In this remote role, you will report to the Manager of Application Security and work with software engineers and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC).
You will collaborate with development teams to understand their needs, assess risks, and customize solutions.
You will implement and manage security tools such as SAST, SCA, and DAST, and integrate these solutions into CI/CD pipelines.
You will review applications against common flaws, such as those listed in the OWASP Top 10, and report findings to senior management.
You will work with Risk & Compliance teams on audits, including SOC 2, PCI-DSS, and HIPAA, and recommend relevant policies.
You will define security guardrails through automated tool policies, SLAs, and custom rules.
Requirements:
You must have 5+ years of direct experience in enterprise-level application security, with an understanding of MITRE, OWASP, SafeCode, and risk management methodologies related to integration and software testing.
You should have experience in AppSec or DevSecOps, collaborating with developers to adopt and mature secure development practices, and be proficient with SAST, SCA, DAST, IAST, RASP, and other DevSecOps tools.
A solid background in software development is required, along with familiarity with development lifecycle processes and technologies, including CI/CD pipelines and related technologies such as Git, Jenkins, Maven, Chef, Puppet, Ansible, Nexus, Artifactory, and NPM.
You should have experience overseeing the integration of applications between different teams and systems.
Experience in business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping is also required.
Benefits:
You will receive a great compensation package and bonus plan.
Core benefits include full medical, dental, vision coverage, and a matching 401K.
The position offers a flexible work environment, allowing you to work remotely, in a hybrid model, or in-office.
You will enjoy flexible time off, which includes volunteer time off, vacation, sick leave, and 12 paid holidays.
Experian promotes a people-first culture that emphasizes DEI, work/life balance, development, authenticity, collaboration, wellness, and recognition.