OpenTextNASDAQ: OTEX: Develops software for enterprise information management and digital transformation.
5+ YOE1+ Mgmt5+ years software engineering; 1–2+ years in technical leadership; experience with web tech, DAST, and Agile; proficient in at least one modern language (.NET, HTML/CSS/JS).
Dillard'sNYSE: DDS: National department store chain retailing apparel, cosmetics, and home goods.
Experience with web and application security, DAST/SAST, web application firewalls, vulnerability verification, SDLC security controls, plus strong communication and ethical behavior.
Morgan StanleyNYSE: MS: Global financial services firm providing investment and wealth management.
10+ YOE10+ years IT experience with 7+ years in application security, expertise in SAST/SCA/DAST, CI/CD integration, security reviews, metrics reporting, and stakeholder communication.
TAB Bank: Offers commercial lending and digital banking solutions for businesses.
3+ YOE3+ years in application security, DevSecOps, or related roles; hands-on with SAST/DAST/SCA and container/code scanning; experience with Terraform and AWS; strong communication and integrity.
Mitek SystemsNASDAQ: MITK: Provider of AI-powered identity verification and mobile deposit solutions.
5+ YOE5+ years in application security with hands-on SAST/DAST/SCA, application penetration testing, secure code review, threat modeling, API security, and developer enablement.
SAST, DAST, SCA, OWASP Top 10, OAuth 2.0, mTLS, STRIDE, PASTA
Harness: AI-powered platform for automating software delivery and DevOps.
Experienced pre-sales engineer with AppSec knowledge (SAST/DAST/SCA), demo and workshop delivery, ability to translate security needs to engineering, and willingness to travel occasionally.
SMBC GroupNew York Stock Exchange: SMFG: Provides global banking, investment, securities, and consumer finance services.
5+ YOE5+ years in application security with SAST/DAST experience, code review ability, vulnerability remediation, CI/CD integration, container security, and use of Jira/Confluence.
Cyber Security Analyst III - App Security & Vulnerability (Remote)
Raleigh or North Carolina or Arizona or Texas
RemoteFull Time
First Citizens BankNasdaq: FCNCA: Provides full-service consumer, commercial, and wealth management banking.
6+ YOEHands-on experience with SAST/DAST/SCA and web application security, proficiency in scripting languages, vulnerability triage and remediation, and experience integrating security into SDLC/CI-CD.
SmartRentNYSE: SMRT: Provides smart home and building automation for rental housing.
4+ YOE4–6 years in application security; secure SDLC; cloud and web security; strong communication; experience with OWASP, SAST/DAST/SCA; AWS and WAF knowledge.
Awardco: Software platform for employee recognition and corporate rewards programs.
6+ YOE6+ years in application security or secure software engineering; cloud SaaS security; web/API security; experience with SAST/DAST and CI/CD; mentoring developers.
Morgan StanleyNYSE: MS: Provides global investment banking, wealth management, and advisory services.
10+ YOE10+ years IT experience with 7+ years in application security; expertise in SDLC, SAST/SCA/DAST, container scanning, CI/CD integration, security reviews, and stakeholder communication.
DatadogNASDAQ: DDOG: Observability and security platform for cloud applications and infrastructure.
Software engineering background with hands-on code review; knowledge of OWASP Top 10, SAST/DAST, API security; able to mentor engineers and define secure-by-default solutions.
Go, Python, Rust, OWASP, SAST, DAST, API security, APM, CI/CD
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
8+ YOE8+ years experience building React and Node.js applications; backend with FastAPI, .NET, or Node.js; PostgreSQL and ORM experience; familiarity with security (DAST/SAST/SCA) and Azure DevOps.