Hybrid Application Security Specialist

Posted 3 months ago

Apply now

About the role

  • Application Security Specialist securing Vanguard's investment-management software; implement SAST/DAST, API and CI/CD security, and train developers.

Responsibilities

  • Utilize application development, deployment, and security experience to guide Application Security strategy and secure the SDLC
  • Utilize current and emerging security technologies to identify, assess, and remediate application vulnerabilities (SAST, SCA, IAST, DAST, Containers, etc.)
  • Configure and onboard teams to dynamic scanning tools across CI/CD environments, including authentication and integration of DAST scanners
  • Design, implement, and continuously refine API security requirements and architecture patterns
  • Ensure proper implementation, coverage, and function of application security solutions
  • Develop and implement strategies to secure cloud, containers, serverless, mobile, and AI/ML technologies
  • Conduct in-depth analysis of vulnerabilities in software and application deployment processes and implement remediation measures
  • Identify and execute opportunities to automate Application Security processes
  • Gather and report metrics from application security solutions to inform program maturity
  • Collaborate with developer community to enhance remediation experience and provide secure coding guidance
  • Provide guidance and training to development and cloud engineering teams on secure coding and deployment best practices
  • Stay up to date on application security practices and maintain documentation
  • Participate in special projects and other duties as assigned

Requirements

  • Undergraduate degree in a related field or equivalent combination of training and experience
  • Strong experience deploying and operating DAST tools, including managing team onboarding, authentication setup, and CI/CD integration
  • Experience with other application security tools (SAST, SCA, IAST, RASP, etc.)
  • Strong knowledge of application development, build, and deployment processes (IDEs, repositories, branching, pipelines, cloud, containers, serverless, etc.)
  • Familiarity with industry standards such as NIST, OWASP, and MITRE
  • Relevant certifications in application development, security, application security, DevSecOps, or cloud are a plus
  • Experience designing and implementing API security requirements and architecture patterns
  • Experience securing cloud, containers, serverless, mobile, and AI/ML technologies
  • Ability to analyze vulnerabilities and propose/implement remediation measures
  • Ability to automate Application Security processes and gather/report metrics
  • Ability to provide guidance and training to development and cloud engineering teams
  • Authorization to work without visa sponsorship (Vanguard is not offering visa sponsorship for this position)

Benefits

  • Hybrid working model for the majority of crew members (enhanced flexibility and in-person collaboration)
  • Opportunities for in-person learning and collaboration
  • Professional development and educational opportunities

Job title

Application Security Specialist

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job