Vistex

Application Security Lead

Vistex$120K — $140K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in application security, software development, or related field
  • Experience with secure coding standards and DevSecOps practices
  • Strong knowledge of security tools (SAST, SCA, DAST, IaC)
  • Proficient in threat modeling and risk assessment
  • Ability to collaborate effectively with cross-functional teams
  • Familiarity with compliance regulations related to software development
  • Experience in creating security documentation and architecture diagrams

Responsibilities

  • Collaborate with Dev and DevOps teams to enforce secure coding practices
  • Embed security controls into CI/CD pipelines
  • Engage in design processes to define security requirements
  • Conduct threat modeling to identify risks in new products
  • Develop security architecture documentation
  • Ensure integration of security tools in design processes
  • Perform audits to verify security coverage of products and platforms
  • Review DevOps operations to manage identified risks
  • Build relationships with stakeholders to meet security needs
  • Manage risk assessments for software development and AI integrations
  • Provide metrics on secure development practices

Benefits

  • Comprehensive healthcare plan
  • 401(k) plan
  • Paid time off, including volunteer days
  • Remote work flexibility
  • Incentive compensation opportunities through bonuses
Full Job Description
The Application Security Lead reports to the IT Security Manager and works closely with Vistex's Development and DevOps teams to ensure security is embedded in the design, implementation and maintenance of Vistex product services through the implement of shift-left and DevSecOps approaches. This role can be a remote position.

Responsibilities :
  • Works closely with Development and DevOps teams to develop and enforce secure coding standards and best practices across Vistex's Development and DevOps teams.
  • Collaborates with Development and DevOps teams to embed security controls into CI/CD pipelines (SAST, SCA, DAST, IaC scanning)
  • Participates in design process for new products and changes to existing products to ensure that security requirements are identified, assessed and specified.
  • Conducts threat modelling exercises with teams during the design process to identify risk and security requirements.
  • Engages with teams to develop architecture diagrams and documentation that captures the security relevant content.
  • Ensures that integration with Vistex security tools is factored into the design process.
  • Participates in project meetings to track progress and conducts implementation readiness reviews to ensure specified security requirements are met and that documentation is complete.
  • Conducts audits against products and platforms to ensure security coverage is complete.
  • Reviews DevOps operations to ensure security best practice is followed and that any identified risks are managed.
  • Engages with senior stakeholders and team leaders to build strong working relationships to ensure security requirements are met and security improvements are implemented
  • Participates in risk management exercises for software development, DevOps and in AI where it is used for development or is integrated into Vistex products.
  • Provides metrics on secure development maturity and performance.
  • Provides assistance with analyzing application layer as required by security incident response processes/
  • Maintains awareness of standard and regulatory requirements that relate to software development.
  • Stays informed of the current topics in secure development and DevOps through various publications and sources.
  • Supports the IT Security team in responding to development content in customer security assessments and questionnaires as required.

The compensation for this position is $120K - $140K annually. Base pay will vary depending on factors, including but not limited to, a candidate's location, job-related knowledge, skills and work experience. The compensation package may also include incentive compensation opportunities in the form of discretionary annual bonus. Vistex provides highly competitive benefits including comprehensive healthcare plan, 401(k) and paid time off, including paid volunteerism days!

About Vistex

Vistex is a global software company that provides solutions for managing pricing, incentive, rebate, royalty and channel programs. The company's products are used by businesses in a variety of industries, including consumer goods, automotive, and media. Vistex was founded in 1999 and is headquartered in Hoffman Estates, Illinois.
Learn more about Vistex
Size
1,300 employees
Industry
Founded
1999

Similar Jobs

More Jobs at Vistex

More Information Technology Jobs

Find similar Application Security Lead jobs: