Application Security Engineer
Charlotte, NC, United States
Applications have closed
LendingTree
LendingTree helps you get the best deal possible on your loans. By providing multiple offers from several lenders, we show your options, you score the win.The Position:
LendingTree is seeking an Application Security Engineer to join our security team. You will be responsible for helping to secure custom-built applications and working in partnership with engineering teams. This position requires a strong understanding of enterprise software development and CI/CD deployment systems/methodologies and will also perform cyber-incident response/investigation activities as required. Highly visible position within the organization, requiring frequent interactions with various internal and external stakeholders. Must possess strong written/verbal communication skills and the ability to condense highly technical concepts for consumption by a non-technical audience. Preferred candidates will be “out of the box” thinkers with an insatiable desire to solve complex problems.
Requirements:
- Must be local to Charlotte, NC or willing to relocate and able to work onsite on hybrid schedule
- Collaborate with internal and external security teams to ensure proper security testing
- Work closely with development and infrastructure teams to understand security findings
- Manage secure-coding training program to ensure developer compliance
- Provide security guidance on a constant stream of new products and technologies
- Drive internal security and privacy initiatives
- Analyze, assess, and respond to various threats, escalating as necessary
- Conduct regular application security and architectural reviews
- Assist with third party audits and compliance reviews
- Assist with cyber-incident response and digital forensics activities as needed
Skills and Experience:
- Strong understanding of enterprise software development and CI/CD deployment systems and methodologies
- Understanding of core information security principles and goals
- Knowledge of application security best practices
- Basic experience with web application penetration testing using tools such as Burp Suite Pro, OWASP ZAP, etc.
- Demonstrated programming knowledge with languages such as Python, PowerShell, Bash, Go, Node, C#
- DevOps pipeline experience related to the automation of application testing, delivery, and infrastructure as code
- Familiarity with various application and code scanning technologies - SAST, DAST, RASP
- Strong security aptitude and an ability to learn new technologies quickly
- Proven analytical, problem solving, and collaboration skills
- A proven ability to communicate effectively and regularly with internal and external stakeholders relating to incidents, problems, changes, and maintenance
- 2+ year experience working in an Cloud environment
- Security certifications preferred but not required (CISSP, OSCP, OSWE, GWAPT, etc)
- Preferred candidates will have a basic understanding of cyber-incident response, digital forensics, and log collection/analysis methodologies
- B.S. or higher degree in Computer Science or related field
Company:
LendingTree is the nation’s largest online lending marketplace. That means we connect customers with multiple lenders, so they find the best deals on loans, credit cards, savings accounts and insurance. Our goal is to help people save money, and we believe the best way to do that is by giving them a way to shop for loans and compare lenders, so they make their best financial choices.
Our CEO Doug Lebda founded the company in 1996 after a frustrating house-hunting experience. In those days, we mostly helped people find good mortgage deals. Now, we help consumers find their best in personal loans, auto loans, business loans, student loans, credit cards, savings accounts, home equity loans and more.
What else you should know:
- We’re a publicly traded company (TREE).
- We’ve welcomed several other companies into the LendingTree family to augment our efforts at helping borrowers make their most sensible financial choices.
- We’ve built a LendingTree app and LendingTree dashboard to give consumers tools to lead and supervise their financial health.
- We still make funny commercials.
Culture:
We’re a fast-paced company with an entrepreneurial bend. We work hard and test our products often. We’re collaborative, ambitious, candid and high-energy. Our teammates are some of the brightest, most talented people you’ll ever work with. We care more about your smarts than we do about the kinds of clothes you wear (but please, do wear clothes to work!), and we’re pretty good about rewarding innovation, creativity and the knack for just getting stuff done (we even have an award for employees called the GSD, “Get Stuff Done”).
Come work with us!
LendingTree is the kind of company that not only promotes diversity and inclusion; we thrive because of these values. We do not discriminate based on race, color, religion (or creed), gender, gender expression, age, national origin, disability, marital status, sexual orientation or military status.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Audits Automation Bash Burp Suite C CI/CD CISSP Cloud Compliance Computer Science DAST DevOps Forensics GWAPT Incident response OSCP OSWE OWASP Pentesting PowerShell Privacy Python SAST
Perks/benefits: Career development Insurance
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Cyber Security Architect jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Cybersecurity Analyst jobs
- Open IT Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open CISM-related jobs
- Open ISO 27001-related jobs
- Open Network security-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open Windows-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security assessment-related jobs
- Open Kubernetes-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open DevSecOps-related jobs
- Open CEH-related jobs