
Application Security Engineer
State Street
full-time
Posted on:
Location Type: Hybrid
Location: Austin • Massachusetts • New Jersey • United States
Visit company websiteExplore more
Salary
💰 $120,000 - $202,500 per year
About the role
- Help build our DevSecOps & AppSec Strategy to integrate cybersecurity into the organizational adoption and improvement of agile practices.
- Partner with Engineering teams to implement and operationalize DevSecOps, and AppSec principles and processes.
- Assist application teams with onboarding to the adopted security tools/technologies.
- Assist development community to triage Static Application Security Testing (SAST) vulnerabilities.
- Deliver and communicate reporting via dashboard, and metrics.
- Develop and maintain application security and DevSecOps documentation.
- Assist in the audit processes and provide relevant documentation to close Audit findings.
- Deliver tasks based on project objectives; technically support projects through to completion.
Requirements
- Bachelor’s degree in information technology (IT), computer science, or related field with 6 years of relevant experience.
- Experience in software development and software development lifecycle (SDLC).
- Extensive experience in application security space including SAST, DAST, SCA and Container security scanning.
- Current information security certification, including Certified Information Systems Security Professional (CISSP).
- Experience with automation and orchestration tools, such as Ansible, Terraform, or Kubernetes.
- Knowledge of Infrastructure as Code (IaC) principles and experience in automating deployment and management tasks in a hybrid cloud environment.
Benefits
- retirement savings plan (401K) with company match
- insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
- paid-time off including vacation, sick leave, short term disability, and family care responsibilities
- access to Employee Assistance Program
- incentive compensation including eligibility for annual performance-based awards
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
DevSecOpsAppSecStatic Application Security Testing (SAST)Dynamic Application Security Testing (DAST)Software Composition Analysis (SCA)Container security scanningSoftware development lifecycle (SDLC)Infrastructure as Code (IaC)AutomationOrchestration
Soft Skills
communicationcollaborationreportingdocumentationproblem-solvingproject management
Certifications
Certified Information Systems Security Professional (CISSP)