Talent.com
Upbound Group
Senior Application Security EngineerUpbound Group • Draper, UT
Senior Application Security Engineer

Senior Application Security Engineer

Upbound Group • Draper, UT
30+ days ago
Job type
  • Full-time
Job description

Job Description

Senior Application Security Engineer

(Draper, Utah In-Office)

As a Senior Application Security Engineer for Upbound Group, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the engineering organization and work with engineers to produce more secure applications. You will work to both collect and disseminate information throughout the business to ensure processes and procedures are operating efficiently and effectively. You will support the developers in their efforts to secure our applications and assist in the documentation and tracking of various application security and cloud.

About Upbound

Upbound Group, Inc. (effective February 27, 2023: NASDAQ: UPBD) is an omni-channel platform company committed to elevating financial opportunity for all through innovative, inclusive, and technology-driven financial solutions that address the evolving needs and aspirations of consumers. The Company’s customer-facing operating units include industry-leading brands such as Rent-A-Center and Acima that facilitate consumer transactions across a wide range of store-based and digital retail channels, including over 2,400 company branded retail units across the United States, Mexico and Puerto Rico. Upbound Group, Inc. is headquartered in Plano, Texas. Acima is headquartered in Draper Utah.

What You Will Do

  • Collaborate with engineers, consultants, and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC)
  • Build automated code scanning tools to identify security vulnerabilities in application code and infrastructure code using both open source and commercial tools Integrating open-source and/or commercial static application code scanning tools with the CI/CD Pipeline
  • Enable secure-by-default best practices by developing libraries and frameworks to prevent future vulnerabilities
  • Operate at enterprise scale by building and managing tools that help test, monitor, and improve application security
  • Develop security standards, preferred implementation patterns, secure common frameworks, and developer documentation and educational materials
  • Provide secure developer training to software engineers on how to write secure code and follow best practices
  • Conduct web app penetration testing, code scanning, dependency scanning that can be incorporated into SDLC process and CI/CD pipeline
  • Work closely and together with the development team to provide guidance and mitigate security vulnerabilities
  • Perform security architecture and design reviews of all systems and applications developed at Acima
  • Provide a leadership role in the development, implementation and maintenance of consistent application and infrastructure architecture security programs

Qualifications

  • 3+ years of experience working in an application security role
  • You have a background in web application development and/or code auditing and can get deep into the code to find and resolve security problems
  • You have experience with static and dynamic code analyzers
  • You have experience with software composition analysis tools
  • Web application penetration testing and source code vulnerability analysis skills
  • Extensive knowledge of internet security issues, cloud architectures, and threat landscape
  • General understanding of application and cloud security threats and vulnerabilities, including OWASP top 10, SANS top 25 etc.
  • Professional security certification: CISSP, GIAC, GWEB, GWAP or other similar credentials.
  • Experience with BurpSuite, Zed Attack Proxy (ZAP), or similar dynamic testing tool
  • Knowledge of current development practices, including containerized applications, microservice architectures, serverless architectures, native mobile applications, responsive web applications, etc. a plus

Benefits/Compensation

  • DTO (discretionary time off).
  • Medical insurance with United Healthcare (IHC network)
  • Health Savings Account (HSA) with company contribution.
  • Dental insurance (Cigna) and Vision insurance (United Healthcare)
  • Paid holidays
  • 401K match 6%/3%
  • Free Dev lunches every Friday for locals
  • Fully stocked snack bar with beverages
  • Onsite gym and bike locker
  • College tuition reimbursement program (STEM)
  • Free car charging

#LI-RF1

Create a job alert for this search

Senior Application Security Engineer • Draper, UT

Similar jobs

Principal /Sr. Principal Industrial Security Analyst (3/4) (18603)

Northrop GrummanRoy, UT, United States
Full-time

Principal Industrial Security Analyst (3/4).At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and ... Show more

 • Promoted

Deal Desk Analyst

Intelliswift Software, IncLehi, UT, US
Full-time

Job Title: Deal Desk Analyst 3 (Hybrid) Duration: 12+ Months Location: San Jose, CA-95110 / Lehi, UT 84043 Pay Rate: $40.Our team of rich experts from diverse backgrounds contributes to making Inte... Show more

 • Promoted

Principal /Sr. Principal Industrial Security Analyst (3/4) (1860 Jobs

Clearance JobsRoy, UT, United States
Full-time

Principal Industrial Security Analyst (3/4).At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and ... Show more

