Jobs
>
Claymont

    Application Security Engineer - Claymont, United States - SoFi

    SoFi
    SoFi Claymont, United States

    7 hours ago

    Default job background
    Description

    The role

    SoFi Product Security team assists and partners with engineering, product and design organizations. Our mission is to secure the products and services delivered to our members and customers. We deploy best in class Product Security practices, compliance frameworks, and design patterns by collaborating with product owners, engineers, and executives. The mission is core to SoFi's value "Put our member's interest first"..

    As an Application Security Engineer, you will be responsible for ensuring the security of our existing and new platforms, products, and services. You will work in conjunction with security architects, development (engineering), and product teams to review systems and services with security controls baked into them. This role is the primary face of the security organization to other groups within SoFi.

    The ideal candidate will be highly collaborative, balancing the right level of security with business objectives, and working to creatively solve complex Product Security related problems in an agile environment.

    What you'll do:

    • Perform regular vulnerability assessments using different tools. Regularly drive remediation and reporting of cataloged vulnerabilities.
    • Assess discovered vulnerabilities and properly prioritize their scope, impact and necessary response actions.
    • Conduct security reviews of our products and production infrastructure.
    • Contribute to vulnerability management, application security and/or offensive/red-team operations.
    • Engage in security audit and security regulatory exercises with partners and vendors.
    • Support regulatory compliance monitoring and reporting
    • Support treatment and remediation activities with identified points of contact and system owners
    • Develop processes and document procedures for use by other team members and to enhance efficiencies

    What you'll need:

    • Bachelor's Degree in Computer Science, Information Systems, or equivalent work-related experience
    • Strong knowledge of industry standards regarding vulnerability management including Common Vulnerabilities and Exposures (CVE), Common Vulnerability Scoring System (CVSS), OWASP, etc.
    • Experience with different types of vulnerability assessment tools or related experience in vulnerability detection DAST/SAST tools
    • Outstanding communication and interpersonal skills, with the capacity to effectively convey intricate security concepts to both technical and non-technical stakeholders.
    • Ability to demonstrate knowledge with prioritizing remediation activities with operational teams through risk ratings of vulnerabilities and assets
    • Experience judging the vulnerability priority based on risk and impact
    • Deep application security knowledge, with the ability to map an application vulnerability to exploitation indications and relevant investigative techniques.
    • Experience with at least one scripting language (Bash, Go, Python).
    • Experience with Secure Software Development Life Cycles.

    Preferred Qualifications:

    • 2+ years of experience in an information technology/security role
    • 2+ years of experience with cloud technologies
    • Ability to manage relationships with other business units, external vendors, and stakeholders when IT security risks are present and system or process changes must be made to mitigate risk
    • Familiarity with AWS and at-scale services
    • Experience with micro-service architecture
    • Knowledge of CI/CD, application development and testing tools
    • Ability to work in a fast paced and Agile development environment
    • Work and play well with others; SoFi is a collaborative environment

    Nice to have:

    • Masters or PhD in Computer Science or Engineering
    • Financial services experience
    Compensation and Benefits The base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate's experience, skills, and location. To view all of our comprehensive and competitive benefits, visit our Benefits at SoFi page

    Pay range: $89, $168, Payment frequency: Annual This role is also eligible for a bonus, long term incentives and competitive benefits. More information about our employee benefits can be found in the link above.



  • Liberty Personnel Services, Inc. Wilmington, United States

    Job Details: · Application Security Engineer (Hybrid or Remote) · Growing technology driven company is expanding again and seeking a talented Application Security Engineer. Qualified candidates will have similar experience with the following: · Java Programming and Bash, Pytho ...


  • Planet Technology USA Wilmington, United States

    NO 3RD PARTY RECRUITERS · 12 Month Security Engineer contract out of Wilmington, MA - Hybrid - 3 days per week · Responsibilities: · Azure experience from a primary role · CyberArk Deployment experience · General IAM Experience · Security Takedown experience · Deployments · Net ...


  • Keylent Inc Wilmington, United States

    Visa status: U.S. Citizens and those authorized to work in the U.S. are encouraged to apply. · Tax Terms: W2, 1099 · Corp-Corp or 3rd Parties: Yes · Title/Position: · Cyber Security Engineer · Location: · Reading, PA / Tampa, FL · Salary : DOE · No of Positions: 2 · Summary ...


  • JPMorgan Chase Bank, N.A. Wilmington, United States

    Cybersecurity is one of the highest growth areas within JPMorgan and has a unique opportunity to develop and deploy Machine Learning solutions that support Cyber Operations. A successful candidate must be comfortable working independently, have an understanding of data analysis, ...


  • Cloud Analytics Technologies LLC Wilmington, United States

    Local Candidates Preferred. Non-local candidates must be willing to pay for your own interview travel expenses and relocation costs · **Candidates submitted over the max. bill rate will be automatically disqualified and counted as a submittal. For each position CBD allows only 2 ...


