1

Checkmarx Jobs in Indiana (NOW HIRING)

CNAPP Wiz Engineer

Indianapolis, IN

$56.25 - $75/hr

Checkmarx, Veracode, Snyk, SonarQube (AppSec) * CI/CD platforms (GitHub, GitLab, Jenkins) * Strong understanding of DevOps and Agile methodologies * Security certifications preferred (e.g., CISSP ...

SonarQube, Semgrep, Fortify, Checkmarx - DAST: OWASP ZAP, Burp Suite - SCA: Snyk, Black Duck, Dependabot, Trivy - Others: GitHub Advanced Security, GitLab Ultimate, etc. - Good understanding of OWASP ...

SMTS DevOps, PubSec

Indianapolis, IN · On-site

$46.25 - $63.25/hr

... Checkmarx, SonarQube or Foritfy. • 3+ years hands on experience with monitoring toolset (Splunk, Grafana) • Solid understanding of standard continuous integration processes, including design ...

Checkmarx information

See Indiana salary details

$16

$48

$79

How much do checkmarx jobs pay per hour?

As of Jun 16, 2026, the average hourly pay for checkmarx in Indiana is $48.61, according to ZipRecruiter salary data. Most workers in this role earn between $41.63 and $58.32 per hour, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Checkmarx Application Security Engineer, and why are they important?

To thrive as a Checkmarx Application Security Engineer, you need a solid understanding of secure software development, vulnerability assessment, and application security principles, often supported by a degree in computer science or related field. Experience with the Checkmarx SAST platform, knowledge of CI/CD pipelines, and relevant certifications such as CISSP or CEH are typically required. Strong analytical thinking, communication skills, and the ability to work collaboratively with development teams make someone stand out in this position. These skills are vital for effectively identifying and mitigating security risks in the software development lifecycle, ensuring robust protection of organizational assets.

What are some common challenges faced by professionals working with Checkmarx in an application security role?

Professionals working with Checkmarx often encounter challenges such as integrating the tool into existing CI/CD pipelines, managing false positives in scan results, and maintaining clear communication between security and development teams. Staying up-to-date with evolving vulnerabilities and ensuring that all codebases are consistently scanned can also be demanding. However, these challenges are typically addressed through strong collaboration, continuous learning, and leveraging Checkmarx's robust reporting and integration features.

What is the difference between Checkmarx vs SAST Developer?

AspectCheckmarxSAST Developer
CredentialsSecurity certifications, coding knowledgeSecurity certifications, coding knowledge
Work EnvironmentSecurity teams, development teamsDevelopment teams, security teams
Industry UsageApplication security testing toolsDeveloping and integrating SAST tools
Search IntentCompare security tools and rolesRoles involving static application security testing

Checkmarx professionals focus on using security testing tools like Checkmarx to identify vulnerabilities, while SAST Developers develop and maintain static application security testing (SAST) tools and integrations. Both roles require security and coding expertise but differ in their primary focus—one on utilizing security solutions, the other on creating them.

What is Checkmarx?

Checkmarx is a software security platform that specializes in application security testing. It helps developers and security teams identify vulnerabilities in their code through automated static and interactive application security testing (SAST and IAST). Checkmarx integrates with development pipelines to scan source code, open-source libraries, and APIs, enabling teams to find and fix security issues early in the software development lifecycle. The platform supports a wide range of programming languages and frameworks, making it a popular choice for organizations focused on secure software development.
What are popular job titles related to Checkmarx jobs in Indiana? For Checkmarx jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Checkmarx jobs in Indiana look for? The top searched job categories for Checkmarx jobs in Indiana are:
Infographic showing various Checkmarx job openings in Indiana as of June 2026, with employment types broken down into 85% Full Time, 4% Part Time, and 11% Contract. Highlights an 74% Physical, 7% Hybrid, and 19% Remote job distribution, with an average salary of $101,111 per year, or $48.6 per hour.
CNAPP Wiz Engineer

