Blue Shield Of California

Information Security Engineer, Consultant

Blue Shield Of California$100K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience
  • 7+ years of relevant experience, including 2+ years in Application Security
  • Deep understanding of Application Security paradigms and OWASP Top Ten
  • Strong grasp of Agile methodologies and backlog management
  • Proven ability to manage complex projects and communicate with management
  • Experience with HIPAA, SOC2, PCI-DSS, and FedRAMP regulations
  • Excellent communication, collaboration, analytical, and presentation skills
  • Familiarity with AI/ML concepts and tools is a bonus
  • Healthcare industry experience preferred
  • CISSP-ISSAP certification is a plus

Responsibilities

  • Evaluate new solution proposals and specify security requirements
  • Perform STRIDE-based threat modeling for applications
  • Conduct secure source code reviews to identify vulnerabilities
  • Create and review security unit tests within the CI/CD pipeline
  • Administer and manage the bug bounty program
  • Coach security champions within development teams
  • Provide general security consulting to bridge gaps in processes
  • Utilize AI solutions to streamline security assessment workflows
  • Drive maturation of the Application Security program based on industry best practices

Benefits

  • Hybrid work model with a balanced approach to in-office and remote work
  • Opportunity to collaborate with different teams and stakeholders
  • Engagement in cutting-edge security practices and applications
  • Work within the vibrant Healthcare industry
  • Access to ongoing professional development and growth opportunities
Full Job Description
Job Description

Your Role

The Application Security team reports to the Director of Information Security and is responsible for driving continual risk reduction across application services. This role partners closely with development teams, providing security oversight at each stage of the Software Development Lifecycle while enabling the business to operate securely at scale.

Responsibilities

Your Work

In this role, you will:
  • Evaluate new solution proposals and provide security requirements
  • Perform STRIDE based threat modeling
  • Complete secure source code reviews
  • Create and review CICD layer security unit tests
  • Administer our bug bounty program
  • Coach security champions in our partnering teams
  • Provide general security consulting
  • Create and leverage AI solutions for streamlining your work
  • Drive continual maturation of our Application Security program, consistent with proven industry best practices and maturity models.


Qualifications

Your Knowledge and Experience
  • Bachelor's degree or equivalent experience
  • Requires 7 years prior relevant experience with at least 2 years working in Application Security
  • Deep, demonstrated understanding of Application Security paradigms and common risks (i.e. OWASP Top Ten)
  • Strong understanding of Agile delivery models and backlog management
  • Ability to manage multiple complex workstreams and successfully interact with all levels of management
  • Experience with regulatory certifications such as HIPAA, SOC2, PCI-DSS and FedRAMP
  • Excellent verbal / written communication, collaboration, analytical and presentation skills
  • Experience with AI/ML concepts and tools desired
  • Preferred experience working within the Healthcare industry
  • CISSP-ISSAP certification preferred


Hybrid

This role requires employees to be in - office based on our hybrid workplace model, balancing purposeful in - person collaboration with flexibility. For most teams, this means coming into the office two days each week.

Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.

#LI-CP4

About Blue Shield Of California

Blue Shield of California is a not-for-profit health plan provider that has been providing Californians with access to high-quality healthcare for over 80 years. The company offers a range of health insurance products and services to individuals, families, and employers. Blue Shield of California is committed to improving the health and wellbeing of its members and the communities it serves. The company is also committed to sustainability and has implemented a number of initiatives to reduce its environmental impact.
Learn more about Blue Shield Of California
Size
7,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Blue Shield Of California

More Information Technology Jobs

Find similar Information Security Engineer, Consultant jobs: