Charles Schwab

Application Security Engineer

Charles Schwab$90K — $120K *
Omaha, NE 68104In-Person
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of engineering experience in Software Security Assurance or Application Security
  • Strong analytical ability to interpret data and deliver actionable insights
  • Experience with Software Composition Analysis (SCA), SAST, and secrets management tools
  • Solid application engineering background with knowledge of common vulnerabilities
  • Familiarity with industry frameworks like OWASP, CIS, and NIST
  • Minimum 2 years of experience with static analysis or threat modeling tools
  • Understanding of secure coding practices and architectural risk assessment

Responsibilities

  • Enhance security controls and reduce software vulnerabilities
  • Collaborate with development teams to balance security and innovation
  • Implement and scale enterprise application security tools and controls
  • Design automation for large-scale REST API integrations
  • Develop custom CodeQL queries and manage dependencies
  • Architect CI/CD workflows using GitHub Actions
  • Analyze SARIF output and automate reporting processes

Benefits

  • Flexible working hours and remote work options
  • Collaborative and innovative team environment
  • Opportunities for continuous learning and professional development
  • Access to the latest security tools and technologies
  • Support for obtaining relevant certifications in security
  • Comprehensive health and wellness programs
Full Job Description
Your Opportunity

The Software Security Engineer plays a key role in safeguarding software assets by strengthening the development process, enhancing security controls, and reducing defects and vulnerabilities in production environments.

 

Successful candidates will have prior engineering experience within a Software Security Assurance or Application Security team and a proven ability to partner effectively with development teams to balance security requirements with innovation. They will demonstrate strong analytical skills, including the ability to interpret large volumes of distributed data and translate it into clear, actionable insights. Candidates should also have experience working with a range of application security tools, including Software Composition Analysis (SCA), Static Application Security Testing (SAST), and secrets management solutions.

 

In addition, candidates will bring solid application engineering experience and a strong understanding of common application vulnerabilities, attack vectors, and remediation strategies. They should be familiar with secure software design principles and industry best practices for integrating security into the software development lifecycle. Experience with application security testing tools, such as Fortify, and their integration into agile development environments is expected. 

 

Candidates should have familiarity with recognized industry frameworks and standards such as OWASP, CIS, and NIST. A minimum of two years of experience working with static analysis or threat modeling tools is expected, along with experience implementing and scaling enterprise application security tools, services, and controls. Finally, candidates must demonstrate a strong understanding of secure coding practices, code review processes, threat modeling, security requirements analysis, and architectural risk assessment.

What you have

Preferred Qualifications

 

Python Automation & API Integration

  • Strong proficiency in designing Pythonbased automation for largescale REST API integrations, including repository management, content discovery, workflow orchestration, and encoded file handling across enterprise sourcecontrol platforms.
  • Custom CodeQL Query Development
  • Strong understanding of CodeQL query authoring concepts, including QL pack management, database creation, dependency resolution via --search-path, and techniques for minimizing false positives through boundary analysis and source/sink filtering.
  • GitHub Advanced Security (GHAS) Platform Engineering
  • Deep familiarity with GitHub Advanced Security capabilities, including Code Scanning, Secret Scanning, Dependency Review, custom query configuration, and scalable alert triage and remediation workflows across multiple repositories.

CI/CD Pipeline Architecture (GitHub Actions)

  • Demonstrated expertise in architecting reusable and scalable CI/CD workflows using GitHub Actions, including callable workflows, matrix strategies, crossrepository authentication models, and centralized pipeline governance.

SARIF Output Analysis & Interpretation

  • Strong knowledge of the SARIF specification and its use in static analysis pipelines, including interpreting results, validating findings, identifying false positives, and enabling automated reporting across diverse codebases.

Enterprise Git Workflow & Release Management

  • Experience designing and governing enterprise Git workflows, including structured branching strategies, release coordination, branch protection rules, crossorganization pull requests, and versioning policy enforcement.

Application Security Vulnerability Engineering

  • Solid understanding of common software weakness classes and the intentional design of vulnerable code patterns to validate static analysis coverage, detection accuracy, and severity classification.

MultiRepository Architecture & Configuration Delivery

  • Proven ability to architect centralized configuration and workflow distribution models for large repository ecosystems, including reusable workflows, configuration validation, and scalable authentication mechanisms.

