Talent.com
Senior Application Security Engineer

Senior Application Security Engineer

Upbound GroupDraper, UT
30+ days ago
Job type
  • Full-time
Job description

Job Description

Senior Application Security Engineer

(Draper, Utah In-Office)

As a Senior Application Security Engineer for Upbound Group, you will work to support the various processes and procedures related to application security and gather information from product engineering teams related to these activities. You will make a difference in promoting a culture of security inside the engineering organization and work with engineers to produce more secure applications. You will work to both collect and disseminate information throughout the business to ensure processes and procedures are operating efficiently and effectively. You will support the developers in their efforts to secure our applications and assist in the documentation and tracking of various application security and cloud.

About Upbound

Upbound Group, Inc. (effective February 27, 2023 : NASDAQ : UPBD) is an omni-channel platform company committed to elevating financial opportunity for all through innovative, inclusive, and technology-driven financial solutions that address the evolving needs and aspirations of consumers. The Company’s customer-facing operating units include industry-leading brands such as Rent-A-Center and Acima that facilitate consumer transactions across a wide range of store-based and digital retail channels, including over 2,400 company branded retail units across the United States, Mexico and Puerto Rico. Upbound Group, Inc. is headquartered in Plano, Texas. Acima is headquartered in Draper Utah.

What You Will Do

  • Collaborate with engineers, consultants, and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC)
  • Build automated code scanning tools to identify security vulnerabilities in application code and infrastructure code using both open source and commercial tools Integrating open-source and / or commercial static application code scanning tools with the CI / CD Pipeline
  • Enable secure-by-default best practices by developing libraries and frameworks to prevent future vulnerabilities
  • Operate at enterprise scale by building and managing tools that help test, monitor, and improve application security
  • Develop security standards, preferred implementation patterns, secure common frameworks, and developer documentation and educational materials
  • Provide secure developer training to software engineers on how to write secure code and follow best practices
  • Conduct web app penetration testing, code scanning, dependency scanning that can be incorporated into SDLC process and CI / CD pipeline
  • Work closely and together with the development team to provide guidance and mitigate security vulnerabilities
  • Perform security architecture and design reviews of all systems and applications developed at Acima
  • Provide a leadership role in the development, implementation and maintenance of consistent application and infrastructure architecture security programs

Qualifications

  • 3+ years of experience working in an application security role
  • You have a background in web application development and / or code auditing and can get deep into the code to find and resolve security problems
  • You have experience with static and dynamic code analyzers
  • You have experience with software composition analysis tools
  • Web application penetration testing and source code vulnerability analysis skills
  • Extensive knowledge of internet security issues, cloud architectures, and threat landscape
  • General understanding of application and cloud security threats and vulnerabilities, including OWASP top 10, SANS top 25 etc.
  • Professional security certification : CISSP, GIAC, GWEB, GWAP or other similar credentials.
  • Experience with BurpSuite, Zed Attack Proxy (ZAP), or similar dynamic testing tool
  • Knowledge of current development practices, including containerized applications, microservice architectures, serverless architectures, native mobile applications, responsive web applications, etc. a plus
  • Benefits / Compensation

  • DTO (discretionary time off).
  • Medical insurance with United Healthcare (IHC network)
  • Health Savings Account (HSA) with company contribution.
  • Dental insurance (Cigna) and Vision insurance (United Healthcare)
  • Paid holidays
  • 401K match 6% / 3%
  • Free Dev lunches every Friday for locals
  • Fully stocked snack bar with beverages
  • Onsite gym and bike locker
  • College tuition reimbursement program (STEM)
  • Free car charging
  • #LI-RF1

    Create a job alert for this search

    Senior Application Security Engineer • Draper, UT

    Related jobs
    • Promoted
    Enterprise Architect - Security

    Enterprise Architect - Security

    BankTalent HQMidvale, UT, United States
    Full-time
    Zions Bancorporation's Enterprise Technology and Operations (ETO) team is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Specialist, Industrial Security

    Senior Specialist, Industrial Security

    Clearance JobsSalt Lake City, UT, US
    Full-time
    Senior Specialist, Industrial Security.L3Harris Technologies is the Trusted Disruptor in the defense industry.With customers' mission-critical needs always in mind, our employees deliver end-to-end...Show moreLast updated: 30+ days ago
    • Promoted
    Specialist, Information Security Systems Engineer

    Specialist, Information Security Systems Engineer

    Clearance JobsSalt Lake City, UT, US
    Full-time
    Specialist, Information Security Systems Engineer.L3Harris Technologies is the Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer - Threat Modeling & Risk / Privacy AlignmentUtah | Hybrid

    Application Security Engineer - Threat Modeling & Risk / Privacy AlignmentUtah | Hybrid

