Talent.com
Specialist, Application Security
Specialist, Application SecurityPrudential Financial • Newark, NJ, USA
Specialist, Application Security

Specialist, Application Security

Prudential Financial • Newark, NJ, USA
30+ days ago
Job type
  • Full-time
Job description

Job Classification:

Technology - Information Security

Are you interested in building capabilities that enable the organization with innovation, speed, agility, scalability and efficiency? The Global Technology team takes great pride in our culture where digital transformation is built into our DNA! When you join our organization at Prudential, you’ll unlock an exciting and impactful career – all while growing your skills and advancing your profession at one of the world’s leading financial services institutions.

Your Team & Role

As an Application Security Specialist on the Attack Surface Management Team, you will partner with other security professionals across the Information Security Office, the Chief Technology Office, and other engineering groups in Prudential to advance Prudential’s application security program and drive Prudential’s risk reduction efforts across the global enterprise.

In this role, you would be responsible for efforts to secure modern applications and ensuring “secure by design” development best practices across all digital assets in alignment with industry standards. You will track and govern risk reduction, work with partner organizations to consult on implementation efforts, mature operational processes and enable automation CI/CD controls for enforcement and monitoring. You will work on significant and unique issues where analysis of situations or data requires an evaluation of intangible variables and may impact future concepts, products or technologies to ensure security of our products and customers!

The ideal candidate will have a deep understanding of modern application architecture, cloud-native security, and DevOps practices. Forward-thinking is required for this role to include focus on how to securely develop systems, enable self-service and incorporate capabilities for Security to scale and defend against evolving threats.

Here is What You Can Expect on a Typical Day

  • Serve as the escalation point for operational and project work from junior team members, providing technical support for security tools and solutions, and implementing assessment and response processes.
  • Utilize AppSec tool and process expertise to resolve complex technical and organizational challenges, bridging gaps between AppSec/DevOps and IT/business teams to ensure resource availability for team goals.
  • Collaborate with leadership to define the future direction of the AppSec program, while maintaining a deep understanding of daily operations to offer informed recommendations.
  • Enhance vulnerability and configuration monitoring for open source, third-party, and proprietary code and applications, integrating security best practices into development and operations.
  • Design, develop, and implement security policies and alerting mechanisms based on SOX and NIST standards, and assist in evaluating new software solutions.
  • Conduct qualitative and quantitative analyses to improve user experience, promoting secure-by-design principles throughout the software development lifecycle.
  • Validate mitigation controls, ensure reporting metrics convey risk posture to leadership, and adapt them as necessary.
  • Revise processes, metrics, and documentation to enhance AppSec program capabilities, providing proof-of-concept exploits to demonstrate exploitability and validate remediation actions.
  • Collaborate with technology peers and business stakeholders to ensure remediation efforts comply with corporate standards, creating technical documentation and SoPs for internal security processes.
  • Work with engineering teams to address application vulnerabilities, developing remediation and mitigation strategies, and define requirements for automation tools to manage application security posture.

The Skills & Expertise You Bring

  • Bachelor of Computer Science or Engineering or experience in related fields
  • Ability to coach others with minimal guidance and effectively leverage diverse ideas, experiences, thoughts and perspectives to the benefit of the organization
  • Experience with agile development methodologies and Test-Driven Development (TDD)
  • Knowledge of business concepts tools and processes that are needed for making sound decisions in the context of the company's business
  • Ability to learn new skills and knowledge on an on-going basis through self-initiative and tackling challenges
  • Excellent problem solving, communication and collaboration skills

Applied experience with several of the following:

  • Familiarity with vulnerability and security scanning tools, as well as common vulnerability data sources and frameworks (CVE, CVSS, EPSS, CWE)
  • Experience improving vulnerability management platforms, processes, and assessments
  • Engineering mindset – systems thinking, creative problem solving, deductive reasoning
  • SAST, SCA, DAST, ASPM tools
  • Strong understanding of software composition analysis and SBOMs.
  • Ability to adjust communicate style to the target audience with a proficiency in communicating technical and business risk
  • Experience with common vulnerability feeds from government, vendor, and open-source communities
  • Understanding of threat actors with the ability to articulate how they operate and demonstrate how they subvert common security controls
  • Understanding of the OWASP Top 10. Familiarity with vulnerabilities in 3rd party libraries and remediation

Preferred qualifications:

