Application Security Specialist

BarclaysJefferson, CO
Onsite

About The Position

Join Barclays as an Application Security Specialist in Whippany, NJ, and play a critical role in safeguarding the bank’s technology landscape. You will support the delivery and continuous enhancement of the firm’s DevSecOps and Application Security programs. Also, embed security controls across the software development lifecycle, integrating guidance directly into developer workflows. This position requires close partnership with engineering and security stakeholders to scale modern, developer-centric security capabilities that enable secure innovation.

Requirements

  • Development experience in at least one ecosystem such as Java Spring, .NET, or GoLang
  • Cloud-native development security, container orchestration such as Kubernetes, and infrastructure-as-code tools such as Terraform and Helm
  • Advanced knowledge of API and mobile security, including common vulnerabilities and mitigation techniques
  • Risk and controls
  • Change and transformation
  • Business acumen
  • Strategic thinking
  • Digital and technology
  • Job-specific technical skills

Nice To Haves

  • Deep understanding of modern secure SDLC processes, DevOps toolchains, CI/CD automation, and code-signing practices
  • Knowledge of SAST, DAST, SCA, and software supply chain security
  • Understanding of AI security within application security, including model vulnerabilities, malware risks, and prompt injection techniques

Responsibilities

  • Identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks.
  • Development and execution of assessments, audits, and threat models to identify vulnerabilities within the banks systems, applications and servers using penetration tools and techniques, and communicate key findings and recommendations to stakeholders.
  • Collaboration with stakeholders and IT teams to identify emerging cyber-attack techniques, tools and technologies and to support the development of penetration testing methodologies.
  • Development and maintenance of comprehensive documents and reports for senior stakeholders on penetration test findings, and remediation guidance.
  • Collaboration with stakeholders to understand their security requirements and controls in business processes, application/services, to enhance overall security posture and assurance.
  • Identification of emerging vulnerabilities, exploit codes and cyber-attacks to develop testing methodologies and assurance activities.
  • Support the delivery and continuous enhancement of the firm’s DevSecOps and Application Security programs.
  • Embed security controls across the software development lifecycle, integrating guidance directly into developer workflows.
  • Partner with engineering and security stakeholders to scale modern, developer-centric security capabilities that enable secure innovation.

Benefits

  • Medical coverage
  • Dental coverage
  • Vision coverage
  • 401(k)
  • Life insurance
  • Other paid leave for qualifying circumstances
  • Incentive award
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service