Application Security Specialist

VanguardMalvern, PA
3dHybrid

About The Position

The Application Security organization is responsible for the solutions and processes that secure Vanguard applications and operations. The security orchestration team integrates security tooling into the CI/CD pipeline ensuring security coverage and controls across all of the security tools. As a Application Security Specialist, you will play a pivotal role in ensuring the security and compliance of the Vanguard software development lifecycle (SDLC). You will help develop strategy, implement new technology, maintain technical controls, assess vulnerabilities, and collaborate with developers to ensure that the proper guardrails are in place to enable the continuous and secure delivery of applications. The team is collaborative, and all team members are expected to contribute in all aspects that the team needs. You will be expected to participate in technical implementation as well as security assurance.

Requirements

  • Undergraduate degree in a related field or equivalent combination of training and experience.
  • Experience with well-known application security tools (SAST, SCA, IAST, RASP, etc.)
  • Strong knowledge of application development, build, and deployment processes (development, IDEs, repositories, branching, pipelines, cloud, containers, serverless, etc.).
  • Strong experience with any modern programming language.
  • Familiarity with industry standards such as NIST, OWASP, and MITRE.

Nice To Haves

  • Relevant certifications in application development, security, application security, DevSecOps, or cloud are a plus.

Responsibilities

  • Play a leading role in defining the vision, strategy, and roadmap for security orchestration, ensuring it evolves to meet enterprise security needs and developer expectations.
  • Drive initiatives to achieve maximum scan coverage across repositories, proactively identifying gaps and implementing scalable solutions to close them.
  • Develop strategies to secure current and emerging technologies (cloud, containers, serverless, mobile, AI/ML, etc.).
  • Champion a frictionless developer experience by streamlining scan workflows and integrating feedback loops to continuously improve usability.
  • Partner with the broader security organization to align our security orchestration capabilities with organizational goals, ensuring seamless integration in the CI/CD pipeline.
  • Actively participate in epic/story grooming and retrospectives.
  • Contribute to code reviews, complete development stories, and help evolve the team’s technical capabilities through hands-on collaboration and coding.
  • Gather and report metrics from application security solutions and processes to provide meaningful insights into the maturity of the Application Security program.
  • Stay up to date on application security practices and standards; participate in educational opportunities; read professional publications.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service