  • Scripting background (Python, PowerShell, Bash, etc.)
  • Understanding of threat actors, with the ability to articulate or demonstrate how they operate and subvert common security controls
  • Knowledge of industry security standards and frameworks (CIS, NIST, PCI DSS)
  • Ability to perform exploit validation and web application penetration testing
  • Agentic AI for Security use cases
  • Leverage diverse ideas, experiences, thoughts, and perspectives to the benefit of the organization
  • GIAC Web Application Penetration Tester (GWAPT)
  • CompTIA Advanced Security Practitioner (CASP+)
  • GIAC Cloud Security Automation (GCSA)
  • IT Security certification beyond intro level certifications, (e.g., GCFA, GCIA, GNFA, GCTI, GREM, GCIH, GCFA, GPEN, OSCP, etc.).
  • Cloud (AWS, Azure, GCP, etc.) Certs
  • Other Security Certifications beyond intro level

What we offer you:

Prudential is required by state specific laws to include the salary range for this role when hiring a resident in applicable locations. The salary range for this role is from $99,700.00 to $148,500.00. Specific pricing for the role may vary within the above range based on many factors including geographic location, candidate experience, and skills.
  • Market competitive base salaries, with a yearly bonus potential at every level.

  • Medical, dental, vision, life insurance, disability insurance, Paid Time Off (PTO), and leave of absences, such as parental and military leave.

  • 401(k) plan with company match (up to 4%).

  • Company-funded pension plan.

  • Wellness Programs including up to $1,600 a year for reimbursement of items purchased to support personal wellbeing needs.

  • Work/Life Resources to help support topics such as parenting, housing, senior care, finances, pets, legal matters, education, emotional and mental health, and career development.

  • Education Benefit to help finance traditional college enrollment toward obtaining an approved degree and many accredited certificate programs.

  • Employee Stock Purchase Plan: Shares can be purchased at 85% of the lower of two prices (Beginning or End of the purchase period), after one year of service.

Eligibility to participate in a discretionary annual incentive program is subject to the rules governing the program, whereby an award, if any, depends on various factors including, without limitation, individual and organizational performance.

Create a job alert for this search

Specialist Application Security • Newark, NJ, USA

Similar jobs
Security Operations Center Analyst

Security Operations Center Analyst

TechBiz Global GmbH • Newark, NJ, US
Full-time
At TechBiz Global, we are providing recruitment service to our TOP clients from our portfolio.Security Operations Center Analyst.If you're looking for an exciting opportunity to grow in a innovativ...Show more
Last updated: 30+ days ago
Lead Application Developers - Urgently Hiring!

Lead Application Developers - Urgently Hiring!

ADP • Parsippany, NJ, United States
Full-time
Lead Application Developers in our Parsippany, NJ location.Are you empathetic to client needs and inspired by transformation and impacting the lives of millions of people every day?.Are you looking...Show more
Last updated: 30+ days ago
General Application

General Application

Tribute Baking Company • West Caldwell, NJ, USA
Full-time
Quick Apply
Tribute Baking Company is the strategic combination of four businesses with rich histories in the baking industry! Always Bagels, Original Bagel, Dutch Maid, Just Bagels and Hometown Foods USA, tog...Show more
Last updated: 30+ days ago
Credentialing Specialist

Credentialing Specialist

Objectwin Technology Inc. • Morristown, New Jersey, United States
Temporary
Quick Apply
Title: Credentialing Specialist (36229418).Location: Morristown, NJ 07960.Enforce regulatory compliance and quality assurance Prepare and maintain reports of credentialing activities such as accred...Show more
Last updated: 30+ days ago
Lead Application Developers - Now Hiring!

Lead Application Developers - Now Hiring!

ADP • Parsippany, NJ, United States
Full-time
Lead Application Developers in our Parsippany, NJ location.Are you empathetic to client needs and inspired by transformation and impacting the lives of millions of people every day?.Are you looking...Show more
Last updated: 30+ days ago
Part-Time Naval Aviation Systems Officer

Part-Time Naval Aviation Systems Officer

US Navy Reserve • Riverdale, NJ, United States
Part-time
ABOUT Pursuing a civilian career doesn’t have to mean getting stuck in the corporate world.As a current or former Naval Flight Officer, there are plenty of part-time opportunities to use your leade...Show more
Last updated: 7 days ago • Promoted
Senior Lead Application Developers - Urgently Hiring!

