πUnited Kingdom
Senior Application Security Engineer
closed
Experian
πRemote - United States
Summary
Join Experian as a remote Application Security Engineer, reporting to the Director of Application Security. You will collaborate with software engineers and leadership to identify and mitigate security risks within the Secure Development Lifecycle (SDLC). Your responsibilities include collaborating with development teams, implementing and managing security tools, reviewing applications for vulnerabilities, working with Risk & Compliance teams on audits, and defining security guardrails. This role requires 5+ years of experience in enterprise-level application security, proficiency with various security tools, and a strong understanding of software development and CI/CD pipelines.
Requirements
- 5+ years of direct experience in enterprise-level application security, with a strong understanding of MITRE, OWASP, SafeCode, and risk management methodologies related to integration/software testing
- Experience in AppSec or DevSecOps, collaborating with developers to adopt and mature secure development practices
- Proficiency with SAST, SCA, DAST, IAST, RASP, and other DevSecOps tools, including deploying, maintaining, operating, and improving these tools
- Solid background in software development, familiar with development lifecycle processes and technologies
- Experience with CI/CD pipelines and related technologies (e.g., Git, Jenkins, Maven, Chef, Puppet, Ansible, Nexus, Artifactory, NPM) and cloud-based architectures
- Experience overseeing the integration of cross-functional applications between disparate business units and systems
- Expertise in business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
- Project management skills and substantial exposure to project-based work structures and lifecycle models
- Experience understanding and addressing end-user needs and requirements
Responsibilities
- Collaborating with development teams to understand their needs, assess risks, and customize solutions
- Implementing and managing security tools (SAST, SCA, DAST) and integrating solutions into CI/CD pipelines
- Reviewing applications against common flaws (e.g., OWASP Top 10) and providing visibility to senior management
- Working with Risk & Compliance teams on audits (e.g., SOC 2, PCI-DSS, HIPAA) and recommending relevant policies
- Defining security guardrails through automated tool policies, SLAs, and custom rules
Benefits
- Great compensation package and bonus plan
- Core benefits including full medical, dental, vision, and matching 401K
- Flexible work environment, ability to work remote, hybrid or in-office
- Flexible time off including volunteer time off, vacation, sick and 12-paid holidays
This job is filled or no longer available
Similar Remote Jobs
πUnited States
πSpain
πPoland
π°$145k-$167k
πUnited States
π°$189k-$211k
πUnited States
πUnited States
πUnited States
π°$192k-$248k
πWorldwide
π°$125k-$170k
πWorldwide