Application Security Engineer (Fintech)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Application Security Engineer (Fintech): Building secure-by-default products and services for an AI-native insurance platform with an accent on threat modeling, automated security guardrails, and secure development practices. Focus on embedding security throughout the SDLC, conducting vulnerability analysis, and ensuring resilience in a highly regulated environment.
Location: Must be based in the U.S. (excluding U.S. territories)
Salary: $175,000 – $215,000
Company
is an insurance technology innovation company backed by State Farm, focused on engineering advanced risk prediction and prevention solutions.
What you will do
- Partner with Product and Engineering teams to integrate security into application design and development.
- Lead threat modeling exercises and identify practical security solutions for complex systems.
- Conduct secure code reviews, application security assessments, and vulnerability analysis.
- Develop and implement automated security guardrails across the SDLC.
- Investigate, prioritize, and drive remediation of application security findings.
- Create and maintain security standards, procedures, and best practices that scale across teams.
Requirements
- Must be based in the U.S. (excluding U.S. territories)
- 4–6+ years of experience in software engineering, with at least 2 years focused on application security.
- Knowledge of secure-by-design principles and modern application security practices.
- Familiarity with OWASP Top 10, ASVS, MASVS, and common application security frameworks.
- Experience with threat modeling methodologies such as STRIDE or PASTA.
- Proficiency in at least one programming language and its security ecosystem.
Nice to have
- Security certifications such as CSSLP, GWEB, or OSWE.
- Experience in insurance, financial services, or other regulated industries.
- Familiarity with AI technologies, LLM security, or prompt engineering.
- Experience with mobile application security or penetration testing.
Culture & Benefits
- Comprehensive health, dental, and vision insurance, plus 401(k) with company match.
- Remote-first environment with a $2,000 one-time home office equipment stipend.
- Four weeks of PTO in the first year and twelve weeks of fully paid parental leave.
- Up to $5,000 annually for professional learning and career development.
- Access to LinkedIn Learning, BetterUp coaching, and Headspace subscription.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →