Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Application Engineer image - Rise Careers
Job details

Senior Security Application Engineer

Position: Application Security Engineer This is a contract to hire 6 to 12 month conversion. This requirement is a hybrid position that requires 5 days per month onsite in Albany, NY Education: Bachelor's degree in Computer Science, or related technical field, OR equivalent combination of education and experience Required Experience : § 8+ years Information Technology. § 5+ years in software development role as a Developer, or Architect § Java/Web development with strong secure coding background in RHEL and JBoss. § 3+years with Application Security Engineering conducting assessments, penetration testing, implementing tools for dynamic /automated code review, dynamic and static application scanning (Fortify, SonarQube); consulting on security designs of applications, potential vulnerabilities, and remediation, and creating training materials on key security concepts. Skills : § Strong oral and written communication skills, with a demonstrated ability to communicate complex topics to colleagues, and management. § Demonstrated collaboration and teaching abilities. § Strong analytical skills. § Identify and resolve problems in a timely manner; gather and analyze information skillfully; develop alternative solutions. § Critical thinking and creative problem solving Plus: CISSP, CEH, CISA, OSCP, OSCE, or OSWE Certifications
Charles Schwab Glassdoor Company Review
4.1 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Charles Schwab DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Charles Schwab
Charles Schwab CEO photo
Walt Bettinger II
Approve of CEO

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Application Engineer, Charles Schwab

Are you ready to take your career to the next level? As a Senior Security Application Engineer at our innovative company in Sedalia, CO, you'll be at the forefront of application security. This hybrid role provides an exciting opportunity to enhance your skills while only requiring five days onsite each month in Albany, NY. With over eight years in IT and a solid background in software development, including five years as a developer or architect, you will collaborate with a team of passionate professionals on cutting-edge security assessments and penetration testing. Your strong expertise in Java/Web development, along with experience in tools like Fortify and SonarQube, will be crucial in identifying vulnerabilities and implementing dynamic and static application scanning. If you're not only technically proficient but also an excellent communicator who can simplify complex concepts for diverse audiences, this is the perfect place for you. You’ll not only drive our security initiatives forward but also create training materials to educate your peers about critical security concepts. Whether you're holding a bachelor's degree in Computer Science or have equivalent experience, your analytical thinking, problem-solving skills, and ability to work collaboratively will make a huge impact on our success. Plus, your industry certifications like CISSP or CEH will set you apart in this exciting position. Come join us and become an integral part of our mission to safeguard our applications!

Frequently Asked Questions (FAQs) for Senior Security Application Engineer Role at Charles Schwab
What are the responsibilities of a Senior Security Application Engineer at our company?

As a Senior Security Application Engineer, your responsibilities include conducting thorough security assessments and penetration tests on applications, implementing tools for code review, and performing dynamic and static application scanning using tools like Fortify and SonarQube. Additionally, you'll be integral in consulting on security designs for our applications and addressing potential vulnerabilities. Your role will also encompass the creation of training materials focused on essential security concepts, making sure that both technical teams and management are informed.

Join Rise to see the full answer
What qualifications do you need to apply for the Senior Security Application Engineer position?

To apply for the Senior Security Application Engineer role in Sedalia, CO, you typically need a bachelor's degree in Computer Science or a related technical field, or a combination of education and relevant experience. You should have over eight years of experience in Information Technology, with at least five years in a software development role. Proficiency in Java/Web development along with strong secure coding practices is required, as well as at least three years of experience in Application Security Engineering.

Join Rise to see the full answer
What technical skills are essential for the Senior Security Application Engineer role?

Essential technical skills for the Senior Security Application Engineer role at our company include a strong understanding of Java and Web development, secure coding practices, and experience with Red Hat Enterprise Linux (RHEL) and JBoss. Additionally, familiarity with application security tools such as Fortify and SonarQube is crucial. Your experience in conducting assessments, implementing dynamic and static application scanning, and developing secure designs will be key to success in this position.

Join Rise to see the full answer
How important are communication skills for the Senior Security Application Engineer position?

Communication skills are extremely important for the Senior Security Application Engineer position. You will need to convey complex security-related topics to both technical colleagues and management effectively. Strong oral and written communication abilities will allow you to develop training materials and share insights on security designs and vulnerabilities clearly. This role relies on collaboration and teaching, making your ability to communicate well vital for the success of both your projects and your team.

Join Rise to see the full answer
What certifications can enhance your application for the Senior Security Application Engineer position?

Certifications such as CISSP, CEH, CISA, OSCP, OSCE, or OSWE will enhance your application for the Senior Security Application Engineer position. These credentials demonstrate your commitment to the field of application security and your knowledge of best practices. While they are not mandatory, having them will certainly set you apart as a qualified candidate and show your dedication to maintaining the highest security standards.

Join Rise to see the full answer
Common Interview Questions for Senior Security Application Engineer
Can you explain your experience with secure coding practices in Java?

In your answer, describe specific projects where you implemented secure coding practices in Java, detailing the methods you used to prevent vulnerabilities such as SQL injection or XSS attacks. Highlight any knowledge you have of relevant frameworks or libraries that facilitate secure coding.

Join Rise to see the full answer
How do you approach conducting application security assessments?

Discuss your methodology for conducting security assessments, which may include threat modeling, vulnerability scanning, and manual testing. Share your experience with tools such as Fortify and SonarQube and provide examples where your assessments led to meaningful improvements.

Join Rise to see the full answer
What strategies do you use for penetration testing?

Outline your comprehensive approach to penetration testing, including planning, identification of targets, exploitation methods, and reporting. Mention any specific techniques or tools you utilize and discuss a successful penetration test you led.

Join Rise to see the full answer
Describe a time when you identified a critical vulnerability. What steps did you take?

Use a specific example to describe how you found and communicated the vulnerability to the team. Discuss the actions you took in your role to mitigate the issue, and highlight any collaboration with other departments to ensure the vulnerability was resolved.

Join Rise to see the full answer
Can you explain how you keep up with the latest security trends and threats?

Share your strategies for staying informed about the latest security trends, such as following industry blogs, attending conferences, or participating in relevant online forums. Highlight how this knowledge has benefitted your work and improved security practices within your projects.

Join Rise to see the full answer
What role does collaboration play in your job as a Senior Security Application Engineer?

Emphasize the importance of collaboration in your role, detailing how you work with developers, management, and other stakeholders to address security concerns. Provide examples of successful projects where teamwork was essential to achieving security goals.

Join Rise to see the full answer
How do you communicate complex security concepts to non-technical stakeholders?

Discuss your approach to making complex security topics understandable for non-technical stakeholders, whether through simplified explanations, visual aids, or tailored presentations. Provide an example of when you successfully communicated a challenging concept.

Join Rise to see the full answer
What tools and techniques do you use for dynamic and static application testing?

List the tools you are familiar with for dynamic and static application testing and explain how you use them in the context of application security. Discuss some specific scenarios where these tools provided critical insights.

Join Rise to see the full answer
What is your experience in developing training materials on security concepts?

Share your experience in creating training materials focused on security concepts, detailing the target audience and the content covered. Discuss the feedback you received on the materials and any changes you made based on that feedback.

Join Rise to see the full answer
How do you prioritize security issues when managing multiple projects?

Explain your process for assessing and prioritizing security issues, including how you evaluate risk levels. Discuss any tools or methodologies you use to help streamline your assessment and manage your workload effectively.

Join Rise to see the full answer

Our purpose is to champion every client’s goals with passion and integrity, empowering them to take ownership of their financial future at every income level and life stage.

148 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Contract, hybrid
DATE POSTED
December 8, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!