WiproNYSE: WIT: Global technology services and consulting for digital transformation.
5+ YOE5+ years experience in application security including SAST/SCA/DAST, CI/CD integration, AI/LLM scanning, container and cloud knowledge, and programming with Java/Python/Groovy.
Cyber Security Analyst III - App Security & Vulnerability (Remote)
Raleigh or North Carolina or Arizona or Texas
RemoteFull Time
First Citizens BankNasdaq: FCNCA: Provides full-service consumer, commercial, and wealth management banking.
6+ YOEHands-on experience with SAST/DAST/SCA and web application security, proficiency in scripting languages, vulnerability triage and remediation, and experience integrating security into SDLC/CI-CD.
Vanguard: Provides mutual funds, ETFs, and investment management services.
Undergraduate degree or equivalent; strong experience with DAST and CI/CD integration; familiarity with SAST, SCA, IAST, RASP, secure SDLC, and standards such as NIST, OWASP, MITRE.
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
8+ YOE8+ years experience building React and Node.js applications; backend with FastAPI, .NET, or Node.js; PostgreSQL and ORM experience; familiarity with security (DAST/SAST/SCA) and Azure DevOps.
New York or Connecticut or Texas or Rhode Island or Massachusetts
$118k-$261k/yrRemoteFull Time
CVS HealthNYSE: CVS: Provides retail pharmacy, health insurance, and pharmacy benefit management services.
7+ YOE2+ Mgmt7+ years in enterprise security and security program leadership; experience with cloud-native architectures, application security, vulnerability management, SAST/SCA/SBOM, developer enablement, and security automation.
Packetlabs: Provides expert manual penetration testing and ethical hacking services.
2+ YOEExperienced application security tester in Texas with programming, web services, attack proxy, penetration testing, consulting, information security, OWASP, SAST, and DAST expertise; OSCP or Burp mandatory.
Charlotte or Chandler or Irving or Minneapolis or Canada
$100k-$163k/yrHybridFull Time
Wells FargoNYSE: WFC: Global provider of banking, investment, and mortgage financial services.
4+ YOE4+ years of information security engineering or equivalent experience; expertise in application security, SAST, DAST, SCA, IaC, CI/CD, OWASP, MITRE frameworks, SSDLC, and security tooling.
ToyotaNYSE: TM: Designs and manufactures vehicles and provides automotive financial services.
3+ YOE3-6 years in application security; experience with SAST/DAST/SCA; code review; CI/CD; cloud security; IaC; strong QA of web, APIs, and mobile apps.
EquinixNASDAQ: EQIX: Global provider of data center and digital infrastructure services.
8+ YOEApplication security or DevSecOps experience, CI/CD and cloud security knowledge, infrastructure-as-code skills, and familiarity with SAST, SCA, DAST, threat modeling, OWASP, NIST, and secure development practices.
PepsiCoNASDAQ: PEP: Global manufacturer and distributor of snacks and beverages.
3+ YOEBachelor's in CS/Engineering or related and 3+ years experience; application security, vulnerability management, cloud-native security, Python/Go, SAST/SCA/DAST, WAF, and CI/CD security experience.
PepsiCoNASDAQ: PEP: Global food and beverage manufacturer and distributor.
3+ YOEBachelor's in CS/Engineering or equivalent,3+ years experience,proficiency with Python or Go,experience with SAST/SCA/DAST,WAF,policy-as-code (OPA/Sentinel),cloud security (AWS/Azure/GCP),and vulnerability management.
3MNYSE: MMM: Manufacturers diversified industrial, safety, consumer, and electronics products.
3+ YOEBachelor's in cybersecurity/computer science/technology, 3+ years application security experience, hands-on SAST/DAST/SCA and CI/CD integration, threat modeling knowledge, strong communication; must be authorized to work without sponsorship.
Information Protection Senior Advisor (Product Security – DevSecOps)
Plano or Bloomington or Austin or Morris Plains or Bloomfield or St. Louis
$125k-$208k/yrHybridFull Time
The Cigna GroupNYSE: CI: Provides health insurance and pharmacy benefit management services.
8+ YOE8+ years in cybersecurity/app or product security, experience automating security in CI/CD, hands-on SAST/DAST/SCA/MAST, cloud familiarity (AWS/Azure/GCP), scripting (Python/Java/Shell) and Agile experience.
Austin or Chicago or Denver or Los Angeles or San Diego or San Francisco or United States or Australia or New Zealand or Canada or United Kingdom or Philippines
$131k-$169k/yrHybridFull Time
Karbon: Practice management software for accounting firms.
4+ YOE4+ years security/development experience embedding AppSec in SDLC, cloud (Azure/AWS/GCP), SAST/SCA/DAST configuration, CI/CD security, code review, Python/PowerShell/Bash, and strong communication skills.
Veeam: Data resilience and security for hybrid cloud environments
8+ YOEUS citizens only. 8+ years in application/product security or DevSecOps, 3+ years SAST/DAST/SCA/IAST and vulnerability management experience, experience with CI/CD, cloud, IaC, scripting, secure SDLC, and API integrations.
CACINYSE: CACI: Provides information technology and professional services to government clients.
5+ YOEBachelor's degree, active TS/SCI, 5+ years cyber engineering (2+ with modern software), Kubernetes security, IaC/PaaS/DevSecOps experience, Ansible and scripting, SIEM/SAST/DAST/SCA familiarity, network protocol knowledge.