Talent.com
Specialist, Application Security
Specialist, Application SecurityPrudential Financial • Newark, NJ, USA
Specialist, Application Security

Specialist, Application Security

Prudential Financial • Newark, NJ, USA
Hace más de 30 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Job Classification :

Technology - Information Security

Are you interested in building capabilities that enable the organization with innovation, speed, agility, scalability and efficiency? The Global Technology team takes great pride in our culture where digital transformation is built into our DNA! When you join our organization at Prudential, you’ll unlock an exciting and impactful career – all while growing your skills and advancing your profession at one of the world’s leading financial services institutions.

Your Team & Role

As an Application Security Specialist on the Attack Surface Management Team, you will partner with other security professionals across the Information Security Office, the Chief Technology Office, and other engineering groups in Prudential to advance Prudential’s application security program and drive Prudential’s risk reduction efforts across the global enterprise.

In this role, you would be responsible for efforts to secure modern applications and ensuring “secure by design” development best practices across all digital assets in alignment with industry standards. You will track and govern risk reduction, work with partner organizations to consult on implementation efforts, mature operational processes and enable automation CI / CD controls for enforcement and monitoring. You will work on significant and unique issues where analysis of situations or data requires an evaluation of intangible variables and may impact future concepts, products or technologies to ensure security of our products and customers!

The ideal candidate will have a deep understanding of modern application architecture, cloud-native security, and DevOps practices. Forward-thinking is required for this role to include focus on how to securely develop systems, enable self-service and incorporate capabilities for Security to scale and defend against evolving threats.

Here is What You Can Expect on a Typical Day

  • Serve as the escalation point for operational and project work from junior team members, providing technical support for security tools and solutions, and implementing assessment and response processes.
  • Utilize AppSec tool and process expertise to resolve complex technical and organizational challenges, bridging gaps between AppSec / DevOps and IT / business teams to ensure resource availability for team goals.
  • Collaborate with leadership to define the future direction of the AppSec program, while maintaining a deep understanding of daily operations to offer informed recommendations.
  • Enhance vulnerability and configuration monitoring for open source, third-party, and proprietary code and applications, integrating security best practices into development and operations.
  • Design, develop, and implement security policies and alerting mechanisms based on SOX and NIST standards, and assist in evaluating new software solutions.
  • Conduct qualitative and quantitative analyses to improve user experience, promoting secure-by-design principles throughout the software development lifecycle.
  • Validate mitigation controls, ensure reporting metrics convey risk posture to leadership, and adapt them as necessary.
  • Revise processes, metrics, and documentation to enhance AppSec program capabilities, providing proof-of-concept exploits to demonstrate exploitability and validate remediation actions.
  • Collaborate with technology peers and business stakeholders to ensure remediation efforts comply with corporate standards, creating technical documentation and SoPs for internal security processes.
  • Work with engineering teams to address application vulnerabilities, developing remediation and mitigation strategies, and define requirements for automation tools to manage application security posture.

The Skills & Expertise You Bring

  • Bachelor of Computer Science or Engineering or experience in related fields
  • Ability to coach others with minimal guidance and effectively leverage diverse ideas, experiences, thoughts and perspectives to the benefit of the organization
  • Experience with agile development methodologies and Test-Driven Development (TDD)
  • Knowledge of business concepts tools and processes that are needed for making sound decisions in the context of the company's business
  • Ability to learn new skills and knowledge on an on-going basis through self-initiative and tackling challenges
  • Excellent problem solving, communication and collaboration skills
  • Applied experience with several of the following :

  • Familiarity with vulnerability and security scanning tools, as well as common vulnerability data sources and frameworks (CVE, CVSS, EPSS, CWE)
  • Experience improving vulnerability management platforms, processes, and assessments
  • Engineering mindset – systems thinking, creative problem solving, deductive reasoning
  • SAST, SCA, DAST, ASPM tools
  • Strong understanding of software composition analysis and SBOMs.
  • Ability to adjust communicate style to the target audience with a proficiency in communicating technical and business risk
  • Experience with common vulnerability feeds from government, vendor, and open-source communities
  • Understanding of threat actors with the ability to articulate how they operate and demonstrate how they subvert common security controls
  • Understanding of the OWASP Top 10. Familiarity with vulnerabilities in 3rd party libraries and remediation
  • Preferred qualifications :

