Our Information Security team works to protect, defend, and reduce risks across applications, platforms, infrastructure, and services to keep our assets and resources secure. We are seeking a Staff Software Engineer with information security expertise to help design and build secure, resilient services and AI-driven workflows for ServiceNow application and modules, supporting enterprise security automation and compliance validations. This role is essential for lowering enterprise risk and boosting engineering productivity. At Walmart, we prioritize innovation and data security. Our team is dedicated to maintaining a secure operating environment and preserving the trust of our customers, associates, and stakeholders. We combine a range of services and expertise to prevent fraud, detect threats, and manage digital risk and access. Our focus is on mitigating attack risks, securing cloud transformation, and fostering a culture of security and reliability within our team At Walmart, we prioritize innovation and data security. Our team is dedicated to maintaining a secure operating environment and preserving the trust of our customers, associates, and stakeholders. We combine a range of services and expertise to prevent fraud, detect threats, and manage digital risk and access. Our focus is on mitigating attack risks, securing cloud transformation, and fostering a culture of security and reliability within our team. What you'll do... Architect, design and operate secure APIs along with frameworks for service-to-service or Agentic communications. Architect scalable, highly available backend systems that process and validate security measures and control data. Build resilient integrations across security tooling ecosystems (scanners, CI/CD, internal APIs). Develop telemetry pipelines that helps preserve audit integrity and traceability. Build APIs and aggregate data originating from telemetry signals and sensors, in a scalable backend database Write SQL queries or equivalent to ingest, update and retrieve data from the backend. Manage and support Agents, MCP servers, APIs, and infrastructure components that form part of our Security controls and Security Data aggregation ecosystems. Apply threat modeling and secure data handling principles to build and validate control effectiveness. Incorporate AI-driven workflows that include safeguards for secure coding and compliance validation. Collaborate with Product Security, Compliance, and Platform teams to automate thousands of security validation tasks. Reduce security review cycle times while strengthening control consistency and audit defensibility. What you'll bring: As a Staff software engineer, experience in building scalable, resilient, secure enterprise application using Java or Python using MVC and async frameworks. Well versed with SQL (Azure SQL, PostgreSQL), NSQL technologies (Cassandra or MongoDB). Working experience in Containerization of applications and services. Have expertise in building microservices, REST APIs, resilient and at scale services Knowledge of triaging and fixing bugs in a microservice, n tier architecture and in big data platforms is an added plus. Knowledge of creating Agents, MCP servers, APIs, and infrastructure components is an added plus. Working experience with big data technologies such as Big Query, Kafka, Apache Spark, Elastic Search and Data Streaming is an added plus. Ability to grasp and understand the big picture and build customer centric products and services with minimal inputs, business definition and requirements. Experience in creating frameworks, components and reusable assets that serves as building blocks for products and services. Has an engineering mindset when creating products and solutions – multi region deployments, HA, autoscaling, blue green deployments, secure SDLC for products and services, performance measures at every tier, data security and access control measures. Have used CI/CD pipelines for code deployment and container orchestration platforms like Kubernetes. Demonstrated ability to learn new programming languages or technologies. Awareness about information security domains, specifically application security with static security scanning, Software composition analysis, vulnerabilities, threats, and exploits. Good written and verbal communication skills. Excellent analytical and problem-solving skills. You’ll sweep us off our feet if…. You are an experienced architect and designer of microservices and APIs with an Ntier architecture in a cloud native ecosystem. You are an AI builder with expert software engineering skills and have begun creating applications and services using Agentic IDEs like Cursor or Windsurf. You have experience in architecting, designing Agents and building MCP servers that support enterprise security workflows, enable agentic communications and to integrate with other enterprise services. You specialize in writing agentic validation for security controls presence in platforms, infrastructure, services, applications, and GIT repositories. You have developed scalable APIs and data pipelines for gathering and aggregating security control data, using Java or Python. You are accustomed to working collaboratively in a matrixed organizational structure. You possess strong knowledge of the security domain, including vulnerabilities, security controls, and application security. You have an in-depth understanding of service-to-service security and secure architectural patterns. You have hands-on experience integrating with various security tools such as SAST, ASPM, and container scanners and have introduced gating measures in CI/CD pipelines to act as security guardrails. You are experienced in security solution of AI workflows, Agents in your enterprise ecosystem.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level