Skills/Experience: 8+ years in Application Security / Secure Code Review (hands-on). Demonstrated experience with manual code review across at least two of: Java/Kotlin, .NET/C#, JavaScript/TypeScript (Node/React), Python, Go. Strong knowledge of OWASP Top 10, OWASP ASVS, Threat Modeling, and secure design principles. Hands-on with SAST/DAST/SCA tools (e.g., SonarQube, Checkmarx, Fortify, Semgrep, Burp Suite, ZAP, Snyk,…