$56.25 - $75/hr

Other

Medical, Dental, Vision, Life, Retirement

Posted 10 days ago


Job description

Job#: 3032950
Job Description:
Role Overview
Responsible for leading the design, integration, and optimization of enterprise DevSecOps capabilities with a primary focus on Vulnerability Management (VM), Application Security (AppSec), and Cloud-Native Application Protection Platforms (CNAPP). This role serves as a technical leader and strategic advisor driving secure-by-design practices across CI/CD pipelines and application ecosystems.
Partners closely with application engineering, cloud, and platform teams to embed security controls into development workflows, enabling scalable and automated security outcomes across hybrid and multi-cloud environments.
Key Responsibilities
  • Strategic DevSecOps Leadership
    • Lead the design and implementation of DevSecOps frameworks integrating security into CI/CD pipelines (e.g., GitHub Actions, Jenkins, GitLab CI).
    • Act as a trusted advisor to application and platform teams, influencing secure coding, build, and deployment practices.
    • Define and drive security guardrails, standards, and patterns for cloud-native and application environments.
  • CNAPP Platform Ownership (Wiz, Prisma Cloud, etc.)
    • Serve as the primary technical owner for CNAPP platforms, including onboarding, configuration, policy management, and optimization.
    • Develop and maintain runtime, posture management, and vulnerability policies across cloud workloads.
    • Integrate CNAPP insights into engineering workflows, ticketing systems, and reporting dashboards.
  • Vulnerability Management (VM)
    • Drive enterprise VM strategy for cloud, container, and application layers.
    • Advance risk-based prioritization and remediation workflows integrated into CI/CD and developer tools.
    • Partner with engineering teams to reduce mean time to remediation (MTTR) and improve vulnerability posture.
  • Application Security (AppSec)
    • Oversee integration and tuning of SAST, DAST, SCA, and container scanning tools within pipelines.
    • Establish secure SDLC practices, including threat modeling, code review standards, and security testing automation.
    • Provide expert guidance on application-layer vulnerabilities and remediation strategies.
  • CI/CD Security Integration
    • Architect and implement security tooling integrations into CI/CD pipelines, ensuring minimal developer friction.
    • Enable shift-left security practices with automated checks, policy enforcement, and feedback loops.
    • Collaborate with DevOps teams to standardize pipeline security templates and reusable modules.
  • Cross-Functional Collaboration
    • Work closely with cloud engineering, SRE, infrastructure, and application teams to align on security priorities.
    • Influence vendor strategy and tool selection for DevSecOps and CNAPP capabilities.
    • Represent security in architecture reviews, change control boards, and major transformation initiatives.
  • Operational Excellence & Metrics
    • Define and track KPIs such as vulnerability aging, pipeline coverage, and policy compliance.
    • Lead continuous improvement initiatives to enhance automation, scalability, and developer experience.
    • Act as escalation point for complex security and integration challenges.

Minimum Requirements
  • Experience
    • Requires a minimum of 7+ years of experience in DevSecOps, Application Security, Cloud Security, or related domains.
    • Proven experience integrating security into CI/CD pipelines at scale.
    • Hands-on experience administering and optimizing CNAPP platforms (e.g., Wiz, Prisma Cloud).
  • Technical Expertise
    • Strong knowledge across multiple domains, including:
      • Cloud Security (AWS, Azure, Google Cloud Platform)
      • Application Security (SAST, DAST, SCA)
      • Container & Kubernetes Security
      • Vulnerability Management & Risk Prioritization
      • Security Architecture & Design
    • Experience with infrastructure-as-code (IaC) security, API integrations, and automation scripting.
  • Collaboration & Influence
    • Demonstrated ability to partner with engineering teams and influence security adoption without direct authority.
    • Experience driving enterprise-wide security initiatives and standards.

Preferred Qualifications
  • Experience with tools such as:
    • Wiz, Prisma Cloud (CNAPP)
    • Checkmarx, Veracode, Snyk, SonarQube (AppSec)
    • CI/CD platforms (GitHub, GitLab, Jenkins)
  • Strong understanding of DevOps and Agile methodologies
  • Security certifications preferred (e.g., CISSP, CCSP, CSSLP, GWAPT, GCSA)
  • BA/BS in Information Systems, Computer Science, or related field strongly preferred

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.
Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at
Everforth Apex Benefits Overview: Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide.
Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.
If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at or . Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered.
UnitedHealthcare creates and publishes the Transparency in Coverage Machine-Readable Files on behalf of Everforth Apex Systems.