.NET Dev with Security Experience

  • Full-time

Company Description

Webtellect operates with the zeal of a start-up, to provide expert software design and development services to a suite of clients. We are the firm that is passionate about technology, and utilizing such in the pursuit of solving business and real-world challenges. We have various vertical markets we attack offering relevant solutions, and therefore we do not live and breathe in only a "single technology" or "one-technology-fits-all mindset." We have a driving passion for software excellence.  Feathers in our cap includes the development of interactive exhibits for the Visitor Center of the world’s largest philanthropic organization, custom enterprise platform development for the largest U.S. drilling company, Medical Record solutions, and giving back to our community through various programs.

Job Description

Looking for a software developer focused on security to help out with all areas of technology with security in mind. Being a team player and a strong communicator is essential to this role as company software teams work in very different areas of the business. This position requires all the work to be done on site.

Qualifications

  • Hands on senior developer to help with making changes to the application where necessary
  • Expertise in .NET technologies including IIS7 since that's where our more sensitive operations happen (login, purchase)
  • Deep understanding of SDLC software development
  • Code repositories and secrets management
  • Acceptance testing
  • Automated/manual code deployments
  • Has a lot of experience on different methods of compromising websites
  • Understands infrastructure security best practices (CDNs, Load Balancers, WAF)
  • Able to Analyze and correlate data/events across multiple logging platforms (splunk, elastic search, excel docs)
  • Has experience with mitigation solutions for various vulnerabilities
  • Application vulnerabilities
  • Bot attacks
  • Brute force attacks
  • Infrastructure vulnerabilities
  • Can audit current infrastructure and application vulnerabilities to provide standards on best practices
  • Ability to coach development and operations teams as needed

Additional Information

Notes:

  • Local, onsite only
  • No 3rd parties.
  • No Visas allowed
  • Some travel required