Full-Time Senior Application Security Engineer
Experian is hiring a remote Full-Time Senior Application Security Engineer. The career level for this job opening is Experienced and is accepting Ireland based applicants remotely. Read complete job description before applying.
Experian
Job Title
Posted
Career Level
Career Level
Locations Accepted
Share
Job Details
Job DescriptionIn this remote role, reporting to the Director, Application Security, you will work with software engineers and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC).
Responsibilities
- Collaborate with development teams to understand their needs, assess risks, and customize solutions.
- Implement and manage security tools (SAST, SCA, DAST) and integrate solutions into CI/CD pipelines.
- Review applications against common flaws (e.g., OWASP Top 10) and provide visibility to senior management.
- Work with Risk & Compliance teams on audits (e.g., SOC 2, PCI-DSS, HIPAA) and recommend relevant policies.
- Define security guardrails through automated tool policies, SLAs, and custom rules.
Qualifications5+ years of direct experience in enterprise-level application security, with a strong understanding of MITRE, OWASP, SafeCode, and risk management methodologies related to integration/software testing.Experience in AppSec or DevSecOps, collaborating with developers to adopt and mature secure development practices. Proficiency with SAST, SCA, DAST, IAST, RASP, and other DevSecOps tools, including deploying, maintaining, operating, and improving these tools.Solid background in software development, familiar with development lifecycle processes and technologies. Experience with CI/CD pipelines and related technologies (e.g., Git, Jenkins, Maven, Chef, Puppet, Ansible, Nexus, Artifactory, NPM) and cloud-based architectures.Experience overseeing the integration of cross-functional applications between disparate business units and systems.Experience in business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping.