Centene - St. Louis, MO
posted about 2 months ago
As a key player in Centene's mission to enhance health outcomes for our 28 million members, this position focuses on leading cybersecurity and privacy principles to ensure that the organization's applications and services are implemented in accordance with internal security standards. The role involves recognizing vulnerabilities in security systems through various methods such as vulnerability and compliance scanning. The individual will oversee and perform critical tasks including threat modeling, security code reviews, security assessments, and security hardening reviews throughout the Secure Software Development Life Cycle (SSDLC) process. Additionally, the position requires engineering and developing cloud automation routines to streamline operations, promoting understanding and adherence to the SSDLC Policy and Standards. The successful candidate will work directly with application development teams to ensure that application weaknesses and identified vulnerabilities are effectively mitigated or remediated based on Service Level Agreements (SLA). This role is also responsible for the application security testing (AST) technology strategy and roadmap development, championing the understanding and adherence to Centene's secure SDLC policy and standard. The individual will analyze existing plans, policies, and procedures for incident response and recovery, representing Applications Security Engineering at Service Design meetings and other Enterprise Architecture-level gatherings. In addition, the role involves responding to security incidents, providing technical incident support, and serving as the primary liaison between other IT Security teams and development teams. Other duties may be assigned as necessary, and compliance with all policies and standards is expected.