Costco

Quality Engineer - Application Security - Costco Travel

Costco$105K — $160K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years of security experience in an enterprise setting.
  • 2+ years of software development experience with Java or similar OOP languages.
  • Familiar with application security frameworks like OWASP Top 10 and SANS Top 20.
  • Experience with vulnerability management processes including scanning.
  • Strong communication skills to convey security information effectively.

Responsibilities

  • Serve as a subject matter expert in application security and vulnerability management.
  • Support and consult with product and development teams on security matters.
  • Assess applications to identify vulnerabilities in web UIs and APIs.
  • Conduct manual secure code reviews of applications.
  • Collaborate with Compliance and Business teams on security solutions.
  • Advocate for security compliance measures to protect corporate applications.
  • Stay updated with industry trends and pursue professional growth.

Benefits

  • Comprehensive health benefits including medical, dental, and vision.
  • Paid time off and dependency care assistance.
  • 401(k) retirement plan and stock purchase options.
  • Short and long-term disability insurance.
  • Supportive and inclusive workplace culture.
Full Job Description
Quality Engineers are core delivery team members responsible for the validation of functional and non-functional requirements implemented by a team. They are responsible for decomposing the functional and technical requirements created by Product Owners and Systems Analysts into test scripts. Quality Engineers raise defects as issues are identified and support the remediation process with teams.

The Application Security Engineer will work closely with stakeholders in Security, Engineering, Dev Ops, and other leaders within Costco Travel. The Engineer will be responsible for the overall security of our applications and services/APIs. This role has specific focuses on application security, vulnerability scanning, vulnerability scan outputs, and the tools and methodologies used.

This Engineer will identify gaps and inefficiencies within the vulnerability management program, and will work with the team to implement solutions. The Engineer will ensure security best practices are enforced. They will mentor team members and provide consultative services to teams and stakeholders to ensure the security of our applications.

ROLE
• Serves as a subject matter expert for application security, vulnerability management, and vulnerability scanning.
• Supports and consults with product and development teams in the area of application security.
• Assesses applications for vulnerabilities in web UIs and APIs.
• Provides manual application secure code reviews.
• Works analytically to solve both tactical and strategic problems within the vulnerability management program.
• Identifies attack surface reduction opportunities through vulnerability data analysis from enterprise custom and COTS applications.
• Collaborates and communicates with Compliance, External auditors, and Business teams.
• Understands compliance requirements that may impact security, and effectively collaborates with business areas and project teams to develop security solutions that address requirements.
• Advocates for compliance and security measures, both internally and externally, to protect corporate applications and environments.
• Maintains current knowledge of industry trends and standards; proactively pursues professional growth in the areas of technology, business knowledge, and Costco policies and platforms.
• Regular and reliable workplace attendance at your assigned location.

REQUIRED
• 4+ years' experience in security in an enterprise environment.
• 2+ years' experience with software development with Java or any other Object-Oriented Language.
• Knowledgeable in remediation activities at the code or script level, including fixing vulnerabilities or defects.
• Demonstrated experience with Java programming, development practices, and common bug patterns.
• Familiar with application vulnerability/security frameworks and standards such as OWASP Top 10, SANS Top 20, CVE,
• CWE, CVSS, etc.
• Experience with vulnerability management processes including scanning, reporting, and remediation planning.
• Understanding of software development lifecycle and integrating application security into a CI/CD pipeline.
• Experience with revision control systems and the agile process using ADO, Git, or similar agile code system functions (Pull, Fetch, Push, Sync).
• Strong verbal and written communication skills.
• Ability to clearly communicate Information Security matters to Executives, Auditors, End -Users, Analysts, Peers, and Engineers, using appropriate language, examples, and tone.
• Experience identifying and validating security requirements for software.
• Experience working with software development teams.
• Realistic outlook that understands security problems as a balance of both security and business needs.
• Demonstrated logical and structured approach to time management and task prioritization in support of team work goals.
• Strong analytical skills, documentation skills, and awareness of change management; ability to adapt to changing priorities.
• Strong collaborative mindset and able to function as a contributing member of the team.
• Ability to handle highly confidential information in a strictly professional manner.

