Software Security Engineer

Stefanini$126K — $137K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years of IT experience, including 4+ years in software development.
  • Experience in cybersecurity and application security is preferred.
  • Proficiency in at least two programming languages or advanced knowledge in one.
  • Strong communication and analytical skills.
  • Knowledge of secure software development lifecycle (SDLC).
  • Experience working collaboratively with development and DevOps teams.

Responsibilities

  • Perform reviews of security plans and secure code for products and applications.
  • Guide teams in addressing findings from various security assessments and bug bounty programs.
  • Develop scripts to automate the identification and remediation of vulnerabilities.
  • Advocate for secure software development practices within development teams.
  • Collaborate with teams to integrate security into the software development lifecycle and CI/CD.
  • Provide guidance on secure architecture and best practices for cloud environments.

Benefits

  • Comprehensive opportunities for professional development and training.
  • Supportive work environment focused on team collaboration.
  • Access to cutting-edge cloud technologies and security tools.
  • Participation in innovative security compliance initiatives.
Full Job Description
We are looking for a Software Security Engineer with experience across software development, cybersecurity, cloud, DevOps, and IT. The ideal candidate can translate security risks into practical solutions, support vulnerability remediation, automate security processes, and contribute to compliance initiatives.

Key Responsibilities
  • Perform security plan reviews and secure code reviews for flagship services, products, and partner applications.
  • Guide development teams in triaging and remediating findings from SAST, DAST, SCA, bug bounty programs, and vulnerability assessments.
  • Develop automation scripts and tools to help identify and remediate security vulnerabilities.
  • