> > Hi,
> > Hope you are doing great!
> >
> >
> > > Position title: Application Security Eng / Developer.
> > >
> > > Remote - can work anywhere in USA.
> > >
> > > 6+ Months
> > >
> > > Insurance client
> > >
> > > PAY Rate: $45/hr on C2C
> > > > Interview Slot for tomorrow. - 0:30 AM to 12:30 PM EST
> > >
> > >
> > > Note: avoid architect and general security roles
> > >
> > >
> > >
> > > Job Description:
> > >
> > > * The customer is an online insurance marketplace for state
> > > sponsored health insurance in the US.
> > >
> > > * They follow OWASP top 10 and Mars-E 2.0 health insurance compliance
> > > standard. There is more visibility for security engineering initiative now
> > > since state health insurance users brought it up in a user conference. They
> > > do get periodic tool based reports (using FOD) and is following process to
> > > have dev engineers look into this.
> > >
> > > * Candidate has to be a solid Security Engineering developer -
> > > Expectation is as below.
> > >
> > > o We need someone who can go to technical depth. For example, some
> > > questions will be around TLS 1.2, misusing XML to delete a file, protecting
> > > cookies, technical depth in XSS, etc.
> > >
> > > * He/she will have to review the vulnerabilities, reproduce the issue,
> > > collaborate with the application dev team and if required remediate the
> > > issue.
> > >
> > > * Experience in Burp Suite is desirable.
> > >
> > > * Desirable if the candidate has a Certified Ethical Hacker (CEH)
> > > Certification.
> >
> >
> > Regards
> > Ajit Rathore
> > InfiCare Technologies| 22375 Broderick Drive #225 Dulles VA 20166 |
> >
703-945-1834 Direct | aj...@infiCareTech.com
> >
www.infiCareTech.com
> > Servicing our clients since 2001 MBE/ DBE Certified in VA, MD, PA, NJ, NC, CA
> > IT Services * Application Development * Mobility Solutions