Eversource

IT Application Security Architect (Hybrid)

Eversource$137K — $153K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Systems or related field or equivalent experience
  • 5+ years of applied experience in application security
  • Experience in cybersecurity code analysis and vulnerability remediation
  • Familiar with static and dynamic analysis tools; penetration testing preferred
  • Knowledge of software composition analysis tools
  • Experience with DevSecOps and automating security in CICD workflows
  • Familiar with cloud-based platforms, preferably Azure, and industry security certifications

Responsibilities

  • Assess current design and codebase for security vulnerabilities
  • Collaborate with developers to implement security practices
  • Conduct threat modeling for applications
  • Perform security testing including code analysis and pentesting
  • Establish application security requirements and policies
  • Evaluate and test security tools and products
  • Promote security awareness and culture within teams

Benefits

  • Hybrid work schedule eligibility
  • Comprehensive total rewards program including various benefits
  • Opportunity for professional development and advancement
  • Participation in a team-oriented work environment
  • Ability to contribute to multi-disciplinary projects and initiatives
Full Job Description
Eversource supports work-life balance by offering hybrid schedules for certain roles. Eligibility is based on job responsibilities, operational needs, nature of work and team dynamics. Current guidelines require employees to work at least three days in the office, including Tuesdays and Wednesdays, with the third day set by the employee and supervisor based on department needs. These guidelines apply to roles approved for remote work and are subject to change, based on managerial discretion and work performance. All applicants must be able to work up to five days in the office if needed (for example: emergencies, training, or other business needs) or should the policy change.

Role and Scope of Position:

As the Application Security Architect, and part of the Cybersecurity Architecture team at Eversource, you will work alongside other cybersecurity specialists within the Cybersecurity, Network, and Compliance organization. You'll have the opportunity to apply your knowledge across multiple projects and collaborate across multiple business lines and technical domains.
You will aid the firm in remaining at the forefront of industry trends, best practices, and technological advances in application cybersecurity.
The Application Security Architect will interact with the technology and business colleagues associated with projects. They will deliver project level planning, design, and implementation of security solutions and controls related to Secure Software Development Life Cycle (SSDLC) (e.g. code review, risk assessments, threat modeling, static code analysis, and dynamic application scanning)
One of your primary tasks will be to get deeply involved in security issues around secure coding and secure design. You will assist others in resolving security issues by offering alternative coding solutions and other means. You will also work with project teams to incorporate security into the design architecture.
The Application Security Architect will continuously raise the security bar by promoting a security mindset and educating application developers regarding Eversource security practices. They will cultivate a security culture as you interact with the developers, project teams, and business areas.

Essential Functions:
  • Assess the current design and codebase to identify areas in need of improvement. Work with members of project teams to resolve security issues.
  • Must work seamlessly with the Eversource developers to ensure the successful adoption of required security approaches and capabilities.
  • Conduct threat modeling for new and existing applications. Perform security testing such as static code analysis, pentesting, and dynamic application security testing.
  • Apply a cybersecurity background to perform code analysis when resolving false positives and provide remediation recommendations.
  • Establish application security requirements based on company standards and industry best practices.
  • Develop and maintain infrastructure as code security policies.
  • Test and evaluate security tools, and products.


Technical Knowledge/Skill/Education/Licenses/Certifications:

Education:
  • Bachelor's degree in Information Systems or a related technical field or equivalent experience


Experience:
  • 5+ years applied experience in application security or related position.
  • Must have a background performing cybersecurity code analysis. This includes identifying and resolving false positives, explaining vulnerabilities in simple terms to project teams, and providing remediation recommendations to development teams.
  • Experience with software composition analysis and tools to scan source and binary code for the purpose of identifying dependency vulnerabilities.
  • Experience with implementing and using static and dynamic analysis tools. Experience performing penetration testing is preferred.
  • Experience using and/or maintaining Checkmarx, Burp Suite, or Contrast preferred.
  • Experience with DevSecOps. Experience with automating security operations within CICD workflows preferred.
  • Experience in writing code using a major programming language is preferred. Specifically, .NET.
  • Experience with cloud methodology and terminology. Experience working with cloud-based platforms and applications. Experience with Azure is preferred.
  • Exhibits an exceptional degree of ingenuity, creativity and/or resourcefulness.
  • Produce high quality oral and written work, presenting complex technical matters clearly and concisely with audiences ranging from peers to Sr. Management.
  • Familiarity with current and proposed laws, regulations, industry standards, and ethical requirements related to information security and privacy.


Education:
  • Bachelor's degree or equivalent in Engineering, Computer Science, Data Science or Information Technology is preferred.


Licenses &Certifications:
  • Azure cloud certification(s), or similar cloud certifications preferred.
  • Industry security certifications such as CISSP, CCSP, Azure certifications, HTB Certified Penetration Testing Specialist, or OSCP preferred.


