Applications Security Solutions Engineer
Why This Role Stands Out
This hybrid role offers a significant opportunity to elevate your application security expertise within a reputable financial institution, directly contributing to the protection of critical systems. You'll thrive here if you're a proactive security professional eager to collaborate with development and risk teams, continuously expanding your skills in a dynamic environment. Apply now to shape the future of application security and gain invaluable experience.
Quick Overview
Job Description
Application Security Engineer (Contract-to-Hire, Hybrid)
Our client, a leading financial institution, is seeking an experienced Application Security Engineer for a 6-month contract-to-hire opportunity. This role follows a hybrid schedule with four days onsite and one day remote each week. The ideal candidate will play a key role in securing internally developed, acquired, and third-party applications while partnering closely with development, DevOps, risk management, and information security teams.
Key Responsibilities
-
Perform and support application security testing, including SAST, DAST, and SCA.
-
Review, validate, and track remediation of identified vulnerabilities.
-
Conduct and support application penetration testing, including oversight of remediation efforts and reporting of metrics.
-
Coordinate internal and third-party penetration tests; review findings and contribute to remediation planning.
-
Mentor development teams on secure coding practices and embed security throughout the SDLC.
-
Provide threat modeling support and secure design guidance.
-
Assist in securing AI-enabled applications, including evaluating data and model risks.
-
Review application architectures for security vulnerabilities and compliance risks.
-
Support audits and ensure adherence to regulatory requirements.
-
Maintain and enhance application security standards and best practices.
Additional Responsibilities
-
Ensure compliance with organizational policies, procedures, and federal/state regulations.
-
Utilize Microsoft Office and relevant tools to improve workflow efficiency.
-
Collaborate effectively within a team environment.
-
Work with on-site systems and equipment as required.
Qualifications
-
High School Diploma or equivalent required.
-
5–6 years of experience in application security.
-
5–6 years of experience within the financial services industry.
-
5–6 years of hands-on or supporting experience with penetration testing.
Certifications
-
CSSLP, GWAPT, or OSCP (required upon hire).
-
CompTIA Security+ or CISSP (required upon hire).
Additional Requirements
-
This role is not open to C2C, third-party vendors, visa sponsorship, or student EAD candidates.
Skills
Similar jobs
Sr. Principal Industrial Security Analyst ( 13968-1) with Security Clearance
Northrop Grumman · Roy, United States
22 minutes ago$101.4k - $152.2k/yrPrincipal/Sr Principal Cyber Systems Engineer with Security Clearance
Northrop Grumman · Gilbert, United States
22 minutes ago$125.3k - $187.9k/yrSr Principal Cyber System Security Engineer - 18310 with Security Clearance
Northrop Grumman · Roy, United States
22 minutes ago$122.8k - $184.2k/yrSecurity / Integration Engineer
Enexus Global · Oakland, United States
42 minutes agoAzure Security Engineer
Modern Agile Technologies, LLC · United States
42 minutes agoPrincipal / Senior Principal Cyber Systems Engineer with Security Clearance
Northrop Grumman · Los Angeles, United States
43 minutes ago$125.3k - $187.9k/yr