Talent.com
Application Security Engineer
Application Security EngineerMechanics Bank • Walnut Creek, California
Application Security Engineer

Application Security Engineer

Mechanics Bank • Walnut Creek, California
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Mechanics Bank is currently searching for an Application Security Engineer to join our team. Here at Mechanics Bank, we value connection, partnership, long term relationships and working together in person. This role can work remote within the US.

Under limited direction, the Application Security Engineer is responsible for securing the bank’s network and external-facing applications through continuous penetration testing, application code review, threat hunting, web application firewall management, and vulnerability scanning. This role requires effective communication of remediation requirements to both technical and business leaders. Additionally, the engineer takes a leading role in DevSecOps process discussions and planning.

What you will do :

  • Defines security requirements for the implementation of new applications and projects : Serves as a security engineer / consultant on projects, works closely with the application development team to ensure coding follows security best practices, provides security guidance during the design and implementation phases to ensure robust security controls are integrated from the start.
  • Performs continuous penetration testing : Effectively documents and reports findings, illustrating risks and requirements for resolution. Recommends and implements improvements based on testing outcomes.
  • Leads security research on threats and remediation techniques and technology : Makes informed recommendations to Information Security and Information Technology teams, oversees the implementation of recommended security measures.
  • Conducts security event analysis and intrusion detection (IDS / IPS) : Leads incident response efforts, including triage, incident analysis / forensics, and remediation. Develops and refines incident response processes and playbooks.
  • Serves on the Incident Response Team : Focuses on Computer Incident Response, coordinates with various teams to ensure a cohesive and effective incident response.
  • Supports the Bank’s operational information security responsibilities, including the development and maintenance of standards, procedures, and guidelines necessary to satisfy the Information Security department’s network operations.
  • Manages and enhances the bank’s network vulnerability management program : Regularly assesses and updates vulnerability management practices to ensure they meet current security standards and address emerging threats.
  • Assists in conducting risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications and systems.
  • Provides technical support to regulatory agencies, external auditors, and internal auditors, as required, to respond to audits and examinations of the Bank’s control environment

Who you are :

  • Preferred : Bachelor’s Degree in a related field, or equivalent education, certifications, and experience
  • Required : 3 - 5 years’ experience in application security, penetration testing, or a comparable role
  • Required : Understanding of one or more of the following programming languages : C#, Angular JavaScript, T-SQL
  • Preferred : Industry Standard Certifications, such as : CompTIA CASP+; GIAC, EC-Council, (ISC)2, OSCP, CompTIA Linux+; ISC2 CISSP, CompTIA Network+
  • Understanding of one or more scripting languages.
  • Understanding of Linux, Windows, and Mac OS.
  • Passion for automation and scripting (Python, Perl, Bash, PowerShell, etc.).
  • Strong technical skills with Microsoft Office; must have the ability to effectively communicate and write reports understandable to both business and technical staff.
  • Threat analysis / Incident Response : interpreting events and analyzing network traffic.
  • Mitigating and addressing threat vectors including XSS, broken authentication, SQL injections, SSRF, misconfigurations, insecure designs.
  • Application vulnerabilities / penetration testing / remediation.
  • Knowledge of current and upcoming IT security technologies.
  • Awareness of the latest and common security threats (OWASP Top 10, OWASP for API).
  • Excellent ability to diagnose and troubleshoot accessibility issues.
  • Skill in oral and written communication, including presentations to senior management.
  • Ability to influence and work with employees at all levels of the organization
  • #LI-HJ1

    Pay Range : $130,000 - $170,000 annually

    AIP / Bonus : Up to 15%

    Our comprehensive employee benefits program is designed for you to live your best life at work, home, and everywhere in between. Employees working 25 hours or more per week are eligible for health benefits effective the first day of the month following or coinciding with their date of hire.

    Benefits package includes[1] :

    Medical, prescription, dental, and vision coverage for employees and their eligible family members

    Employer paid Employee Assistance Program, Life Insurance, AD&D, and Disability benefits

    Health Savings Account with employer contribution

    Healthcare and Dependent Care Flexible Spending Accounts and Commuter / Parking Benefit

    401(k) and Roth 401(k) with company contribution

    529 Education Savings plan, Tuition Reimbursement Program and Student Loan Assistance Program

    Supplemental Health plans, Voluntary Legal and Identity Theft Services

    11 paid holidays, paid Sick days (accrual of one hour for every 30 hours worked), up to 25 paid vacation days, and 16 hours of paid volunteer time throughout the calendar year

    Free personal checking and savings account; Discounted rates on primary residence loan with $0 origination fees (restrictions apply)

    Final compensation package will be determined by the work experience, education, and / or skill level of the applicant along with internal equity and alignment with geographic market data.

    Mechanics Bank is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, religion, national origin, age, genetic information, veteran status, or on the basis of disability, gender identity, sexual orientation or other bases prohibited by applicable law.