Working Conditions:
  • Must be available to work emergency restoration assignment as required.
  • Must be available to travel between MA/CT/NH as necessary.


#LI-KS1

#corpajd

Competencies:

Build trusting relationships

Manage and develop people

Foster teamwork and cross-functional collaboration

Lead change

Communicate strategic vision

Create an engaged workforce

Focus on the customer

Take ownership & accountability

Compensation and Benefits:

Eversource offers a competitive total rewards program. Check out our careers site for an overview of our benefits programs. Salary is commensurate with your experience. This position is eligible for a potential incentive. The annual salary range for this position is:
$137,730.00-$153,030.00

Worker Type:
Regular

Number of Openings:
1

Emergency Response:

Responding to emergency situations to meet customers' needs is part of every employee's role. If employed, you will be given an Emergency Restoration assignment. This means you may be called to assist during an emergency outside of your normal responsibilities, work hours and location.

About Eversource

Eversource transmits and delivers electricity and natural gas for more than 3.6 million electric and natural gas customers. Before its rebranding, the company operated six main subsidiaries: Connecticut Light and Power (CL&P), Public Service Company of New Hampshire (PSNH), Western Massachusetts Electric Company (WMECO), Yankee Gas Services Company (Yankee Gas), NSTAR Electric, and NSTAR Gas. NSTAR itself was the product of corporate mergers and included the former Boston Edison Company, Cambridge Electric Light Company, Commonwealth Electric Company, Commonwealth Gas, and Cambridge Gas Company. All now currently operate under the Eversource name. Eversource remains Connecticut's largest electric utility, serving more than 1.2 million residential, municipal, commercial and industrial customers in approximately 149 cities and towns. It also serves approximately 229,000 natural gas customers in 73 cities and towns. Eversource is also New Hampshire's largest electric utility, serving more than 500,000 homes and businesses in 211 cities and towns throughout the state. Eversource Energy is a publicly-traded, Fortune 500 energy company headquartered in Hartford, Connecticut, and Boston, Massachusetts, with several regulated subsidiaries offering retail electricity, natural gas service, and water service to approximately 4 million[6] customers in Connecticut, Massachusetts, and New Hampshire.

Eversource Careers

Joining Eversource means becoming part of a dedicated team committed to safety, reliability, and innovation in energy. As a leading energy provider in the Northeast, Eversource offers unparalleled job opportunities, fostering a culture of leadership and growth in the industry.

Work You’ll Do

At Eversource, every position contributes to the company's mission of delivering reliable energy and superior customer service. Our team enjoys a dynamic work environment where professional growth and development are encouraged. With a variety of career paths available, Eversource is a place where your ambition drives your career forward, and where leadership and diversity training ensure you reach your potential.

Innovate and Lead

Eversource is at the forefront of the energy sector’s transformation, integrating innovative technologies and sustainable practices that benefit not only our customers but also our communities. By joining our team, you will collaborate with skilled professionals dedicated to pioneering solutions for a sustainable future.

Career Development

Eversource is committed to the professional development of its employees. Whether through leadership programs, skills training, or networking opportunities, we provide the tools needed for career advancement and personal growth. Our robust internship programs offer a gateway to full-time employment, giving hands-on experience and exposure to real-world challenges.

Be Part of Our Team

Our team at Eversource is driven by a shared commitment to excellence and teamwork. We value diversity and strive to create an inclusive environment where all team members can thrive. The benefits at Eversource go beyond the standard employment package; they empower our employees’ well-being and long-term financial security.

Explore Job Opportunities

Whether you’re starting your career or looking to make a significant impact in the energy sector, Eversource has a position for you. From engineering to customer service, our job opportunities span a wide range of skills and expertise. Ready to start your journey with us? Explore open positions, prepare your resume, and apply through our hiring portal.

Stay Connected

Stay informed about new openings and company news by joining our career network. Tailor your job alerts to match your career preferences and get insider tips that can help you during the interview process. At Eversource, your next big opportunity is just around the corner.

Join Eversource Today

Discover the career you’ve always wanted. Visit our Jobs and Careers page to search for current openings, read about our company culture, and learn how Eversource supports your professional growth and leadership development. Let’s energize the future together!

SEARCH EVERSOURCE JOBS

Keep up to date with career tips, industry insights, and more—all from the people who power Eversource.

READ CAREERS BLOG

Job Alert Emails Customize your subscription to receive job alerts and the latest news tailored to your preferences. Explore the exciting and rewarding career opportunities that await at Eversource.
Learn more about Eversource
Size
9,227 employees
Market Cap
$29.2 billion
Industry
Net Income
$1.2 billion
Founded
1927
5 Year Trend
+5.4%
Revenue
$8.9 billion
NASDAQ

Similar Jobs

More Jobs at Eversource

More Information Technology Jobs

Find similar IT Application Security Architect (Hybrid) jobs: