Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.

Senior Engineer - Application Security

Company

GEICO

Address , Chevy Chase
Employment type FULL_TIME
Salary
Expires 2023-12-06
Posted at 8 months ago
Job Description
GEICO is seeking an experienced Engineer to provide enterprise support for application security in our hybrid, multi-cloud environments. The Application Security Engineer proactively and holistically leads and supports Application Security activities that guide the design, development and security of code and code repositories for cloud-hosted and open-source applications. Solutions include CICD integrations, SAST, DAST, IAST, SCA, secure cloud platform engineering, automated threat modeling.
Position Description:

Our Application Security Senior Engineer provides the necessary technical skills, analysis and design tasks related to support the development of secure applications that meet business solution needs and aligns with the organization’s architectural governance and standards. The ideal candidate assists with creation of deliverables for managing the organization's portfolio of "to be" and "as is" cloud application security capabilities including systems (applications, processes, information, and technology), shared infrastructure services, shared application services, and components to enable and drive targeted business outcomes.
Position Responsibilities:
As a Senior Engineer, you will
  • Stay up to date with the latest security threats and trends
  • Hands on experience in application and product security tooling and technology such as SAST, DAST, SCA, API, container security, and cloud security posture management
  • Provide guidance and mentorship to junior engineers
  • Develop and implement security policies and procedures
  • Conduct security assessments of our applications and open-source software
  • Participate in incident response and vulnerability remediation efforts
  • Support developers and testers in security activities during product lifecycle such as secure design reviews and threat modeling, security code reviews, security test planning, and security code hardening, to help identify potential vulnerabilities
  • Collaborate with development teams to ensure secure coding practices are followed
  • Identify and mitigate security risks
Qualifications:
  • Understanding of threats, threat modeling, and the applicability to our business systems
  • Proficiency in programming languages such as Java, Python, .NET, JavaScript, or C++
  • Understanding and applied use of OWASP Top 10, NIST CSF, PCI-DSS, etc.
  • Familiar with strategic and emerging security, cloud, and application trends and the practical application of existing and emerging technologies to new and evolving business and operating models
  • Knowledge of various managed and database technologies like such as Cosmos, SQL, MySQL, MongoDB
  • Strong analytical and problem-solving skills
  • Experience with security tools such as vulnerability scanners, penetration testing tools, and SIEM systems
  • Knowledge of web application security, network security, and cloud security
  • Excellent understanding and knowledge of application development life cycle methodologies such as waterfall, spiral, rapid prototyping, incremental, synchronize and stabilize, and DevOps
  • Excellent communication and collaboration skills
Experience:
  • 2+ years of experience working with CICD integrations for Static/Dynamic/Interactive Security Testing, Software Composition Analysis for web and mobile applications
  • 5+ years of experience in application and open-source security
Education:
  • Bachelor’s degree in Computer Science, Information Systems, or equivalent education or work experience
Benefits:
At GEICO, we make sure you have the support and resources to leverage and develop your skills, secure your financial future, and take care of your health and well-being. GEICO continually seeks to provide a workplace where everyone can be their authentic self. To help achieve this goal, we support associate-led Employee Resource Groups that foster a true sense of community. Through GEICO’s competitive benefits offerings and various training and development opportunities, we have you covered with our
Total Rewards Program
  • That includes:
  • Paid Vacation, Sick and Parental Leave
  • Paid Training, Licensures and Certificates
  • Premier Medical, Dental and Vision Insurance with no waiting period**
  • Tuition Assistance including Direct Billing and Reimbursement payment plan options
  • 401(k) Plan
  • Benefits may be different by location. Benefit eligibility requirements vary and may include length of service.
**Coverage begins on the date of hire. Must enroll in New Hire Benefits within 30 days of the date of hire coverage to take effect.
GEICO is proud to be an equal opportunity employer. We are committed to cultivating an environment where equal employment opportunities are available to all associates and job applicants regardless of race, color, religious creed, national origin, ancestry, age, gender, pregnancy, sexual orientation, gender identity, marital status, familial status, disability or genetic information, in compliance with applicable federal, state and local law. GEICO celebrates diversity and believes it is critical to our success. As such, we are committed to recruit, develop and retain the most talented individuals to join our team.
#LI-AW1