.
- role involves writing frameworks against AI models to remediate Checkmarx findings, not directly working with Checkmarx queries.
- various AI models.
--------
Thanks.
Regards,
Ashish
Email ID: ashish@Hireontech.com