Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Application Security Engineer II (Container Security) image - Rise Careers
Job details

Application Security Engineer II (Container Security)

Who Are We?

Taking care of our customers, our communities and each other. That’s the Travelers Promise. By honoring this commitment, we have maintained our reputation as one of the best property casualty insurers in the industry for over 160 years. Join us to discover a culture that is rooted in innovation and thrives on collaboration. Imagine loving what you do and where you do it.

Job Category

Technology

Compensation Overview

The annual base salary range provided for this position is a nationwide market range and represents a broad range of salaries for this role across the country. The actual salary for this position will be determined by a number of factors, including the scope, complexity and location of the role; the skills, education, training, credentials and experience of the candidate; and other conditions of employment. As part of our comprehensive compensation and benefits program, employees are also eligible for performance-based cash incentive awards.

Salary Range

$111,600.00 - $184,200.00

Target Openings

1

What Is the Opportunity?

Travelers is seeking an Application Security Engineer II to join our organization as we grow and transform our Technology landscape. This engineer will focus on supporting and driving security initiatives related to containerized development. Additionally, the individual will complete advanced end to end security engineering tasks for specific system including security research, application security testing, interpretation of vulnerability scan results, threat modeling code reviews, and will provide defensive coding techniques consulting. Works with circle leads in a Value Stream on security and performs Application Security testing for Value Stream. Provides guidance on testing to Application Security Engineer I. Performs application architecture security reviews. Partners with Cybersecurity and Enterprise Security Engineering on testing and remediation of vulnerabilities and implementation of Cybersecurity patterns.

What Will You Do?

  • Support the development of a container image security strategy to include supply chain risk initiatives.
  • Support the container image security strategy implementation and integration with DevOps pipelines.
  • Promote a culture around secure container development.
  • Perform security research, application security testing, interpretation of vulnerability scan results, threat modeling code reviews and advise on defensive coding techniques with a high degree of accuracy and speed, operating as an individual contributor to team goals.
  • Work independently to tackle well-scoped and loosely scoped problems.
  • Seek opportunities to expand technical knowledge and capabilities.
  • Provide technical guidance and mentorship to less experienced employees.
  • Perform other duties as assigned

What Will Our Ideal Candidate Have?

  • Bachelor's degree plus four years of modern application development or  application security experience.
  • Moderate experience in Container Security working with technologies like Kubernetes and container technologies such as Docker or OpenShift
  • Moderate experience with development in AWS
  • Moderate knowledge and understanding of container security and related risks.
  • Moderate knowledge and experience with build (CI/CD) pipeline technologies such as GitHub Actions, Jenkins, and/or GitLab CI/CD.
  • Experience with container image hardening and base image management.
  • Experience with integrating and managing tools involving SAST, SCA, and Secrets scanning capabilities.
  • Familiarity of microservices architecture and design patterns.
  • Delivery - Intermediate delivery skills including the ability to estimate accurate timelines for tasks and deliver work at a steady, predictable pace to achieve commitments, contribute to the software design strategy and methodologies used to best meet the system requirements, consider and build for many different use cases, avoid over engineering, and ensure automation, deliver complete solutions but release them in small batches, and identify important tradeoffs and negotiate them.
  • Domain Expertise - Demonstrated track record of domain expertise including understanding technical concepts necessary to do the job effectively and aware of industry trends, demonstrate willingness, cooperation, and concern for business issues and priorities, and possess in depth knowledge of immediate systems worked on and some knowledge of adjacent systems.
  • Problem Solving - Strong problem solver who ensures solutions are built for the long term, is able to resolve new issues, recognizes mistakes using them as learning and teaching opportunities and consistently breaks down large problems into smaller, more manageable ones.
  • Communication - Strong communicator who possesses the ability to articulate information clearly and concisely with the business, document work in a clear, easy to follow manner, collaborate well with team members as both a mentor and mentee, take in vague requirements and ask the right questions to ensure clarification, offer feedback appropriately and effectively, seek out and receives constructive criticism well, listen when others are speaking and make space for colleagues to share their thoughts.
  • Leadership - Intermediate leadership skills with the ability to help create a safe environment for others to learn and grow as engineers and a proven track record of self-motivation in identifying opportunities and tracking team efforts.

What is a Must Have?

  • Three years of system security experience.

What Is in It for You?

  • Health Insurance: Employees and their eligible family members – including spouses, domestic partners, and children – are eligible for coverage from the first day of employment.
  • Retirement: Travelers matches your 401(k) contributions dollar-for-dollar up to your first 5% of eligible pay, subject to an annual maximum. If you have student loan debt, you can enroll in the Paying it Forward Savings Program. When you make a payment toward your student loan, Travelers will make an annual contribution into your 401(k) account. You are also eligible for a Pension Plan that is 100% funded by Travelers.
  • Paid Time Off: Start your career at Travelers with a minimum of 20 days Paid Time Off annually, plus nine paid company Holidays.
  • Wellness Program: The Travelers wellness program is comprised of tools, discounts and resources that empower you to achieve your wellness goals and caregiving needs. In addition, our mental health program provides access to free professional counseling services, health coaching and other resources to support your daily life needs.
  • Volunteer Encouragement: We have a deep commitment to the communities we serve and encourage our employees to get involved. Travelers has a Matching Gift and Volunteer Rewards program that enables you to give back to the charity of your choice.

Employment Practices

Travelers is an equal opportunity employer. We value the unique abilities and talents each individual brings to our organization and recognize that we benefit in numerous ways from our differences. 

In accordance with local law, candidates seeking employment in Colorado are not required to disclose dates of attendance at or graduation from educational institutions.

If you are a candidate and have specific questions regarding the physical requirements of this role, please send us an email so we may assist you.

Travelers reserves the right to fill this position at a level above or below the level included in this posting.

To learn more about our comprehensive benefit programs please visit http://careers.travelers.com/life-at-travelers/benefits/.

Average salary estimate

$147900 / YEARLY (est.)
min
max
$111600K
$184200K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Application Security Engineer II (Container Security), Travelers

Join Travelers as an Application Security Engineer II focused on Container Security, where your expertise will help shape the future of our technology landscape! Located in the vibrant city of Atlanta, Georgia, you'll be diving into the exciting world of containerized development, ensuring that our applications not only serve their purpose but do so securely. In this role, you will champion security initiatives, conduct security testing, and mentor junior engineers—all while working in a collaborative and innovative environment. You'll support the development of a container image security strategy, implement that strategy into DevOps pipelines, and advocate for secure container development practices. As you tackle security research and application testing, you'll interact with various teams to remediate vulnerabilities, deliver effective solutions, and promote best practices. With a focus on growth, we believe in providing our employees not only with a competitive annual salary ranging from $111,600 to $184,200 but also a dynamic benefits package that includes health insurance, retirement plans, and ample PTO. At Travelers, we strive to create a culture of belonging and empowerment, where you can thrive in your career while making an impact. So, are you ready to make a difference with us?

Frequently Asked Questions (FAQs) for Application Security Engineer II (Container Security) Role at Travelers
What are the responsibilities of an Application Security Engineer II at Travelers?

As an Application Security Engineer II at Travelers, your key responsibilities include supporting and driving security initiatives related to containerized development, conducting application security testing, and performing application architecture security reviews. You will also mentor junior engineers and collaborate with cross-functional teams to remediate vulnerabilities.

Join Rise to see the full answer
What qualifications do I need to be an Application Security Engineer II at Travelers?

To qualify for the Application Security Engineer II position at Travelers, candidates should possess a bachelor's degree along with three years of system security experience. Additionally, experience with container technologies like Kubernetes and Docker, knowledge of CI/CD tools, and familiarity with security risks related to modern application development are highly beneficial.

Join Rise to see the full answer
How does Travelers support continued learning for Application Security Engineers?

Travelers is committed to employee growth, encouraging Application Security Engineers to seek opportunities to expand their technical knowledge and capabilities. Company support includes mentorship programs, access to industry conferences, and resources for further education in the field of cybersecurity.

Join Rise to see the full answer
What are the expectations for teamwork within the Application Security Engineer role at Travelers?

Working as an Application Security Engineer II at Travelers means being part of a collaborative team environment. Engineers are expected to promote secure coding practices among peers, participate in collaborative security reviews, and provide mentorship, all while helping to foster a culture of security within the development teams.

Join Rise to see the full answer
What is the work culture like at Travelers for an Application Security Engineer II?

At Travelers, the work culture for an Application Security Engineer II is built around innovation and collaboration. Employees are encouraged to voice their ideas, participate in team discussions, and engage in community service projects, all while enjoying comprehensive benefits that support work-life balance.

Join Rise to see the full answer
Common Interview Questions for Application Security Engineer II (Container Security)
Can you explain your experience with container security technologies?

In preparation for this question, provide specific examples of your hands-on experience with container security tools like Docker and Kubernetes. Talk about how you implemented security measures or protocols in your previous roles and how those efforts contributed to the overall security posture of your projects.

Join Rise to see the full answer
How would you approach threat modeling for a new application?

Your response should include a structured approach: identifying assets, understanding threats, and determining potential vulnerabilities. Highlight any previous experiences where you successfully completed a threat model and what tools or frameworks you used to assist in the process.

Join Rise to see the full answer
What are some common vulnerabilities associated with containers, and how would you mitigate them?

Discuss specific vulnerabilities like insecure configurations, outdated images, or privilege escalation. Explain the strategies you would employ for mitigation, such as regular updates, vulnerability scanning, and establishing security policies within the CI/CD pipeline.

Join Rise to see the full answer
Can you describe a time when you had to mentor a less experienced engineer?

Reflect on your mentoring experience by illustrating how you guided a junior engineer through a challenging task. Share the specific techniques you used to communicate concepts effectively and how you measured their understanding and growth throughout the process.

Join Rise to see the full answer
How do you keep up with the latest trends in application security?

Mention the resources you use to stay informed, such as industry publications, blogs, online courses, or cybersecurity forums. Share your commitment to continuous learning and how you implement the latest trends and technologies into your work.

Join Rise to see the full answer
What is your experience with integrating security into CI/CD pipelines?

Discuss specific examples where you integrated security measures into CI/CD workflows. Talk about the tools you utilized, such as SAST or SCA, and how they enhanced the security of the development process while allowing for efficient delivery.

Join Rise to see the full answer
Can you elaborate on your experience with vulnerability scanning tools?

You should explain the types of vulnerability scanning tools you've used and the process you followed to analyze and remediate the results from those scans. Discuss any instances where your actions led to improved secure coding practices or faster remediation times.

Join Rise to see the full answer
How would you handle a conflict with a team member regarding security best practices?

Emphasize the importance of communication and collaboration when dealing with conflicts. Discuss how you would approach the conversation by being open, listening to their perspective, and trying to reach a consensus based on company policies and security best practices.

Join Rise to see the full answer
What steps would you take if you discovered a critical vulnerability in a production application?

Highlight the importance of quickly assessing the severity of the vulnerability. Explain the immediate actions you would take, such as notifying stakeholders, determining a patch strategy, and ensuring proper communication with teams involved in the application deployment.

Join Rise to see the full answer
What makes you a good fit for the Application Security Engineer II position at Travelers?

Personalize your answer by discussing your combination of technical expertise, problem-solving abilities, and your eagerness to contribute to Travelers’ mission. Share specific experiences that demonstrate your alignment with the company's goals and values.

Join Rise to see the full answer
Similar Jobs
Posted 2 days ago

Join Virginia Mason Franciscan Health as an Epic Informaticist RN to implement clinical information systems that improve healthcare delivery.

Photo of the Rise User
Bosch Group Remote Omladinskih Brigada 90E, Beograd, Serbia, Serbia
Posted 11 days ago
Photo of the Rise User
Leidos Hybrid Baltimore, Maryland, United States
Posted 8 days ago
Photo of the Rise User
Posted 3 days ago

Join Peraton as a Senior Network Administrator to enhance our national security network infrastructure.

Photo of the Rise User
Haworth Hybrid US, Ottawa County, MI; Michigan, Holland, MI
Posted 7 days ago
Photo of the Rise User
H&M Group Remote Magazynowa 3, 62-023 Gądki, Poland
Posted 8 days ago
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 2, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Columbus just viewed Summer 2025 Communications Internship at BBYO
Photo of the Rise User
Someone from OH, West Chester just viewed National Sales Director, Legal Services at Dane Street, LLC
Photo of the Rise User
Someone from OH, Cincinnati just viewed Product Analyst - Crypto Product Team at Visa
Photo of the Rise User
15 people applied to Cybersecurity Intern at Dewberry
C
Someone from OH, Columbus just viewed Intern- HR at Cadence
Photo of the Rise User
8 people applied to Intern, IT Analytics at Viatris
Photo of the Rise User
Someone from OH, Dublin just viewed Senior Product Designer at Nextech
Photo of the Rise User
Someone from OH, Cincinnati just viewed Academy Administrative Associate at FC Cincinnati
Photo of the Rise User
52 people applied to SOC Analyst I at Epsilon
Photo of the Rise User
67 people applied to Jr SOC Analyst at IBM
Photo of the Rise User
40 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
Someone from OH, Cincinnati just viewed Partnership Consultant - Strategy & Analytics at Two Circles
Photo of the Rise User
Someone from OH, New Philadelphia just viewed Experienced Crown Stand-up Forklift Operator at Shearer's Foods
Photo of the Rise User
Someone from OH, Youngstown just viewed Story Apprentice at Skydance
Photo of the Rise User
Someone from OH, Columbus just viewed Talent Acquisition Specialist (Retail) at Mejuri
Photo of the Rise User
Someone from OH, Loveland just viewed Yard Coordinator at Maddox Industrial Transformer
Photo of the Rise User
Someone from OH, Dayton just viewed Front Desk Clerk at Marriott International
Photo of the Rise User
Someone from OH, Cincinnati just viewed Newborn/Pediatric Nurse Care Manager at Included Health
T
Someone from OH, Cleveland just viewed Commvault Backup L1/L2 at Talent Worx
Photo of the Rise User
Someone from OH, Cleveland just viewed Special Education PD Designer at GoalBook
Photo of the Rise User
Someone from OH, Fairfield just viewed Materials Associate at Anduril Industries