Senior Lead Application Developers - Urgently Hiring!

ADP • Parsippany, NJ, United States
Full-time
Senior Lead Application Developers in our Parsippany, NJ location.Are you empathetic to client needs and inspired by transformation and impacting the lives of millions of people every day?.Are you ...Show more
Last updated: 30+ days ago
SAP Quality Management (QM) Specialist - Pharmaceutical Manufacturing, part-time

SAP Quality Management (QM) Specialist - Pharmaceutical Manufacturing, part-time

SOKOL GxP Services • New Brunswick, NJ, US
Part-time +1
Quick Apply
We are seeking an experienced .SAP Quality Management (QM) Specialist.SAP QM system implementation and sustainment.This role partners closely with Quality Operations, Manufacturing, Supply Chain, P...Show more
Last updated: 8 days ago
Compliance Specialist

Compliance Specialist

APluscare LLC • East Brunswick, NJ, USA
Full-time
Quick Apply
We Are Growing!!! We are excited to announce that due to our continued growth, APluscare is expanding our team.As we take on new opportunities and projects, we are looking for passionate and talent...Show more
Last updated: 6 days ago
Security Professional Flex Officer

Security Professional Flex Officer

Allied Universal Security • Somerset, NJ, United States
Full-time
Company Overview: Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in a dynamic, welcomin...Show more
Last updated: 16 days ago • Promoted
Entry Level Combat Engineer

Entry Level Combat Engineer

U.S. Army • New Brunswick, New Jersey, United States
Full-time
Quick Apply
Entry Level) Communications Specialist.Army is at the forefront of communications technology and bolsters one of the most robust communications networks on the planet.As a communications technician...Show more
Last updated: 30+ days ago
Lead Security Electronics Technician

Lead Security Electronics Technician

Confires Fire Protection Service, LLC • Elizabeth, NJ, USA
Full-time
Quick Apply
Lead Security Electronics Technician.Confires Fire Protection Service, LLC is a leader in the industry for providing fire protection and security services throughout New Jersey, Delaware and Philad...Show more
Last updated: 13 days ago
COMPLIANCE SPECIALIST

COMPLIANCE SPECIALIST

Sunrise Systems • New Brunswick, New Jersey, United States
Temporary
Quick Apply
Job Title: COMPLIANCE SPECIALIST.Contract (Possible extension based on work performance).Mon-Fri(normal business hours).This role is a key position within the CSO organization to ensure day-to-day ...Show more
Last updated: 30+ days ago
Security Officer (Part-time)

Security Officer (Part-time)

IPS Corporate Security • Somerset, New Jersey, United States
Part-time
Quick Apply
Security Officers to join our team.Your role as a Security Officer will be to provide exceptional customer service to our clients and guests, monitor and report any activity, and work hand in hand ...Show more
Last updated: 7 days ago
Food Safety & QA Specialist I

Food Safety & QA Specialist I

Central Garden & Pet • Monroe, New Jersey, United States
Full-time
Quick Apply
Food Safety & QA Specialist I.This role plays a key part in supporting the Quality Assurance (QA) department by ensuring the facility and its products meet customer specifications and audit require...Show more
Last updated: 26 days ago
Armis Security Specialist – Laboratory & OT/IoT Environments

Armis Security Specialist – Laboratory & OT/IoT Environments

Momento USA • East Hanover, NJ, United States
Temporary
Quick Apply
MailAutoSig">Position: Armis Security Specialist Laboratory & OT/IoT Environments Location: New Jersey or Pennsylvania Duration: 6-12 Months Contract Show more
Last updated: 8 days ago
Digital Pathology Application Specialist

Digital Pathology Application Specialist

Hamamatsu Corporation • Middlesex, NJ, US
Full-time
Quick Apply
Hamamatsu, one of the world’s largest suppliers of advanced light detectors and detector systems for industrial, scientific, and commercial applications, has an immediate opening for a Digital Path...Show more
Last updated: 30+ days ago
Transition Specialist

Transition Specialist

Caring Transitions • Somerset, NJ, US
Part-time
Quick Apply
We are looking for Advocating, Caring, and Expert individuals to join our team! Caring Transitions of Hendersonville, NC helps seniors make smooth and stress-free transitions from one living situat...Show more
Last updated: 30+ days ago