Enter a job title or keyword

Application Security Consultant(5896-1)


Job Location:

New York City, NY - USA

Salary: Not provided by the employer
Experience Required: 5years
Posted: 10 October 2026 (10 hours ago)
Application Deadline: 7 January 2027
Vacancies: 1 Vacancy

Job Summary

Job Title: Application Security Consultant (5896-1)
Location: 2 Broadway - MTA Headquarters

Note: This is an on-site position.

Job Description:
  • The application security consultant role is an on-premises position.
  • The consultant will provide specialized security expertise to support product teams product owners infrastructure and cybersecurity leadership.
  • This role strengthens application security across the SDLC and DevOps through assessments secure architecture reviews tooling optimization and operational governance.
  • The consultant will also play a key role in onboarding configuring tuning and monitoring protections across Akamai and Cloudflare WAF platforms ensuring consistent security coverage across highvalue cloudhosted and externally facing applications.
  • Additionally the consultant is expected to perform technical assessments enabling development teams through tooling and coaching and helping establish repeatable processes metrics and governance.
Technical Skills

1. 5 years Handson experience with Cloudflare WAF (policies rulesets firewall rules bot management DNS DDoS logpush).
2. 4 Handson experience with Akamai WAF (KSD/Property Manager Bot Manager Edge DNS log staging/testing).
3. Deep understanding of OWASP Top 10 application security principles secure development practices.
4. 5 Experience with SAST/DAST/SCA tools such as Checkmarx BurpSuite Fortify or equivalents.
5. Experience analyzing HTTP traffic headers payloads and attack vectors (XSS SQLi RCE deserialization CSRF SSRF etc.).
6. Experience with cloud platforms (Azure AWS SaaS) and modern application architectures.
7. Experience integrating or consuming security telemetry from WAFs scanners SIEM/SOAR and cloud logs to build dashboards and metrics.

About Us:

Since 2000 Tri-Force Consulting Services () has been an MBE/SDB certified IT Consulting
firm in the Philadelphia region. Tri-Force specializes in IT staffing software development (web and mobile apps)
systems integration data analytics system automation cybersecurity and cloud technology solutions for government
and commercial clients. Tri-Force works with clients to overcome obstacles such as increasing productivity
increasing efficiencies through automation and lowering costs. Our clients benefit from our three distinguishing
core values: integrity diligence and technological excellence.
Tri-Force is a six-time winner among the fastest-growing companies in Philadelphia and a four-time winner on the
Inc. 5000 list of the nations fastest-growing companies.




Required Skills:

1. 5 years Handson experience with Cloudflare WAF (policies rulesets firewall rules bot management DNS DDoS logpush). 2. 4 Handson experience with Akamai WAF (KSD/Property Manager Bot Manager Edge DNS log staging/testing). 3. Deep understanding of OWASP Top 10 application security principles secure development practices. 4. 5 Experience with SAST/DAST/SCA tools such as Checkmarx BurpSuite Fortify or equivalents. 5. Experience analyzing HTTP traffic headers payloads and attack vectors (XSS SQLi RCE deserialization CSRF SSRF etc.). 6. Experience with cloud platforms (Azure AWS SaaS) and modern application architectures.


Required Education:

Preferred masters or bachelors in computer science or a related field.