Overview

Role description:

We are seeking a highly experienced C# Code Review Engineer with deep expertise in secure coding practices and code security reviews. This role involves both hands-on development and active participation in security-focused code reviews, working closely with development and security teams to ensure high standards in application security and software quality.

What will you gain?

We are committed to ensuring everyone can flourish in their roles by creating a working environment that supports wellbeing and provides a generous benefits package, a wide range of career and personal development opportunities. By joining Evoca, you will get:
• health insurance;
• travel insurance;
• favorable terms of Evoca products and services;
• holiday and year-end bonuses;
• bonuses on marriage, birth of a child;
• paid days off;
• sport package;
• English language trainings;
• large opportunities for continuous learning and development (participation in international conferences, business trips abroad, opportunities to get international certifications and study in top universities worldwide).

Responsibilities:
What will you be doing?

• develop secure, scalable, and maintainable applications using C# and the .NET Core/.NET 6+ framework;
• conduct security code reviews to identify vulnerabilities such as SQL Injection, XSS, and insecure deserialization, and recommend remediation strategies;
• implement and enforce secure coding standards across the development team to ensure consistent and safe practices;
• collaborate with Application Security (AppSec) teams and participate in threat modeling and security design reviews;
• integrate static analysis tools (e.g., SonarQube, Fortify, Snyk) into CI/CD pipelines and analyze the results for actionable insights;
• Lead by example by writing clean, secure, and testable code that aligns with industry best practices;
• mentor team members on secure development practices and participate actively in peer code reviews to maintain code quality;
• stay up to date with application security trends, including OWASP Top 10, CWE/SANS, and emerging threats.
Required Qualifications:
What skills are we looking for?

• higher education;
• at least 5 years of work experience in C# / .NET software development;
• strong knowledge of .NET security features, including authentication;
• hands-on experience conducting manual and automated code reviews for security vulnerabilities;
• familiarity with secure coding guidelines, such as those from OWASP, Microsoft SDL, or NIST;
• experience with static and dynamic analysis tools (e.g., Fortify, Checkmarx, Veracode, SonarQube);
• solid understanding of common attack vectors and mitigations (e.g., input validation, output encoding, proper logging;
• familiarity with secure API development (e.g., rate limiting, JWT handling, HTTPS enforcement);
• ability to work in a team;
• excellent knowledge of English and Russian.
Please note: Our intelligent job search engine discovered this job and republished it for your convenience. Please be aware that the job information may be incorrect or incomplete. The job announcement remains the property of its original publisher. To view the original job and its full details, please visit the job's URL on the owner’s page.

Please clearly mention that you have heard of this job opportunity on https://ijob.am.