Exposure Intelligence Analyst – Applications & APIs (OWASP / SAST-DAST / Auth)
Core
Translate application and API security findings into exposure intelligence and exploitability-based prioritization to reduce exploitable attack paths.
Role type
Senior IC application security analyst (API/AppSec SME)
Builds
Prioritized remediation guidance for web applications, APIs, and authentication flows
Domain
Cybersecurity, Application Security, API Security
Required skills
Application security, API security, Web application security, Authentication, Vulnerability triage, Secure SDLC, Attack path analysis, Remediation guidance
Preferred skills
SAST/DAST tools, OAuth/OIDC patterns, API gateways, Microservices architecture
Technologies
OWASP, SAST, DAST, OAuth, OIDC
Responsibilities
Identify attack paths involving auth flaws and insecure APIs; Produce clear remediation guidance and partner with app owners; Identify systemic patterns like broken auth and injection paths; Translate technical findings into business risk and engineering fixes
Seniority
Senior, hands-on IC