Senior Application Security Engineer

The Vanguard Group

Lees (PA)

Hybrid

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

The Vanguard Group is seeking an experienced Application Security professional to help define and implement secure SDLC practices across our enterprise. You will partner with development teams to embed security requirements early in the lifecycle and design controls for APIs, cloud-native apps, containers, and emerging tech.

You will assess vulnerabilities, drive remediation, automate security processes, and develop metrics to measure program maturity, while providing guidance and training to

Qualifications

  • Minimum of five years related work experience.
  • Undergraduate degree in a related field or the equivalent combination of training and experience.
  • Strong experience in Application Security, Secure SDLC, DevSecOps, or Software Engineering.
  • Hands-on experience securing CI/CD pipelines and modern application development environments.
  • Experience with application security technologies including SAST, SCA, IAST, DAST, API Security, and Container Security.
  • Experience working with cloud platforms and cloud-native technologies.
  • Strong understanding of secure coding principles, vulnerability management, and application risk assessment.
  • Experience partnering with development teams to remediate security findings.
  • Experience designing and implementing security automation solutions.
  • Strong communication, collaboration, and problem-solving skills.

Responsibilities

  • Define and implement Application Security strategy and secure SDLC practices across the organization.
  • Partner with development teams to establish security requirements early in the software development lifecycle.
  • Design and implement security controls and guardrails that support continuous and secure application delivery.
  • Develop and maintain security standards and architecture patterns for APIs, cloud-native applications, containers, serverless platforms, and emerging technologies.
  • Assess, prioritize, and drive remediation of application and infrastructure vulnerabilities identified through SAST, SCA, IAST, DAST, container, and cloud security solutions.
  • Configure, integrate, and onboard teams to application security tools across CI/CD environments.
  • Automate security processes and controls to improve efficiency, scalability, and developer adoption.
  • Conduct security reviews, threat analysis, and risk assessments for new and existing applications.
  • Partner with developers to identify root causes of vulnerabilities and provide remediation guidance.
  • Ensure application security solutions are properly implemented, integrated, and delivering expected coverage.
  • Develop security metrics, reporting, and dashboards to measure program effectiveness and maturity.
  • Provide secure coding guidance, technical consultation, and training to development and cloud engineering teams.
  • Maintain documentation for security controls, processes, standards, and operational procedures.
  • Stay current with industry trends, emerging threats, and guidance from organizations such as OWASP, NIST, and SANS.
  • Support enterprise application security standards, policies, and governance initiatives.

Skills

Application Security
Secure SDLC
DevSecOps
CI/CD pipelines
SAST
SCA
IAST
DAST
API Security
Container Security
Cloud platforms
Secure coding
Vulnerability management
Threat analysis

Education

Undergraduate degree in a related field

Job description

The Vanguard Group is seeking an experienced Application Security professional to help define and implement secure SDLC practices across our enterprise. You will partner with development teams to embed security requirements early in the lifecycle and design controls for APIs, cloud-native apps, containers, and emerging tech.

You will assess vulnerabilities, drive remediation, automate security processes, and develop metrics to measure program maturity, while providing guidance and training to

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Strategist
Application Security Strategist

The Vanguard Group • Malvern

Hybrid
USD 120,000 - 190,000
Senior Application Security Engineer: SDLC & DevSecOps Expert
Senior Application Security Engineer: SDLC & DevSecOps Expert

Vanguard • Malvern

Hybrid
USD 120,000 - 160,000
Application Security Architect – Secure SDLC & Cloud
Application Security Architect – Secure SDLC & Cloud

Vanguard • Town of Charlotte (NY)

Hybrid
USD 140,000 - 180,000
Health and wellness benefits
Hybrid work model
Pioneer/long-term investment in your未来
Application Security Engineer — Hybrid, SDLC & CI/CD Focus
Application Security Engineer — Hybrid, SDLC & CI/CD Focus

Vanguard • Charlotte (NC)

Hybrid
USD 110,000 - 160,000
Senior Application Security Engineer
Senior Application Security Engineer

Vanguard • Malvern

Hybrid
USD 120,000 - 160,000
Senior Application Security Engineer
Senior Application Security Engineer

Vanguard • Charlotte (NC)

Hybrid
USD 110,000 - 160,000
Application Security, Specialist
Application Security, Specialist

The Vanguard Group • Malvern

Hybrid
USD 120,000 - 190,000
AppSec & Secrets Management Architect
AppSec & Secrets Management Architect

Vanguard • Malvern

Hybrid
USD 130,000 - 180,000
Health and wellness benefits
Work‑life balance
Investment in your future
+1
Application Security, Specialist
Application Security, Specialist

Vanguard • Town of Charlotte (NY)

Hybrid
USD 140,000 - 180,000
Health and wellness benefits
Hybrid work model
Pioneer/long-term investment in your未来
Application Security, Specialist
Application Security, Specialist

The Vanguard Group • Lees (PA)

Hybrid
USD 120,000 - 180,000