Talent.com
Senior Application Security Engineer
Senior Application Security EngineerM&T Bank • Wilmington, DE
Senior Application Security Engineer

Senior Application Security Engineer

M&T Bank • Wilmington, DE
30+ days ago
Job type
  • Full-time
Job description

Overview:

Responsible for capturing and refining information security requirements and ensures their integration into information technology component products and information systems through purposeful security design or configuration. Provides advanced working guidance to technology teams and leadership in the areas of secure coding, application authentication, encryption, and quickly research and become competent in other areas as needed.

Primary Responsibilities:

  • Develop and implement engineering’s technical security policies and procedures, and performance of security measures,
  • Scan and test applications for potential vulnerabilities and non-compliance with security standards,
  • Partner with engineering teams during code reviews to identify potential security vulnerabilities and advise strategies to develop more secure code,
  • Integrate security tools and processes into the software development and operations (DevOps) pipeline, including automation of security checks and scans to identify and fix vulnerabilities early in the development process.
  • Lead training sessions for technology teams in one-on-one coaching and large team training sessions on secure coding practices and information system security best practices.
  • Configure and manage automated tools and solutions to address security weaknesses in applications, systems, and infrastructure.
  • Partner closely with incident response teams to mitigate the impact of incidents from application security vulnerabilities and identify necessary steps to remediate findings.
  • Proactively recommend process enhancements and implement prioritized improvements within Cybersecurity team to enhance application security capabilities.
  • Track current events, technological advancements, and changes in the secure application development landscape to anticipate how attackers may change their tactics, and implement adjustments to internal technologies, policies, and procedures.
  • Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
  • Promote an environment that supports belonging and reflects the M&T Bank brand.
  • Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
  • Complete other related duties as assigned.

Scope of Responsibilities:

  • Partners primarily with individual contributors and leaders within Cybersecurity and Technology, and occasionally senior leaders within Cybersecurity.
  • Determines and develops approach to solutions. Work is accomplished with periodic check-ins for alignment and limited direction. Work is evaluated upon completion to ensure objectives have been met.
  • Proficient ability to use multiple Cybersecurity tools, specific to function.
  • This role is used within Cybersecurity, typically in one of the following ways:Application Security – partners with engineers and developers to secure first-party and third-party code by reviewing the application, data, and systems it interacts with.Product Security – secures products by ensuring they are designed, developed, and delivered in a secure manner".

Manager Responsibilities:

No supervisory responsibilities

Education and Experience Required:

  • Bachelor's degree and a minimum of 3 years’ relevant work experience, or in lieu of a degree, a combined minimum of 7 years’ higher education and/or work experience, including a minimum of 5 years software development or application security
  • Prior experience reviewing or fixing vulnerabilities identified using application security tools such as static application security testing (SAST), software composition analysis (SCA), interactive application security testing (IAST), dynamic application security testing (DAST), or application security posture management (ASPM) suite
  • Intermediate understanding of the Software Development Life Cycle (SDLC)
  • Ability to train technologist and people leaders at various levels on secure application development, both in person and virtually
  • Excellent communication and interpersonal skills

Education and Experience Preferred:

  • Intermediate experience reviewing or fixing vulnerabilities identified using application security tools such as static application security testing (SAST), software composition analysis (SCA), interactive application security testing (IAST), dynamic application security testing (DAST), or application security posture management (ASPM) suite
  • Understanding of common software weaknesses that impact cloud and web applications, beyond the Open Worldwide Application Security Project (OWASP) Top 10
  • Demonstrable experience developing and maintaining automation for application security tasks and defect identification
  • Experience developing enterprise applications
  • Knowledge of secure configuration of cloud-native and containerized apps in one or more Cloud environments
  • Certifications in the area of Application Security
  • Proficient persuasive communication skills to gain buy-in of others in cybersecurity and technology teams
  • Ability to create an effective learning environment that allows for maximum learner results
  • Must be comfortable with providing 1-1 coaching for all levels of individual contributors and up to SVP management
  • Ability to build and maintain effective relationships within and across multiple technical teams
  • Prior experience utilizing continuous integration and continuous deployment (CI/CD) pipeline instrumentation
  • Highly proficient at coding with one or two programming languages
  • Highly proficient with Agile development methodologies and version control systems
  • Experience defining and reviewing software security features and capabilities

#LI-JB3 #Hybrid

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $102,939.06 - $171,565.10 (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.

Location

Wilmington, Delaware, United States of America
Create a job alert for this search

Senior Application Security Engineer • Wilmington, DE

Similar jobs
Staff Systems Engineer (Top Secret Clearance Required)

Staff Systems Engineer (Top Secret Clearance Required)

Lockheed Martin Corporation • Odessa, DE, United States
Full-time
Job ID: 708139BR Date posted: Jan.Description: Who We Are: Want to work with cutting-edge technologies in a fun, fast-paced, and dynamic environment? Are you a problem solver that takes on challeng...Show more
Last updated: 1 day ago • Promoted
Service Security Technician

Service Security Technician

NSC • Exton, PA, United States
Permanent
Job Title: Service Security Technician.Minimum of 5 years of experience with installing and maintaining:.Enterprise-level access control systems.Intrusion detection systems (IDS), both fiber and co...Show more
Last updated: 16 days ago • Promoted
Senior Broadcast IT Engineer

Senior Broadcast IT Engineer

QVC Group, Inc • West Chester, PA, United States
Full-time
Working at QVC Group means joining a live social shopping company with incredible teams, ambitious projects and amazing careers.Fortune 500 company with six leading retail brands - QVC®, HSN®, Ball...Show more
Last updated: 2 days ago • Promoted
Specialist, Asset Protection Stores - Rockefeller Center