  • Compunnel Inc. Wilmington, United States

    Position: Network Firewall Engineer · Location: Plano, TX (Day 1 Onsite NEED ONLY LOCAL · Mode Of Hire : Contract · Must Have: · Forescout, Firemon/Algosec, network access controls (NAC), Palo Alto/Cisco ASA, REST APIs, AWS CLI, Terraform and Python scripting. · ...

  • QData

    Security Engineer

    3 weeks ago


    QData Woodlyn, United States contract

    Required Skills & Qualifications Security Engineer" skills and in depth working knowledge on Static Security code scans using Coverity Gymnasium etc Static Container Security Scan pipelines using Twistlock Run-time Application intrusion detection thread modelling specifically at ...

  • QData

    Security Engineer

    3 hours ago


    QData Woodlyn, United States contract

    Required Skills & Qualifications Security Engineer" skills and in depth working knowledge on Static Security code scans using Coverity Gymnasium etc Static Container Security Scan pipelines using Twistlock Run-time Application intrusion detection thread modelling specifically at ...


  • Sargent & Lundy Wilmington, United States

    · This position requires an engineer who has expertise in US nuclear cyber security rules and NEI cyber security guidance. · Responsibilities will include, but are not limited to: · Reviewing Critical Digital Asset (CDA) determinations and assessments for technical accuracy. · ...

  • Motion Recruitment Partners LLC

    Security Engineer

    2 days ago


    Motion Recruitment Partners LLC Philadelphia, United States

    Security Engineer - Hands-On and Consulting · Philadelphia, PA · Open to Remote · Contract · $60/hr - $75/hr · If you are on the hunt for a Security Engineer position, we've got an exciting opportunity. A legal software service is looking to bring on a contractor in their securit ...

  • Motion Recruitment

    Security Engineer

    2 days ago


    Motion Recruitment Fort Washington, United States

    This local SaaS company is looking for a well-rounded security engineer to spearhead their security initiatives. They are currently going through FedRAMP and also want this person to be highly technical. It's a very cross-functional role that will allow you to get your hands on t ...

  • JPC Partners

    Security Engineer

    1 day ago


    JPC Partners Philadelphia, United States

    JPC Partners is looking for a skilled Security Engineer to join the team and play a pivotal role in maintaining the security of a dynamic tech stack. In this role, you will conduct security assessments, prioritize remediation actions, and collaborate closely with Product and Oper ...

  • Motion Recruitment Partners LLC

    Security Engineer

    6 days ago


    Motion Recruitment Partners LLC Cherry Hill, United States

    Job Description · We are seeking a highly skilled and motivated security engineer to join a dynamic cyber security team. Your primary focus will be on assessing and maintaining security measures to protect against vulnerabilities. A few responsibilities include incident response, ...


  • Peraton Delaware, United States Full time

    Responsibilities · Peraton requires Network Engineers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) - 3. Positions are located at the SOCOM Headquarters at MacDill, AFB FL, and at the TSOC and Component locations in the United States ...

  • Motion Recruitment Partners LLC

    Security Engineer

    6 days ago


    Motion Recruitment Partners LLC Fort Washington, United States

    This local SaaS company is looking for a well-rounded security engineer to spearhead their security initiatives. They are currently going through FedRAMP and also want this person to be highly technical. It's a very cross-functional role that will allow you to get your hands on t ...


  • Peraton Delaware, United States Full time

    Responsibilities · Peraton requires Systems Engineers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) - 3. Positions are located at the SOCOM Headquarters at MacDill, AFB FL, and at the TSOC and Component locations in the United States ...

  • Motion Recruitment

    Security Engineer

    1 day ago


    Motion Recruitment Bridgeton, United States

    This well-known healthcare organization is seeking a Senior Security Analyst to join their well-established security team. The organization is working on rolling out some exciting enterprise tech as well as some automation; they are looking for a security generalist (vulnerabilit ...

  • Motion Recruitment Partners LLC

    Security Engineer

    5 days ago


    Motion Recruitment Partners LLC Bridgeton, United States

    This well-known healthcare organization is seeking a Senior Security Analyst to join their well-established security team. The organization is working on rolling out some exciting enterprise tech as well as some automation; they are looking for a security generalist (vulnerabilit ...


  • Securitas Electronic Security Inc. Wilmington, United States

    **Position Summary** · The Nurse Call Implementation Manager will manage a Technician Team serves as the Regional Lead maintaining oversight of projects is the primary point of contact for the customer or a partner and is responsible for ensuring successful completion of project ...


  • LANXESS Wilmington, United States

    **Who we are**: · LANXESS is a leading specialty chemicals company with sales of EUR 7.6 billion in 2021 and more than 13,000 employees in 33 countries. The core business of LANXESS is the development, manufacturing and marketing of chemical intermediates, additives, specialty ch ...