    [job_alerts.create_a_job]

    Application Security Engineer • Walnut Creek, California

    [internal_linking.similar_jobs]
    Application Security Engineer

    Application Security Engineer

    VirtualVocations • Hayward, California, United States
    [job_card.full_time]
    A company is looking for a Security Engineer, Application Security.Key Responsibilities Build security into the AI platform through threat modeling, secure architecture design, and integrating se...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Offensive Security Analyst III

    Offensive Security Analyst III

    Robert Half • San Ramon, California, USA
    [job_card.full_time]
    Offensive Security Analyst III in San Ramon CA : .Job Duties : Support and enhance the daily operations of the Enterprise Information Security (EIS) organization. This role focuses on streamlining inte...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Wind Risk Engineer

    Wind Risk Engineer

    Berkshire Hathaway Specialty Insurance • San Ramon, CA, US
    [job_card.full_time]
    A strategic and trusted insurance partner, Berkshire Hathaway Specialty Insurance (BHSI), provides a broad range of commercial property, casualty and specialty insurance coverages and outstanding s...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Nuclear Engineer

    Nuclear Engineer

    Fuse • San Leandro, CA, US
    [job_card.permanent]
    Fuse is on a mission to accelerate the world’s transition to fusion energy.Our core product is TITAN : an Impedance Matched Marx Generator (IMG). TITAN is the most efficient and powerful (TW) m...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Engineer 2

    Engineer 2

    Apex Companies • Pleasant Hill, CA, US
    [job_card.full_time]
    Are you highly motivated, hard-working, and seeking to join a growth-focused consulting & engineering firm? Are you looking for a company that will invest in your development and grow your prof...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Principal Software Quality Engineer

    Principal Software Quality Engineer

    Calyxo, Inc. • Pleasanton, CA, United States
    [job_card.full_time]
    The company was founded in 2016 to address the profound need for improved kidney stone treatment.Kidney stone disease is a common, painful condition that consumes vast amounts of healthcare resourc...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr Contract Security Analyst

    Sr Contract Security Analyst

    GOAHEAD SOLUTIONS LLC • Pleasanton, California, US
    [job_card.full_time]
    Job Description Job Description Seeking a Sr Security Analyst Consultant to lead staff in the implementation & execution of technical aspects of the client's enterprise security plan.Will be the ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    CT Technologist

    CT Technologist

    Providence • Fairfield, CA, US
    [job_card.full_time]
    CT Technologist in Main CT Unit at Queen of the Valley Medical Center, CA.This position is Full time and will work 10-hour Variable Shifts. Providence Queen of the Valley Medical Center.Providence Q...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Principal Software Quality Engineer - Pleasanton, CA

    Principal Software Quality Engineer - Pleasanton, CA

    Calyxo • Pleasanton, CA, US
    [job_card.full_time]
    The company was founded in 2016 to address the profound need for improved kidney stone treatment.Kidney stone disease is a common, painful condition that consumes vast amounts of healthcare resourc...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Technician II - Security

    Technician II - Security

    Paladin Technologies • Hayward, California, US
    [job_card.full_time]
    Job Description Job Description This Technician II position will provide efficient and high-quality installations related to integrated security systems. Responsibilities include, but are not limi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Principal Cyber Security Engineer

    Principal Cyber Security Engineer

    Cloud Software Group, Inc. • San Ramon, CA, United States
    [job_card.full_time]
    Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Web Application Developer-Onsite

    Web Application Developer-Onsite

    Optimized Technical Solutions • Fairfield, CA, US
    [job_card.full_time]
    Maintenance Group Web Application Development.Maintenance Group (MXG) at Travis Air Force Base.This position involves developing and maintaining critical web applications to support the operational...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Practice Lead (Nationwide)

    Security Practice Lead (Nationwide)

    Presidio Networked Solutions, LLC • Pleasanton, CA, United States
    [job_card.full_time]
    Presidio, Where Teamwork and Innovation Shape the Future.AtPresidio, we're at the forefront of a global technology revolution, transforming industries throughcutting-edge digital solutions and next...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Operations Engineer

    Security Operations Engineer

    pony.ai • Fremont, CA, US
    [job_card.full_time]
    Founded in 2016 in Silicon Valley, Pony.Operating Robotaxi, Robotruck and Personally Owned Vehicles (POV) business units, Pony. CNBC Disruptor list of the 50 most innovative and disruptive tech comp...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Network Security Engineer

    Senior Network Security Engineer

    STN Incorporated • Pleasanton, CA, US
    [job_card.full_time]
    If you are looking to be challenged and to grow professionally, and you want to be valued and recognized for your contributions, STN is looking for you. STN recognizes our team members are our prima...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    R&D Engineer

    R&D Engineer

    Gateway Recruiting • Pleasanton, CA, US
    [job_card.full_time]
    Use engineering knowledge to design, develop, verify and validate product designs in support of company's strategic plan. Contribute as part of a cross-functional team in product design and deve...[show_more]
    [last_updated.last_updated_30] • [promoted]
    R&D Engineer

    R&D Engineer

    Spectraforce Technologies • Pleasanton, CA, United States
    [job_card.full_time]
    Location : 6101 Stoneridge Dr, Pleasanton, CA, 94588.Bachelor or Masters in Software Engineering, Systems Engineering, Computer Science or similar field. Development of Application Software.Creating / ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Specialty Solutions Engineer - Observability

    Sr. Specialty Solutions Engineer - Observability

    AHEAD • San Ramon, CA, US
    [job_card.full_time]
    AHEAD builds platforms for digital business.By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]