Talent.com
Application Security Engineer

Application Security Engineer

Mechanics BankWalnut Creek, California
30+ days ago
Job type
  • Full-time
Job description

Mechanics Bank is currently searching for an Application Security Engineer to join our team. Here at Mechanics Bank, we value connection, partnership, long term relationships and working together in person. This role can work remote within the US.

Under limited direction, the Application Security Engineer is responsible for securing the bank’s network and external-facing applications through continuous penetration testing, application code review, threat hunting, web application firewall management, and vulnerability scanning. This role requires effective communication of remediation requirements to both technical and business leaders. Additionally, the engineer takes a leading role in DevSecOps process discussions and planning.

What you will do :

  • Defines security requirements for the implementation of new applications and projects : Serves as a security engineer / consultant on projects, works closely with the application development team to ensure coding follows security best practices, provides security guidance during the design and implementation phases to ensure robust security controls are integrated from the start.
  • Performs continuous penetration testing : Effectively documents and reports findings, illustrating risks and requirements for resolution. Recommends and implements improvements based on testing outcomes.
  • Leads security research on threats and remediation techniques and technology : Makes informed recommendations to Information Security and Information Technology teams, oversees the implementation of recommended security measures.
  • Conducts security event analysis and intrusion detection (IDS / IPS) : Leads incident response efforts, including triage, incident analysis / forensics, and remediation. Develops and refines incident response processes and playbooks.
  • Serves on the Incident Response Team : Focuses on Computer Incident Response, coordinates with various teams to ensure a cohesive and effective incident response.
  • Supports the Bank’s operational information security responsibilities, including the development and maintenance of standards, procedures, and guidelines necessary to satisfy the Information Security department’s network operations.
  • Manages and enhances the bank’s network vulnerability management program : Regularly assesses and updates vulnerability management practices to ensure they meet current security standards and address emerging threats.
  • Assists in conducting risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications and systems.
  • Provides technical support to regulatory agencies, external auditors, and internal auditors, as required, to respond to audits and examinations of the Bank’s control environment

Who you are :

  • Preferred : Bachelor’s Degree in a related field, or equivalent education, certifications, and experience
  • Required : 3 - 5 years’ experience in application security, penetration testing, or a comparable role
  • Required : Understanding of one or more of the following programming languages : C#, Angular JavaScript, T-SQL
  • Preferred : Industry Standard Certifications, such as : CompTIA CASP+; GIAC, EC-Council, (ISC)2, OSCP, CompTIA Linux+; ISC2 CISSP, CompTIA Network+
  • Understanding of one or more scripting languages.
  • Understanding of Linux, Windows, and Mac OS.
  • Passion for automation and scripting (Python, Perl, Bash, PowerShell, etc.).
  • Strong technical skills with Microsoft Office; must have the ability to effectively communicate and write reports understandable to both business and technical staff.
  • Threat analysis / Incident Response : interpreting events and analyzing network traffic.
  • Mitigating and addressing threat vectors including XSS, broken authentication, SQL injections, SSRF, misconfigurations, insecure designs.
  • Application vulnerabilities / penetration testing / remediation.
  • Knowledge of current and upcoming IT security technologies.
  • Awareness of the latest and common security threats (OWASP Top 10, OWASP for API).
  • Excellent ability to diagnose and troubleshoot accessibility issues.
  • Skill in oral and written communication, including presentations to senior management.
  • Ability to influence and work with employees at all levels of the organization
  • #LI-HJ1

    Pay Range : $130,000 - $170,000 annually

    Final compensation package will be determined by the work experience, education, and / or skill level of the applicant along with internal equity and alignment with geographic market data.

    Mechanics Bank is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, religion, national origin, age, genetic information, veteran status, or on the basis of disability, gender identity, sexual orientation or other bases prohibited by applicable law.

    Create a job alert for this search

    Application Security Engineer • Walnut Creek, California

    Related jobs
    • Promoted
    FIPS Certified Security Engineer

    FIPS Certified Security Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Security Engineer, FIPS / CC (Mobile Devices).Key Responsibilities Lead the end-to-end validation process for IT products, including security assessments and documentatio...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer Hybrid - San Francisco

    Senior Application Security Engineer Hybrid - San Francisco

    vercel.comSan Francisco, CA, United States
    Full-time
    Vercel gives developers the tools and cloud infrastructure to build, scale, and secure a faster, more personalized web.AI SDK, Vercel helps customers like Ramp, Supreme, PayPal, Chick-fil-A, and Un...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Mercor, Inc.San Francisco, CA, United States
    Full-time
    Mercor is training models that predict how well someone will perform on a job better than a human can.We use our platform to source, vet, and onboard expert contractors who help train AI models in ...Show moreLast updated: 15 days ago
    • Promoted
    Application Security Analyst

