As a Security Engineer – Application Security & Technology Risk, you will help evaluate and protect the Firm's technology environment by assessing the security risks associated with applications, SaaS platforms, browser extensions, integrations, and other technologies proposed for use within the Firm. A significant part of this role will involve understanding how a technology works, the access and permissions it requires, the data it can access or process, how it integrates with the Firm's environment, and how it could potentially be abused or compromised. You will evaluate these technologies from both a defensive and adversarial perspective, considering vulnerabilities, software supply-chain risk, authentication and authorization controls, configuration weaknesses, and the ways an attacker could leverage a compromised application or integration. The successful candidate will combine strong technical security knowledge with the ability to translate security findings into practical, risk-based recommendations for application owners, IT teams, and Firm leadership.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed