Hallmark - Kansas City, MO

posted 3 months ago

Full-time
Hybrid - Kansas City, MO
Sporting Goods, Hobby, Musical Instrument, Book, and Miscellaneous Retailers

About the position

The Application Security Engineer plays a crucial role in linking the Information Security divisional programs and processes to various architectural models that demonstrate how the organization's current security needs will be met efficiently, sustainably, and adaptively. This position requires a multifaceted approach, utilizing various analysis disciplines including business, data, technology, application, and services. The engineer will be instrumental in shaping the security landscape of the organization by ensuring that security considerations are integrated into the design and development of applications and services. In this role, you will be responsible for providing input into architecture security policies, standards, and procedures. You will partner with service delivery teams to create application, data, and technology designs from a security perspective for new services. Additionally, you will collaborate with development teams to implement secure CI/CD guardrails for both current and future development activities. A significant part of your responsibilities will include helping to develop an automated reporting system and applying security architectures and frameworks to your scope of work. You will also align security process requirements with process portfolios, external research, and strategy development, ensuring that architectural requirements and compliance are practical, achievable, and meet regulatory, business, and divisional objectives. Your contributions will be vital in fostering a culture of security awareness and best practices within the organization, ultimately enhancing the overall security posture of the company.

Responsibilities

  • Providing input into architecture security policies, standards and procedures
  • Partnering with service delivery teams to create application, data and technology designs from a security perspective for new services
  • Collaborating with development to apply secure CI/CD guardrails to current and future development activities
  • Helping develop an automated reporting system
  • Applying security architectures and frameworks to the scope of work
  • Aligning security process requirements with process portfolios, external research, and strategy development
  • Delivering architectural requirements and compliance that is practical, achievable, and meets regulatory, business, and divisional objectives

Requirements

  • Bachelor's degree or 4 years of professional work experience
  • At least 3 years of development experience in Java, C#, C/C++, or PHP
  • At least 1 year of information security experience
  • Experience with network protocols (TCP/IP, HTML, etc.)

Nice-to-haves

  • BS in Computer Science or a related field
  • Industry certifications - CISSP, GISP, GSEC, GWAPT, etc.
  • At least 5 years of development experience in multiple languages (C/C++, Java, C#, PHP)
  • At least 3 years of information security experience
  • Ability to work with developers to help them create secure applications without unnecessarily slowing the development process
  • Good communication skills
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service