Senior Application Security Engineer

Costa Mesa, CA, United States

Experian

Experian is committed to helping you protect, understand, and improve your credit. Start with your free Experian credit report and FICO® score.

View all jobs at Experian

Apply now Apply later

Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.

We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.

We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.

Job Description

In this remote role, reporting to the Director of Application Security, you will work with software engineers and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC).

You will do this by:

  • Collaborating with development teams to understand their needs, assess risks, and customize solutions.
  • Implementing and managing security tools (SAST, SCA, DAST) and integrating solutions into CI/CD pipelines.
  • Reviewing applications against common flaws (e.g., OWASP Top 10) and providing visibility to senior management.
  • Working with Risk & Compliance teams on audits (e.g., SOC 2, PCI-DSS, HIPAA) and recommending relevant policies.
  • Defining security guardrails through automated tool policies, SLAs, and custom rules.

Qualifications

  • 5+ years of direct experience in enterprise-level application security, with a strong understanding of MITRE, OWASP, SafeCode, and risk management methodologies related to integration/software testing.
  • Experience in AppSec or DevSecOps, collaborating with developers to adopt and mature secure development practices. Proficiency with SAST, SCA, DAST, IAST, RASP, and other DevSecOps tools, including deploying, maintaining, operating, and improving these tools.
  • Solid background in software development, familiar with development lifecycle processes and technologies. Experience with CI/CD pipelines and related technologies (e.g., Git, Jenkins, Maven, Chef, Puppet, Ansible, Nexus, Artifactory, NPM) and cloud-based architectures.
  • Experience overseeing the integration of cross-functional applications between disparate business units and systems.
  • Expertise in business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping.
  • Project management skills and substantial exposure to project-based work structures and lifecycle models.
  • Experience understanding and addressing end-user needs and requirements.

Additional Information

Benefits/Perks:

  • Great compensation package and bonus plan
  • Core benefits including full medical, dental, vision, and matching 401K
  • Flexible work environment, ability to work remote, hybrid or in-office
  • Flexible time off including volunteer time off, vacation, sick and 12-paid holidays

Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

#LI-Remote

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Analytics Ansible Application security Audits CI/CD Cloud Compliance DAST DevSecOps HIPAA IAST Jenkins Maven OWASP Puppet Risk management SAST SDLC SLAs SOC SOC 2

Perks/benefits: 401(k) matching Flex hours Flex vacation Health care Insurance Salary bonus Wellness

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.