 • Promoted

Software Security Team (SST) Analyst

E. L. Blake, Inc.Hill Air Force Base, UT, USA
Full-time
Quick Apply

Hill Air Force Base, UT | Full-Time.Blake Corporation (ELB) is a Service-Disabled Veteran-Owned Small Business (SDVOSB) delivering mission-critical operational and technical support to the U.Air Fo... Show more

Sofware Engineer

TradeJobsWorkForce84045 Saratoga Springs, UT, US
Full-time

Analyze, design and develop tests and test-automation suites.Design, create and develop a processing platform using various configuration management technologies.Test software development methodolo... Show more

 • Promoted

Lead Information Security Engineer

MasterCardSalt Lake City, UT, US
Full-time +1

Mastercard powers economies and empowers people in 200+ countries and territories worldwide.Together with our customers, we’re helping build a sustainable economy where everyone can prosper.We supp... Show more

14G Air Defense Battle Management System Operator

Army National GuardBluffdale, UT
Part-time

Defend the skies using complex technology as an Air Defense Battle Management System Operator for the Army National Guard.You will primarily be responsible for integrating, operating, and maintaini... Show more

 • Promoted

Senior Application Developer (Candidates must have experience with Informatica)

Highmark HealthSalt Lake City, UT, United States
Full-time

CANDIDATE MUST BE US Citizen,* OnShore.Seeking a skilled professional with hands-on experience in Informatica technologies.This role requires proficiency in Informatica IDMC, Informatica Saas MDM, ... Show more

 • Promoted • New!

Strategic Cyber Security Leader

CardWorks, Inc.South Jordan, UT, United States
Full-time

A financial services provider in South Jordan is seeking an experienced Cyber Security Manager to oversee security initiatives and protect sensitive financial data.Responsibilities include managing... Show more

 • Promoted • New!

Senior Director, Security & IT — Hybrid & Equity

OVERJETSalt Lake City, UT, United States
Full-time

OVERJET is seeking a Director of Security & IT to own and lead our security and technology operations while protecting our AI platform in dental health.The role includes building a security team, m... Show more

 • Promoted • New!

Security System Installer

VLCMMurray, UT, USA
Full-time
Quick Apply

As a trusted IT solution provider, we specialize in cybersecurity, data center infrastructure, networking, cloud, VOIP, end-user computing, audio-visual, physical security, cabling, and internet se... Show more

Information Security Operations Engineer, Sr.

Deseret Mutual Benefit AdministratorsSalt Lake City, UT, USA
Full-time
Quick Apply

DMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates.DMBA began operations in 1970 and is no... Show more

Senior Software Architect

Security WeaverLehi, UT, United States
Full-time

Telecommuting/work from home from anywhere in US is allowed.Design, Architect and Add enhancements to, or modifications of, any of the existing sections of Security Weaver™ to make it fit company n... Show more

 • Promoted • New!

Senior Solution Architect - Modern Work & Security (Remote)

JourneyTeamDraper, UT, United States
Remote
Full-time

A leading technology consultancy based in Utah seeks a Senior Solution Architect for their Modern Work & Security practice.The role involves leading Microsoft 365 solution designs, mentoring team m... Show more

 • Promoted

Senior Software Engineer

BaseCamp FranchisingNorth Salt Lake, UT, United States
Full-time

At BaseCamp Franchising, we are revolutionizing the apparel retail industry through our two fast-growing resale brands, Uptown Cheapskate and Kid to Kid.We take an entirely new approach to thriftin... Show more

 • Promoted

Application Developer

TradeJobsWorkForce84045 Saratoga Springs, UT, US
Full-time

Analyze the ideas, business models, and user requirements to formulate a design strategy to carry out.Act as a tenant to draw out a workable application design and coding parameters with the essent... Show more

 • Promoted

Aerospace Engineer

TradeJobsWorkforce84043 Lehi, UT, US
Full-time

Aerospace Engineer Job Duties: Contributes to the design, manufacturing, and testing of aircraft and ae... Show more

 • Promoted

SOAR Engineer [Job ID 20260319]

Phoenix CyberSalt Lake City, UT, US
Full-time
Quick Apply

Phoenix Cyber is looking for a SOAR Consultant to support a commercial client.This is a 100% remote, work-from-home position anywhere in the continental United States.Minimum 2 years of S... Show more