15 hours ago
Base Salary
$116k - $170k/yr
Responsibilities
- Collaborate with stakeholders to design secure applications, assess applications for security weaknesses, and coordinate remediation.
- Mentor engineers and security champions on threat modeling techniques.
- Triage and prioritize security risks, vulnerabilities, and exceptions according to business impact and risk tolerance.
- Coordinate the orchestration, automation, and management of security technologies and platforms.
- Manage the application security lifecycle, including identification, threat assessment, threat modeling, and risk avoidance.
- Create actionable security posture reports and define metrics, KRIs, and security scorecards.
- Serve as the Application Security subject-matter expert and first point of contact for critical issues, risk assessments, and CI/CD issue triage.
- Evaluate requirements and implement tools, processes, technologies, and automation that improve security posture.
- Use data to identify systemic issues, prioritize work, and influence roadmap decisions.
- Lead projects, initiatives, and resources through direct and indirect leadership.
Requirements
- 6–8 years of experience in a Security Engineering role, with experience in DevSecOps, Cloud Security, and Application Security.
- Experience with vulnerability scanning technologies, AST platforms, and cloud security tooling.
- Formal experience with threat modeling and security risk assessment and prioritization.
- Cloud experience with AWS, Azure, and GCP.
- Knowledge of Infrastructure as Code and Policy as Code concepts.
- Experience leading projects, initiatives, and resources through direct and indirect leadership.
- Familiarity with security controls, guidelines, and frameworks including SOC2, ISO 27001/27013, and NIST 800-53.
- Ability to automate tasks and code solutions for repetitive problems.
- Scripting or programming experience with Java, .NET, HTML, Ruby, PHP, Perl, C#, Python, JavaScript, PowerShell, or Bash.
- Experience with penetration testing and web application assessment.
- Strong communication, collaboration, critical thinking, problem-solving, and stakeholder relationship-building skills.
- Ability to communicate risk in business-relevant language to technical and non-technical audiences and solve complex business and technical issues strategically.
Benefits
- Hybrid work environment near Irving, TX or Stamford, CT, with flexibility to work from home and collaborate in offices.
- Competitive base salary of $116,000–$170,000, plus eligibility for an annual bonus plan or role-based sales incentive plan.
- 20+ PTO days plus holidays and floating holidays in the first year.
- Medical, dental, and vision insurance.
- 401(k) with corporate match and immediate vesting.
- Health and wellness allowance programs, parental leave, tuition reimbursement, employee stock purchase plan, employee assistance program, and charity match.
- Mentorship, apprenticeship, leadership courses, development programs, technical courses, certification opportunities, and other growth and learning programs.
Tech Stack
Categories
About Gartner
Gartner is a public research and advisory firm that sells subscription research, consulting, and conferences to CIOs and business leaders at large enterprises and governments. Its offerings include market analysis (e.g., Magic Quadrant), peer benchmarks, expert advisory, and events. Founded in 1979 and headquartered in Stamford, Connecticut, Gartner trades on the NYSE (ticker: IT) and is a member of the S&P 500.
