Posted 2 months ago
Vulnerability Management & Application Security Liaison SPOC
AI Summary
Acts as the primary SPOC for vulnerability management and application security, triaging infrastructure and full-stack flaws, coordinating cross-functional remediation, and embedding security into CI/CD pipelines.
About this role
Experience: 10+
Contract: Long Term
‼️Only GC, USC‼️
Expanded Key Responsibilities
Infrastructure & Full-Stack Triage
Analyze infrastructure-adjacent flaws by applying a solid understanding of Linux and Windows operating system vulnerabilities.
Oversee containerized security within OpenShift Container Platform (OCP), ensuring image scanning findings are triaged effectively.
Collaborate on data-layer risk, tracking and managing vulnerabilities related to databases (e.g., Oracle, SQL Server, PostgreSQL) and core middleware components (e.g., Apache, Tomcat, WebSphere).
Cross-reference application flaws (Checkmarx/Black Duck) with host-level and container-level vulnerabilities to determine the true, contextual runtime risk.
Automation & Platform Transformation
Track IDP Adoption: Partner with Platform Engineering to ensure development squads migrate to the Internal Developer Platform, standardizing secure guardrails.
Measure AI Security Adoption: Track and report metrics on how effectively developers utilize AI-driven security companions to triage and fix code flaws.
Govern Test Automation: Collaborate with QA and DevOps to embed automated security gates seamlessly into continuous integration pipelines.
Continuous Monitoring: Build dashboards that display automation maturity, remediation velocity, and the reduction of manual security operations. [1]
Cross-Functional Orchestration & Governance
Act as the primary SPOC aligning App Dev, AppSec, and Production Support teams to prioritize and resolve software flaws.
Enforce remediation SLAs ensuring security patches are delivered according to corporate compliance and risk thresholds.
Govern the Exception Management workflow, reviewing developer risk-acceptance requests and documenting temporary business justifications.
Integrate security fixes with Change Management protocols (e.g., ServiceNow) to ensure production support stability remains intact during deployments.
Local & Hybrid Expectations
Work Structure: 2-3 days on-site, 2-3 days remote (Hybrid).
Location Options: Iselin, NJ (Metropark) or Charlotte, NC (Corporate Hub).
Qualifications & Skills
Technical Requirements
AppSec Tooling: Foundational knowledge 3+ years managing workflows in Checkmarx (SAST) and Black Duck (SCA).
Infrastructure Stack: Strong foundational knowledge of Linux, Windows Server, OpenShift Container Platform (OCP), databases, and middleware technologies.
Modern Engineering Frameworks: Practical understanding of Internal Developer Platforms (IDPs) and DevSecOps pipelines.
Automation & AI: Direct experience tracking or managing test automation frameworks and AI-assisted coding/security tools.
Skills
Explore related jobs
More jobs at Delan Associates, Inc
- Senior SQL Performance EngineerFlorham Park, United States
- Azure Cloud Architect (Cloud Migration)Wilmington, United States
- Finance Oracle Fusion ConsultantPalm Beach Gardens, United States
- 6517 - Associate Director Portfolio Management Business B3 IIIEast Hanover, United States
- 6518 - Associate Director Portfolio Management Business B3 IIIEast Hanover, United States
- Senior Backend EngineerAustin, United States
Similar Apache jobs
Jobs in Charlotte
- Per Diem Certified Nurse Midwife (CNM)Oula · Charlotte, North Carolina
Named Sales Director, EastCloudflare · Hybrid
Entry-Level Instrument OperatorAtlas Surveying Inc · Charlotte, North Carolina
Community Manager at Rosewood CommonsNHE, Inc. · Charlotte, North Carolina
Maintenance Supervisor at Rosewood CommonsNHE, Inc. · Charlotte, North Carolina
INTERNAL ONLY: QI Field Lead - Greater CharlottePerformance Point · Charlotte, North Carolina
Browse these categories
Market data for this role
All reports →- SeriesRole reportsOne role family at a time: how many openings, what changed this week, who is hiring, what it pays.
- SeriesSalary reportsWhat employers publish in job postings, by level and workplace. Not self-reported pay.
- Market overviewState of tech hiring, September 2026: up 4.8%Tech hiring rose 4.8% month over month in September 2026, with 411,122 new listings. Customer support and account executive roles led the growth.