    BambooHRLehi, UT, US
    Full-time
    This is a Utah-based hybrid position which will require some regular in-office days each week.Additionally, employment with BambooHR is contingent on passing both a background and credit check.We a...Show moreLast updated: 30+ days ago
    • Promoted
    Lift Maintenance Electronic Technician - Year Round

    Lift Maintenance Electronic Technician - Year Round

    Deer Valley ResortCottonwood Heights, UT, US
    Full-time
    Please note, this position is located at Deer Valley Resort in Park City, UT.Classic, consistent quality from a winning team!. Deer Valley Resort is nestled in the Wasatch Mountains of Utah, in the ...Show moreLast updated: 7 days ago
    • Promoted
    Senior Software Engineer (AI experience)

    Senior Software Engineer (AI experience)

    PatternLehi, Utah, United States
    Full-time
    Are you obsessed with data, partner success, taking action, and changing the game? If you have a whole lot of hustle and a touch of nerd, come work with Pattern! We want you to use your skills to p...Show moreLast updated: 30+ days ago
    • Promoted
    Site Reliability Engineer

    Site Reliability Engineer

    Breeze AirwaysCottonwood Heights, Utah, United States
    Full-time
    Working at Breeze Airways is an exciting endeavor and a serious commitment to bring “The World’s Nicest Airline” to life. We work cross-functionally with truly awesome Team Members to deliver on our...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer - Nashville or Austin Location

    Security Engineer - Nashville or Austin Location

    OracleSalt Lake City, UT, United States
    Full-time
    Responsible for the planning, design and build of security architectures; oversees the implementation of network and computer security and ensures compliance with corporate security policies and pr...Show moreLast updated: 7 hours ago
    • Promoted
    Staff Product Security Engineer

    Staff Product Security Engineer

    ProofpointDraper, UT, US
    Full-time
    Staff Product Security Engineer.It's fun to work in a company where people truly BELIEVE in what they're doing! We're committed to bringing passion and customer focus to the business.Proofpoint is ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Software Engineer

    Senior Software Engineer

    Fortem Technologies IncLindon, Utah, United States
    Full-time
    Fortem Technologies is a venture-capital backed company located in Lindon, UT.In a world where sophisticated drones are commonplace, Fortem Technologies provides the most artificial intelligence (A...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    TTECSalt Lake City, UT, US
    Full-time
    Information Security Engineer Your potential has a place here with TTEC’s award-winning employment experience.As a Information Security Engineer working remote in US, you’ll be a part of bringing h...Show moreLast updated: 30+ days ago
    • Promoted
    SDS - Industrial Security Analyst (Level 3 or 4) (15078 / 15077)

    SDS - Industrial Security Analyst (Level 3 or 4) (15078 / 15077)

    Northrop Grumman (Corporate)Roy, UT, US
    Full-time
    Principal / Sr Principal Industrial Security Analyst.At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world to...Show moreLast updated: 30+ days ago
    Information Security Engineer, Jr - 2 Year Contract ( IAM and Platforms )

    Information Security Engineer, Jr - 2 Year Contract ( IAM and Platforms )

    Deseret Mutual Benefit AdministratorsSalt Lake City, UT, USA
    Full-time
    Quick Apply
    DMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is no...Show moreLast updated: 30+ days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    Zions BankSalt Lake City, UT, US
    Full-time
    Zions Bancorporation has an opportunity for a Security Engineer, with emphasis on public cloud security, data loss protection, network security, and virtual endpoints while following multiple secur...Show moreLast updated: 30+ days ago
    • Promoted
    Remote Job $790 / wk - Hiring Focus Group Panelists

    Remote Job $790 / wk - Hiring Focus Group Panelists

    MaxionTooele, UT, US
    Remote
    Full-time +2
    Want to make extra money on YOUR schedule? Join our exclusive list of research study participants and .Perfect for anyone seeking remote, part-time, or temporary work, these opportunities require ....Show moreLast updated: 15 days ago
    • Promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    BankTalent HQMidvale, UT, United States
    Full-time
    Zions Bancorporation's Enterprise Technology and Operations (ETO) team is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been...Show moreLast updated: 30+ days ago
    • Promoted
    Staff Security Engineer - Threat Defense & Automation

    Staff Security Engineer - Threat Defense & Automation

    ProofpointDraper, UT, US
    Full-time
    Cyber Incident Response Security Engineer.About Proofpoint : We are the leader in human-centric cybersecurity.Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Product Security Product Owner

    Product Security Product Owner

    HumanaSalt Lake City, UT, United States
    Full-time
    Become a part of our caring community and help us put health first.The Senior Product Owner is responsible for conveying product vision, breaking down the work, building roadmap, and being the voic...Show moreLast updated: 7 hours ago