Enterprise Package Registry & Dependency Governance

  • Strong knowledge of internal package ecosystems and dependency governance, including artifact repository configuration, registry enforcement and blocking strategies, and controlled use of vulnerable dependencies for security testing.

Technical Documentation & Architecture Decision Records

  • Excellent written communication skills with experience producing highquality technical documentation, including Architecture Decision Records (ADRs), onboarding guides, and operational runbooks for crossfunctional engineering teams.

About Charles Schwab

Charles Schwab is a financial services company that provides a full range of securities, brokerage, banking, money management, financial advisory, investor, and retirement plan services. It operates in four main divisions; investing, wealth management, banking, and trading. Charles Schwab provides a full-service brokerage platform that serves individual investors who invest on their own or through a workplace-sponsored retirement or equity plan, as well as banking through Schwab Bank. The firm was founded in 1973 and is headquartered in San Francisco, California.

Charles Schwab Careers

Join the vibrant team at Charles Schwab, a leader in global finance, where your career is propelled by innovation, leadership, and a commitment to diversity and professional growth. At Charles Schwab, we offer more than just job opportunities; we provide a platform for you to make a significant impact on the industry and our clients' lives.

Work You’ll Do

At Charles Schwab, we are dedicated to helping our clients manage their financial futures. Being part of our team means you'll work alongside some of the most skilled professionals in the financial services industry. Our culture thrives on teamwork, integrity, and relentless dedication to our clients. Whether you're looking for a position in financial consulting, technology, or administrative support, Charles Schwab offers a dynamic work environment where your skills will be honed and your achievements recognized.

Innovate and Lead

Embrace the opportunity to lead through innovation. Charles Schwab’s commitment to technology and innovation is fundamental to our service delivery. By joining our team, you will be at the forefront of developing new solutions that redefine the future of finance. Your leadership can guide significant projects that impact our company and the industry.

Grow Your Career

Charles Schwab believes in fostering the growth of its employees. Whether through professional development programs, diversity training, or leadership workshops, we ensure that our team members receive the support and training they need to advance their careers. With a variety of career paths available, your job at Schwab can evolve with your interests and expertise.

Internship and Employment Opportunities

Start your professional journey with Charles Schwab through our internship programs or full-time employment opportunities. We seek individuals who are passionate, curious, and ready to drive change. A career at Schwab is not just about having a job; it's about building a lasting relationship with a company that values your potential.

Benefits and Culture

Charles Schwab is renowned for its employee-friendly culture. We offer a comprehensive benefits package that supports the health, financial stability, and work-life balance of our team members. From competitive salaries and bonuses to health insurance and retirement plans, Schwab ensures that your career is as rewarding as it is enriching.

Networking and Professional Development

Expand your professional network and enhance your skills through our various networking events, mentorship programs, and training sessions. At Charles Schwab, we believe in leveraging collective expertise to foster learning and innovation. Engage with leaders, gain insights from experienced professionals, and build relationships that will aid your career trajectory.

Join Our Team

Explore the numerous career paths available at Charles Schwab and discover how your talents can be utilized to their fullest potential. Search open positions that match your skills and interests. We are continuously hiring across various disciplines and look forward to adding innovative, driven individuals to our team.

Stay Connected

Keep up to date with the latest from Charles Schwab Careers by subscribing to our job alert emails. Tailor your subscription to receive updates that align with your career preferences and be the first to know about new openings, company news, and professional tips.

Explore Charles Schwab Jobs

Ready to take the next step in your career? Visit our careers page to review current job openings, submit your resume, and prepare for your interview. At Charles Schwab, your future is waiting. [SEARCH CHARLES SCHWAB JOBS] Join Charles Schwab today and be part of a team that values diversity, innovation, and leadership—where your career can thrive in the exciting world of finance.
Learn more about Charles Schwab
Size
34,200 employees
Market Cap
$151.6 billion
Industry
Net Income
$3.2 billion
Founded
1973
5 Year Trend
+20%
Revenue
$12.1 billion
NASDAQ

Similar Jobs

More Jobs at Charles Schwab

More Information Technology Jobs

Find similar Application Security Engineer jobs: