Kestra
Application Security Engineer
Austin, Texas · Posted 1 month ago
Opens jobs.dayforcehcm.com
Get a version of your resume written for this job.
- Salary
- Not listed
- Job type
- Not specified
- Work mode
- Not specified
- Source
- Dayforce (employer's hiring system)
Skills mentioned
CI/CD, DevOps, Python, JavaScript, C#, Bash
About the role
Lead with Purpose. Partner with Impact.
Kestra Holdings offers industry-leading wealth management platforms for independent wealth management professionals nationwide. With an innovative culture that celebrates independence, the company seeks to redefine the future of the advisory industry through superior service, cutting-edge technology, and preeminent resources that every financial professional needs to succeed in the market now and in the years to come.
Kestra Holdings companies collectively oversee $123 billion in assets under administration (AUA) and support more than 2,400+ independent financial professionals across the country in delivering comprehensive securities, trust, and investment advisory services to their clients. Located in the “Silicon Hills” of Austin, Texas, Kestra Holdings offers an experience as unique as the city in which it operates.
The Application Security Engineer will be pivotal in integrating security into our development and operations processes. As an expert in development and security, the ideal candidate will foster a culture of shared security responsibility across the entire organization. This position requires a balance of application security know-how and some DevOps experience.
What you’ll Do:
Secure Software Development: Ensure security measures are embedded throughout the development lifecycle.
Tool Management: Manage security tools and solutions.
Security Assessments: Perform regular security assessments, code reviews, and penetration tests.
Automation: Integrate security tools, standards, and processes into the CI/CD pipeline and KPI reporting.
Collaboration: Partner closely with IT and development teams to ensure secure architectural designs and to address application security concerns.
Training & Culture: Advocate for a strong security culture and provide development teams with secure coding training and resources to help them build secure applications from the start.
Documentation: Maintain DevSecOps and secure software development documentation to ensure accuracy.
Continuous Learning: Stay up-to-updated with security trends, vulnerabilities, and best practices.
What You Bring:
Bachelor’s degree in computer science, IT, or related field.
2+ years of proven experience in a similar role.
A strong understanding of the OWASP Top 10 vulnerabilities.
Proficiency in Python and basic Javascript, Bash, Powershell, and C# knowledge.
Hands-on experience with CI/CD tools and integrating security into DevOps processes.
Job ID df-kestra-kestracareersite-8121 · Original posting ↗
Similar jobs
SkillBridge, Application Security Engineer - TraineeNewEquinixDallas, Texas · Hybrid
Application Security Engineer, AWS Proactive SecurityNewAmazonSeattle, Washington
Staff Application Security Engineer (R5949)2dShield AIRemote, United States · Remote · US$143,000–214,000 / year
Application Security Engineer2dBright Vision TechnologiesMonroeville, Pennsylvania
Senior Application Security Engineer2dVerisignReston, Virginia