Recommended
• 2+ years' experience in working with DevOps engineer in an enterprise environment.
• Experience with one or more scripting or development languages.
• Experience coding, implementing custom software solutions, and supporting them in production environments.
• General cloud knowledge.
• Familiarity with agile continuous improvement methodologies.
• Experience developing and reporting enterprise level metrics.
• Proficient in Microsoft Workspace applications, including Outlook, Word, Excel, PowerPoint, and Teams.

Required Documents
• Cover Letter
• Resume

California applicants, please click here to review the Costco Applicant Privacy Notice.

Pay Ranges:

Level 2: $105,000 - $135,000

Level 3: $130,000 - $160,000

We offer a comprehensive package of benefits including paid time off, health benefits - medical/dental/vision/hearing aid/pharmacy/behavioral health/employee assistance, health care reimbursement account, dependent care assistance plan, short-term disability and long-term disability insurance, AD&D insurance, life insurance, 401(k), stock purchase plan to eligible employees.

About Costco

Costco is a membership warehouse club, dedicated to bringing their members the best possible prices on quality brand-name merchandise. With hundreds of locations worldwide, Costco provides a wide selection of merchandise, plus the convenience of specialty departments and exclusive member services, all designed to make your shopping experience a pleasurable one. The company's first location, opened in 1976 under the Price Club name, was in a converted airplane hangar on Morena Boulevard in San Diego. Originally serving only small businesses, the company found it could achieve far greater buying clout by also serving a selected audience of non-business members. With that change, the growth of the warehouse club industry was off and running. In 1983, the first Costco warehouse location was opened in Seattle. Costco became the first company ever to grow from zero to $3 billion in sales in less than six years. When Costco and Price Club merged in 1993, the combined company, operating under the name PriceCostco, had 206 locations generating $16 billion in annual sales.

Costco Careers

Joining the Costco team presents a unique opportunity to be part of one of the largest wholesale membership warehouses in the world. At Costco, we are committed to providing our employees with a path to career growth and a dynamic workplace culture that values innovation, leadership, and diversity.

Work You'll Do

Embark on a professional journey with Costco and play a pivotal role in our mission to continually enhance the Costco shopping experience. You'll find yourself working in a high-energy environment where your skills will be honed and your abilities pushed to new heights.

Explore Job Opportunities

Costco offers a variety of job opportunities that cater to a range of skills and interests, from in-warehouse positions to corporate roles. Each position at Costco is designed to help you build a solid professional foundation, with ample room for growth and advancement.

Internship Programs

Kickstart your career with a Costco internship. Our internships provide invaluable workplace experience and a chance to see what it truly means to be part of a team that prioritizes quality and community. Interns at Costco gain hands-on experience that is not only rewarding but also integral to their professional development.

Professional Growth and Development

Costco is deeply invested in the professional growth of our employees. We offer robust training programs, leadership workshops, and opportunities for advancement. Our commitment to career growth ensures that our team members are always equipped to take on new challenges.

Benefits and Culture

The benefits at Costco go beyond the basics. We offer a competitive benefits package that includes health, vision, dental, and life insurance, as well as a 401(k) plan with a generous company match. More importantly, our company culture is built on a foundation of respect, integrity, and dedication to diversity and innovation.

Join Our Team

If you're looking for a career that offers job security, excellent benefits, and an opportunity to grow both personally and professionally, consider joining the Costco team. Explore our open positions, tailor your resume, and prepare for an interview where you can showcase your unique skills and passion for excellence.

Stay Connected

Keep up to date with all things related to Costco careers by joining our network. Follow us on our careers page, connect with us on professional networking sites, and stay informed about upcoming hiring events and career opportunities.

Apply Now

Ready to take the next step in your career? Search for open positions that match your skills and interests on our jobs page. At Costco, we are always looking for passionate, curious, and solution-driven team players who are ready to make a difference.

Costco Jobs – Where Careers Soar

At Costco, we don’t just offer jobs; we offer career paths. The vast opportunities for growth, coupled with our exceptional culture and benefits, make Costco not just a place to work, but a place to build a lasting career.
Learn more about Costco
Size
288,000 employees
Market Cap
$201.7 billion
Industry
Net Income
$4.3 billion
Founded
1983
5 Year Trend
+12%
Revenue
$178.6 billion
NASDAQ

Similar Jobs

More Jobs at Costco

More Information Technology Jobs

Find similar Quality Engineer - Application Security - Costco Travel jobs: