technologies. Embed SAST, DAST, SCA, secrets scanning, SBOM/SLSA, and ASPM into CI/CD pipelines. Establish secure authentication and authorization patterns using OAuth/OIDC, SAML, FIDO2, and mTLS. Perform secure code reviews and partner directly with developers on remediation. Prioritize application vulnerabilities using CVSS, EPSS, exploitability … secure coding, and threat modeling. Strong hands-on experience with SAST, DAST, SCA, DevSecOps, and CI/CD security automation. Strong understanding of OAuth, OIDC, SAML, APIs, microservices, authentication, and authorization. Experience building or significantly maturing an enterprise Secure SDLC/AppSec program. Experience with NIST ...