Specialist, Asset Protection Stores - Rockefeller Center

Gap Inc. • Newark, DE, United States
Full-time
As an Asset Protection Specialist, you serve in high-risk store environments where you are empowered to make apprehensions and wear a uniform and body camera.In addition to maintaining a strong, vi...Show more
Last updated: 17 days ago • Promoted
Remote Trading Analyst - FX & Digital Assets | Smyrna, DE

Remote Trading Analyst - FX & Digital Assets | Smyrna, DE

Maverick Currencies • Smyrna, DE, United States
Remote
Full-time
Take your trading to the next level in Smyrna, DE.Maverick Currencies provides funded accounts and professional development for serious traders.Maverick Currencies is seeking disciplined traders wh...Show more
Last updated: 10 days ago • Promoted
Due Diligence Researcher( UCC Filings)-100% On-Site

Due Diligence Researcher( UCC Filings)-100% On-Site

Jobot • Leipsic, DE, US
Permanent
A top due diligence research firm is seeking someone in or around Dover, DE to come on board and help support a growing team! An ideal candidate would have experience with Delaware UCC filings! Thi...Show more
Last updated: 17 days ago • Promoted
Target Security Specialist

Target Security Specialist

Target Brands, Inc. • Wilmington, DE, United States
Full-time
Starting Hourly Rate / Salario por Hora Inicial: $18.Working at Target means helping all families discover the joy of everyday life.We bring that vision to life through our values and culture.Asset...Show more
Last updated: 17 days ago • Promoted
Senior Recruiter, Law Enforcement & Armed Security

Senior Recruiter, Law Enforcement & Armed Security

Metro One Loss Prevention Services Group (Guard Division PA), Inc. • Wilmington, DE, United States
Full-time
Senior Recruiter, Law Enforcement & Armed Security Do you have a passion for service? Ready to build a career, not just find another job? Metro One Loss Prevention Services Group has the opportunit...Show more
Last updated: 21 hours ago • Promoted • New!
Remote Focus Group Participant

Remote Focus Group Participant

Reel Edge • Middletown, MI, US
Remote
Full-time +1
We are a gambling technology company looking for individuals to join our focus group on an.You will earn $800 to $1,200 for about 20 hours of participation, with opportunities for continued.This is...Show more
Last updated: 30+ days ago • Promoted
Special Agent, $40,000 Recruitment Incentive

Special Agent, $40,000 Recruitment Incentive

The United States Secret Service • Middletown, DE, US
Full-time
Recruitment Incentive: Applicants may be eligible for a $40,000 recruitment incentive in accordance with regulatory requirements.Click apply for complete details on the recruitment incentive detail...Show more
Last updated: 17 days ago • Promoted
Application Security Architect - Contract To Hire

Application Security Architect - Contract To Hire

Liberty Personnel Services, Inc. • Wilmington, DE, United States
Full-time
Application Security Architect - Contract to Hire.Our client is seeking a Security Architect to design and implement enterprise-wide cybersecurity architecture.This strategic role will shape their ...Show more
Last updated: 14 days ago • Promoted
Senior Product Engineer, Electrical

Senior Product Engineer, Electrical

Bloom Energy • Newark, DE, United States
Full-time
At Bloom Energy, our vision for a world powered by clean, reliable, and affordable energy is more than just a dream-we're making it reality.For over two decades, we've been at the forefront of the ...Show more
Last updated: 10 days ago • Promoted
Full-Time Custom Applicator

Full-Time Custom Applicator

gpac • Middletown, DE, United States
Full-time
Join a leading agricultural operation as a.This position is perfect for individuals who thrive in an active fieldwork environment, enjoy working with modern equipment, and want to be part of a dedi...Show more
Last updated: 3 days ago • Promoted
Compensated Surrogacy Opportunity - Make a Life Changing Impact and Earn $60,000+

Compensated Surrogacy Opportunity - Make a Life Changing Impact and Earn $60,000+

Newborn Advantage Surrogacy • Clayton, DE, US
Full-time
Compensated Surrogacy Opportunity - Make a Life Changing Impact and Earn $60,000+.Newborn Advantage Surrogacy is seeking qualified women to become gestational surrogates and help intended parents g...Show more
Last updated: 30+ days ago • Promoted
Assistant Project Manager

Assistant Project Manager

NextGen Security • Exton, PA, United States
Full-time
We are seeking an entry-level electronic security assistant project manager to join our fast-growing and dynamic team.This position will work directly with a Project Manager to assist in completing...Show more
Last updated: 3 days ago • Promoted
Sr. Security Installer

Sr. Security Installer

Tri-M Group LLC • Kennett Square, PA, United States
Full-time
Here at The Tri-M Group, LLC we are an employee owned company placing our employees first, knowing that highly trained, skilled, and compensated workforce can better serve our customers, our famili...Show more
Last updated: 10 days ago • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

M&T Bank • Wilmington, DE, United States
Full-time
Responsible for capturing and refining information security requirements and ensures their integration into information technology component products and information systems through purposeful secu...Show more
Last updated: 3 days ago • Promoted
Senior R&D Engineer (Space) - Exton, PA (13347)

Senior R&D Engineer (Space) - Exton, PA (13347)

Synopsys • Exton, PA, United States
Full-time
Job Description and Requirements.At Synopsys, we drive the innovations that shape the way we live and connect.Our technology is central to the Era of Pervasive Intelligence, from self-driving cars ...Show more
Last updated: 10 days ago • Promoted