Vice President, Senior Application Security Engineer
About the Company
Internationally recognized banking group
Industry
Financial Services
Type
Subsidiary of a Public Company
Founded
1996
Employees
10,001+
Categories
Financial Services
Consulting & Professional Services
Banking & Mortgages
Banking
Finance
Specialties
advisory
capital markets & investment banking
corporate & institutional client banking
derivatives
equity research
sales & trading
fx / treasury services
global trade finance
lease finance
leveraged finance
mergers & acquisitions
project finance
and real estate finance
Business Classifications
B2B
B2C
Enterprise
About the Role
The Company is seeking a Senior Application Security Engineer with a Vice President level of experience. The successful candidate will be tasked with ensuring that all code scanning vulnerabilities align with organizational policies and will work closely with developers to address issues before code is released to production. This role requires a strong development background, the ability to communicate code deficiencies to stakeholders in various programming and scripting languages, and expertise in resolving complex problems within the framework of established security policies and guidelines. The Senior Application Security Engineer will also be responsible for interfacing with development and security architecture teams on application security topics, as well as with the vulnerability management team to ensure proper reporting and validation of identified vulnerabilities.
Applicants must have a minimum of 7 years' experience in application security or application penetration testing, with a focus on SAST, DAST, and container security issues. A deep understanding of secure software development lifecycle, OWASP Top 10, and common software threats and mitigations is essential. The role demands a detail-oriented individual with the ability to create and maintain process documentation, and experience with Jira/Confluence is required. The ideal candidate will have a background in programming languages such as C#, C++, Java, Python, and .Net, and the ability to write code fixes and automation scripts. Bug bounty and penetration testing experience is a bonus. The position may involve weekend and night work based on project and business needs.
Hiring Manager Title
SMBC AD Head of Application Security
Travel Percent
Less than 10%
Functions
Engineering
Information Technology