  • Scripting background (Python, PowerShell, Bash, etc.)
  • Understanding of threat actors, with the ability to articulate or demonstrate how they operate and subvert common security controls
  • Knowledge of industry security standards and frameworks (CIS, NIST, PCI DSS)
  • Ability to perform exploit validation and web application penetration testing
  • Agentic AI for Security use cases
  • Leverage diverse ideas, experiences, thoughts, and perspectives to the benefit of the organization
  • GIAC Web Application Penetration Tester (GWAPT)
  • CompTIA Advanced Security Practitioner (CASP+)
  • GIAC Cloud Security Automation (GCSA)
  • IT Security certification beyond intro level certifications, (e.g., GCFA, GCIA, GNFA, GCTI, GREM, GCIH, GCFA, GPEN, OSCP, etc.).
  • Cloud (AWS, Azure, GCP, etc.) Certs
  • Other Security Certifications beyond intro level
  • What we offer you :

    Prudential is required by state specific laws to include the salary range for this role when hiring a resident in applicable locations. The salary range for this role is from $99,700.00 to $148,500.00. Specific pricing for the role may vary within the above range based on many factors including geographic location, candidate experience, and skills.

    Market competitive base salaries, with a yearly bonus potential at every level .

    Medical, dental, vision, life insurance, disability insurance, Paid Time Off (PTO), and leave of absences, such as parental and military leave .

    401(k) plan with company match (up to 4%).

    Company-funded pension plan.

    Wellness Programs including up to $1,600 a year for reimbursement of items purchased to support personal wellbeing needs.

    Work / Life Resources to help support topics such as parenting, housing, senior care, finances, pets, legal matters, education, emotional and mental health, and career development.

    Education Benefit to help finance traditional college enrollment toward obtaining an approved degree and many accredited certificate programs.

    Employee Stock Purchase Plan : Shares can be purchased at 85% of the lower of two prices (Beginning or End of the purchase period), after one year of service.

    Eligibility to participate in a discretionary annual incentive program is subject to the rules governing the program, whereby an award, if any, depends on various factors including, without limitation, individual and organizational performance.

    Crear una alerta de empleo para esta búsqueda

    Specialist Application Security • Newark, NJ, USA

    Ofertas similares
    Security Analyst

    Security Analyst

    CANUS TECH • Parsippany, New Jersey, US
    A tiempo completo
    Job Description Job Description Responsibilities : • Perform security monitoring and assessments of enterprise infrastructure, networks and applications based on the analysis of client's business...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Sample Management Specialist / Client Services

    Sample Management Specialist / Client Services

    Consumer Product Testing Company, Inc. • Fairfield, New Jersey, US
    A tiempo completo
    Job Description Job Description MINIMUM QUALIFICATION REQUIREMENTS To perform this job, an individual must be able to perform each essential duty satisfactorily and meet the educational and exper...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Application Security Specialist, VP

    Application Security Specialist, VP

    Michael Page • Woodbridge Township, NJ, US
    A tiempo completo
    The Application Security Specialist will be responsible for ensuring the security of software applications within the financial services sector. This role requires expertise in identifying vulnerabi...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Senior WMS Implementation Specialist

    Senior WMS Implementation Specialist

    Bay Personnel • Newark, New Jersey, United States
    A tiempo completo
    Sorry, Visa / sponsorship not available.Install Locations NJ / Southern CA.The ideal candidate will have deep functional and technical knowledge of Manhattan SCALE and act as a trusted advisor for sy...Mostrar más
    Última actualización: hace 13 días • Oferta promocionada
    Application Engineer

    Application Engineer

    Allied Universal® Technology Services • Farmingdale, NJ, US
    A tiempo completo
    Join Allied Universal® Technology Services, a global leader in transforming the security industry.We integrate advanced technology - video surveillance, electronic access control, alarm monitor...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Credentialing Specialists

    Credentialing Specialists

    Armada Ltd • Springfield, New Jersey, US
    A tiempo completo
    Job Description Job Description Type : Full Time Location : Springfield, NJ Overtime Exempt : Yes Reports To : ARMADA HQ Travel Requirement : YES, nationwide to support onsite credentialing operations...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Specialist Solutions Engineer - Security

    Specialist Solutions Engineer - Security

    AHEAD • Newark, New Jersey, US
    A tiempo completo
    Job Description Job Description AHEAD builds platforms for digital business.By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterpri...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Senior Manager, Enterprise Security

    Senior Manager, Enterprise Security

    Relativity • Newark, NJ, United States
    A tiempo completo
    At Relativity we make software to help users organize data, discover the truth, and act on it.Our e-discovery platform is used by more than 13,000 organizations around the world to manage large vol...Mostrar más
    Última actualización: hace 9 días • Oferta promocionada
    Special Projects Manager

    Special Projects Manager

    Limbach Company LLC • East Brunswick, NJ, US
    A tiempo completo
    Since our founding in 1901, Limbach’s primary core value has always been : .We are committed to creating a culture of belonging for our employees, our We Care culture, and our industry as a who...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Information Security Officer

    Information Security Officer

    KabaFusion • Edison, New Jersey, US
    A tiempo completo
    Job Description Job Description Come join a company that is putting the "CARE" back in healthcare.Why do IT Professionals want to work here? The reason people love working for KabaFusion is becau...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Applications Specialist

    Applications Specialist

    Hosokawa Micron International • Summit, New Jersey, US
    A tiempo completo
    Job Description Job Description The Application Specialist is responsible for selling Hosokawa equipment for size reduction, classification, mixing, drying, compaction, and agglomeration.Reviews ...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    AI Security Architect

    AI Security Architect

    Zelis Healthcare, LLC • Morristown, NJ, United States
    A tiempo completo
    Zelis is modernizing the healthcare financial experience across payers, providers, and healthcare consumers.We serve more than 750 payers, including the top five national health plans, regional hea...Mostrar más
    Última actualización: hace 16 días • Oferta promocionada
    Tech Advanced - Installation

    Tech Advanced - Installation

    LightPath • Piscataway, NJ, United States
    A tiempo completo
    Centennial Avenue, Piscataway, NJ 08854 .Lightpath is one of the largest competitive local exchange carriers in the tri-state area. We own and operate our infrastructure "from the ground up" by ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Credentialing Specialist

    Credentialing Specialist

    A-Line Staffing Solutions LLC • Summit, NJ, US
    A tiempo completo
    Full time Provider Credentialing Specialist openings in Morristown, NJ with a major healthcare company! Starting ASAP!! Apply now to Chris Meyer with A-Line!. Credentialing Specialist PAY RATE : $30-...Mostrar más
    Última actualización: hace 7 días • Oferta promocionada
    Security Specialist

    Security Specialist

    APC HOSPITALITY LLC • West Orange, NJ, US
    A tiempo completo
    Location & Shifts Available : Essex County, NJ.Ideal candidate for this role : .The ideal candidate for this role is someone with security experience and has knowledge of security systems and practice...Mostrar más
    Última actualización: hace 6 horas • Oferta promocionada • Nueva oferta
    General Application

    General Application

    The Center for Great Expectations • Somerset, NJ, US
    A tiempo completo
    Join our team! CGE is always seeking exceptional and skilled individuals to fill our jobs.We encourage you to apply using this general application if you do not currently see a position that intere...Mostrar más
    Última actualización: hace 12 días • Oferta promocionada
    Asset Protection Specialist (Full Time)

    Asset Protection Specialist (Full Time)

    Green Thumb Industries • Paterson, NJ, United States
    A tiempo completo
    At Green Thumb Industries and RISE Dispensaries, we believe the first impression is everything and that starts with you.As an Asset Protection Specialist (APS),. This role is ideal for individuals w...Mostrar más
    Última actualización: hace 9 horas • Oferta promocionada • Nueva oferta
    Asset Protection Visual Security Officer, Full Time - Short Hills

    Asset Protection Visual Security Officer, Full Time - Short Hills

    Bloomingdale's • Short Hills, NJ, United States
    A tiempo completo
    Day-1 Medical, Dental, Vision Benefits for eligible colleagues.Flexible Holiday Time-Off & Flexible Scheduling.Instant access to earned wages with. Enhanced benefits : pet, home & auto insurance & mo...Mostrar más
    Última actualización: hace 29 días • Oferta promocionada