... microservices security testing & analysis, Cloud configuration and IaC security reviews. • ... at least one major programming language (e.g., Java, C#, Python, JavaScript). • Practical ...
... microservices security testing & analysis, Cloud configuration and IaC security reviews. • ... at least one major programming language (e.g., Java, C#, Python, JavaScript). • Practical ...
C, C++, Java, Python, MatLab,...) - Currently an junior or senior undergraduate student majoring in Electrical Engineering or Computer Science Preferred Qualifications Experience with the following ...
C, C++, Java, Python, MatLab,...) - Currently an junior or senior undergraduate student majoring in Electrical Engineering or Computer Science Preferred Qualifications Experience with the following ...
Junior Java Microservices Developer information
See Roanoke, VA salary details
$59.9K - $68.8K
4% of jobs
$73.7K is the 25th percentile. Wages below this are outliers.
$68.8K - $77.7K
38% of jobs
The median wage is $82.5K / yr.
$77.7K - $86.6K
15% of jobs
$86.6K - $95.5K
11% of jobs
$100.5K is the 75th percentile. Wages above this are outliers.
$95.5K - $104.5K
14% of jobs
$104.5K - $113.4K
11% of jobs
$113.4K - $122.3K
5% of jobs
$122.3K - $131.2K
1% of jobs
$131.2K - $140.1K
1% of jobs
$140.1K - $149.1K
1% of jobs
$149.1K - $158K
0% of jobs
$59.9K
$104.8K
$158K
How much do junior java microservices developer jobs pay per year?
Full-time
This job post has expired today. Applications are no longer accepted.
Altec rating
8.4
Based on 106 frontline employees who took The Breakroom Quiz
75th of 415 rated machine equipment manufacturers
Job description
Altec is an innovative company specializing in the manufacture, sale, and service of aerial devices and equipment. They are seeking an Application Security Architect to partner with various teams to embed security throughout the software development lifecycle and manage application security risks. The role involves defining secure coding standards, conducting security assessments, and providing guidance on security practices.
Responsibilities:
• Embed application security controls into CI/CD pipelines, including automated SAST, DAST, IAST, SCA, secrets detection, and IaC scanning.
• Establish standardized security controls across platforms.
• Design exceptions and compensating controls.
• Partner with development teams to implement shift-left security while maintaining delivery velocity.
• Define and maintain secure coding standards, security design patterns, and reference architectures.
• Participate in architecture and design reviews, including threat modeling for new applications and major changes.
• Perform research and development (R&D) into existing processes and tooling opportunities
• Identify and assess security risks in web, mobile, API, SaaS, and cloud-native applications developed internally or by third parties.
• Perform or coordinate: Source code reviews (manual and automated), Application vulnerability assessments and penetration tests, API and microservices security testing & analysis, Cloud configuration and IaC security reviews.
• Validate findings, reduce false positives, and prioritize remediation based on business risk.
• Establish reusable security architecture patterns for cloud-native and distributed systems .
• Manage application security findings through a centralized vulnerability or risk management platform.
• Work with development teams to define practical, risk-based remediation guidance.
• Track remediation progress, verify fixes, and support exception/risk acceptance processes.
• Contribute to application security metrics, KPIs, and executive-level reporting.
• Translate technical debt and vulnerabilities into business risk and exposure.
• Assess and manage risks related to open-source dependencies, libraries, and third-party components.
• Support Software Composition Analysis (SCA) and software supply chain security initiatives (e.g., dependency hygiene, SBOMs).
• Evaluate security posture of third-party applications and vendors in collaboration with risk management team.
• Verify compliance with third-party component licensing models
• Lead software compliance activities related to application vulnerabilities, data exposure, or insecure design.
• Support application-related forensic analysis and root-cause investigations.
• Assist with compliance and assurance activities related to secure development (e.g., NIST, ISO, SOC, internal audits).
• Develop and deliver application security training for developers and cybersecurity team
• Provide hands-on guidance and documentation to improve developer security maturity.
• Act as a security champion advocate, helping teams make informed security decisions.
Qualifications:
Required:
• High School Diploma/GED Required
• Bachelor’s Degree (Technical Degree Preferred) and 6 Years Relevant Experience OR 8 Years Relevant Experience
• 1 2+ years of combined experience across software engineering, platform/cloud engineering, application security, & DevSecOps / SRE with strong cybersecurity ownership preferred
• 5 + years in hands-on software engineering or platform/cloud engineering preferred
• 7 + years in application security, DevSecOps, or secure architecture preferred
• Strong understanding of modern SDLCs, Agile, and CI/CD practices.
• Hands-on experience with at least one major programming language (e.g., Java, C#, Python, JavaScript).
• Practical knowledge of: Web, mobile, and API security, Authentication and authorization models (OAuth2, OIDC, JWT, SAML), OWASP Top 10 and API Top 10
• Familiarity with cloud platforms (AWS, Azure, and/or OCI) and cloud-native services.
• Working knowledge of networking fundamentals, encryption, and secure communications.
• Excellent written and verbal communication skills, with the ability to translate security risk into business impact.
Preferred:
• Experience with application security tools such as SAST, DAST, IAST, SCA, secrets scanning, or IaC security platforms.
• Experience securing containers, Docker, and serverless workloads.
• Knowledge of Infrastructure as Code frameworks (e.g., Terraform, CloudFormation).
• Familiarity with threat modeling frameworks (e.g., STRIDE).
• Security or development certifications such as: CSSLP, CISSP, GWAPT, GWEB, OSWE, or equivalent, Cloud security certifications (AWS, Azure, or GCP)
Company:
Altec is a leading provider of products and services to the electric utility, tree care, telecommunications and lights and signs markets. Founded in 1998, the company is headquartered in Birmingham, USA, with a team of 1001-5000 employees. The company is currently Late Stage.