    Application Security Analyst

    VirtualVocationsConcord, California, United States
    Full-time
    A company is looking for an Application Security Analyst to protect its digital ecosystem.Key Responsibilities Analyze and refine security findings from various security tools Reduce false posit...Show moreLast updated: 26 days ago
    • Promoted
    Senior Application Security Engineer (Hybrid - US)

    Senior Application Security Engineer (Hybrid - US)

    Energy SolutionsOakland, CA, United States
    Full-time
    Interested in joining a growing company where you will work with talented colleagues, enhance a supportive and energetic culture, and be part of the climate solution? At Energy Solutions, we focus ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    KubeltSan Francisco, CA, United States
    Full-time
    World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all....Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, Application & Platform Security

    Senior Security Engineer, Application & Platform Security

    SentrySan Francisco, CA, United States
    Full-time
    Bad software is everywhere, and we’re tired of it.Sentry is on a mission to help developers write better software faster so we can get back to enjoying technology. With more than $217 million in fun...Show moreLast updated: 22 days ago
    • Promoted
    Security Engineer

    Security Engineer

    KaedimSan Francisco, CA, United States
    Full-time
    As a Security Engineer, you will play a critical role in safeguarding our organization’s digital assets and infrastructure. You will be responsible for identifying vulnerabilities, implementing secu...Show moreLast updated: 30+ days ago
    • Promoted
    PAM Security Engineer

    PAM Security Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for an IAM / PAM Security Engineer to implement cybersecurity strategies for protecting digital identities within a federal agency's IT environment.Key Responsibilities Imple...Show moreLast updated: 2 days ago
    • Promoted
    Security Engineer

    Security Engineer

    Zūm Services, Inc.San Francisco, CA, United States
    Full-time
    Zum is a rapidly expanding Series E startup backed by industry leaders Sequoia Capital, SoftBank, Spark Capital, and GIC. We transform the school transportation industry by deploying technology-driv...Show moreLast updated: 2 days ago
    • Promoted
    Principal Security Engineer

    Principal Security Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Principal Security Engineer (IC4).Key Responsibilities Contribute to the design, implementation, integration, and hands-on analyses to improve software behavior underst...Show moreLast updated: 30+ days ago
    • Promoted
    Web Application Security Lead

    Web Application Security Lead

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Web Application Security Subject-Matter Expert (SME) / Technical Lead.Key Responsibilities : Lead the design, implementation, and management of the web application secur...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer, Enterprise Security

    Security Engineer, Enterprise Security

    TuroSan Francisco, CA, United States
    Full-time
    Turo is searching for a highly motivated and versatile Security Engineer to spearhead our efforts in securing enterprise systems and data through the design, implementation, and continuous improvem...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    VapiSan Francisco, CA, United States
    Full-time
    Vapi is building the future of voice‑native applications.Our platform equips companies with everything they need—telephony, real‑time streaming, deterministic fallbacks, HIPAA / SOC2 compliance, and ...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    MonographSan Francisco, CA, United States
    Full-time
    Our mission is to modernize the payments infrastructure for trucking and logistics.We're building Stripe for Transportation, centering our customers in every way and offering them world-class custo...Show moreLast updated: 2 days ago
    • Promoted
    Security Engineer - Application Security

    Security Engineer - Application Security

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for a Security Engineer - Application & AI Security (REMOTE).Key Responsibilities Build and deploy security controls across web applications, data pipelines, and AI systems; ...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer

    Security Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for a Security Engineer to join their cybersecurity team.Key Responsibilities Administer and maintain identity providers and manage endpoint protection platforms Monitor and...Show moreLast updated: 30+ days ago
    • Promoted
    FIPS 140 Security Engineer

    FIPS 140 Security Engineer

    VirtualVocationsSan Francisco, California, United States
    Full-time
    A company is looking for a FIPS 140 Security Engineer to support various FIPS 140 validation projects.Key Responsibilities Conduct general security analysis and design work for product architectu...Show moreLast updated: 15 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Security Infrastructure Support Senior Security Engineer.Key Responsibilities : Design, install, maintain, and support enterprise IT systems across hybrid environments ...Show moreLast updated: 30+ days ago
    • Promoted
    Security engineer, application security

    Security engineer, application security

    writer.comSan Francisco, CA, United States
    Full-time
    AppSec, DevSecOps automation, and red team operations to secure our AI and AGI applications.At WRITER, security is woven into the heart of our innovation. As we continue to push the boundaries of AI...Show moreLast updated: 30+ days ago