Senior Application Security Engineer

Nomura

New York (NY)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leader in global banking and financial services is seeking a Senior Application Security Engineer in New York. The role focuses on implementing dynamic application security testing and DevSecOps practices. Candidates should have at least 5 years of security experience and a degree in Computer Science. This position involves managing security solutions to protect critical assets and ensuring compliance with industry standards.

Qualifications

  • 5+ years of proven information security experience.
  • Expertise in Dynamic Application Security Testing, Static Application Security Testing, Software Component Analysis.
  • Strong background or keen interest in security frameworks such as NIST and OWASP.

Responsibilities

  • Drive innovation in DevSecOps security automation.
  • Build and maintain a Dynamic Application Security Testing Practice.
  • Support onboarding and scanning of business applications.

Skills

Dynamic Application Security Testing
Application Security Best Practices
DevSecOps
Problem-solving
Interpersonal Skills

Education

Master’s or Bachelor’s degree in Computer Science

Job description

Interested in applying for the Senior Application Security Engineer role at Nomura, a leader in global banking and financial services.

This position is based in New York, NY, and reports directly to the Application Security Lead.

Role Overview

We are looking for a talented and experienced professional to join our team as Senior Application Security Engineer with specific focus on DevSecOps, Dynamic Application Security Testing (DAST, UAT), and related activities. In this role, you will be part of a team leading the design, development, and implementation of robust and scalable application security solutions to protect Nomura’s critical assets. The role is technical and hands‑on and requires a deep understanding of application security practices (SAST, SCA, DAST) and generally the secure software development lifecycle (SDLC). You will play a key role in shaping our information security strategy and ensuring the resilience and effectiveness of application security solutions.

Key Responsibilities
  • Drive innovation in DevSecOps security automation across a global enterprise environment, implementing cutting‑edge solutions and best practices.
  • Build out and maintain a robust Dynamic Application Security Testing Practice, including managing and deploying our DAST tool.
  • Support onboarding and scanning of business applications and related processes.
  • Validate scans and risk‑assess findings (triage, attribution).
  • Read out findings to developers and advise on remediation.
  • Lead strategic partnerships with Application Security development teams to drive adoption of security best practices.
  • Implement robust security practices throughout the application lifecycle.
  • Foster collaborative relationships with key stakeholders to ensure alignment with industry security standards, compliance with regulatory requirements, implementation of robust security frameworks, and adherence to governance protocols.
Skills, Experience, Qualifications and Knowledge Required
  • Master’s or Bachelor’s degree in Computer Science, Information Technology, or related fields.
  • 5+ years of proven information security experience, including expertise in Dynamic Application Security Testing, Static Application Security Testing, Software Component Analysis, OWASP and application security weakness remediation.
  • Strong background or keen interest in security frameworks such as NIST Cybersecurity Framework, SANS security guidelines, OWASP security practices.
  • Professional security certifications preferred and a desire to pursue additional certifications.
  • CISSP and CSSLP certifications listed as preferred.
  • Outstanding analytical and problem‑solving capabilities with proven project management experience.
  • Exceptional interpersonal skills with demonstrated ability to communicate effectively across diverse teams and stakeholder groups.
Seniority level

Mid‑Senior level

Employment type

Full‑time

Job function

Information Technology

Industries

Banking, Capital Markets, and Financial Services

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Developer - Front Office
Senior Developer - Front Office

Nomura Holdings, Inc. • New York (NY)

On-site
USD 225,000 - 250,000
401(k) eligibility
Paid time off
Health benefits
Credit Risk Infrastructure Analyst/Associate
Credit Risk Infrastructure Analyst/Associate

Nomura Holdings, Inc. • New York (NY)

On-site
USD 90,000 - 140,000
Comprehensive medical benefits
401(k) eligibility
Paid time off, including vacation and parental leave
Client Onboarding Associate
Client Onboarding Associate

Nomura • New York (NY)

On-site
USD 95,000 - 125,000
Credit Risk Analyst/Associate
Credit Risk Analyst/Associate

Nomura • New York (NY)

On-site
USD 85,000 - 120,000
Internal Audit Technology - Associate
Internal Audit Technology - Associate

Nomura • New York (NY)

On-site
USD 120,000 - 150,000
Comprehensive benefits package
401(k) eligibility
Paid time off benefits
Global Markets Internal Audit Data Scientist
Global Markets Internal Audit Data Scientist

Nomura Holdings, Inc. • New York (NY)

On-site
USD 130,000 - 150,000
Fund Financing Analyst/Associate
Fund Financing Analyst/Associate

Nomura Holdings, Inc. • New York (NY)

On-site
USD 110,000 - 120,000
Credit Risk Infrastructure Analyst/Associate
Credit Risk Infrastructure Analyst/Associate

Nomura • New York (NY)

On-site
USD 120,000 - 170,000
Lead Data Solutions Architect
Lead Data Solutions Architect

Nomura • New York (NY)

Hybrid
USD 145,000 - 175,000
401(k) eligibility
Medical benefits
Flexible work hours
Senior Cryptography Engineer
Senior Cryptography Engineer

Nomura • United States

Hybrid
USD 120,000 - 150,000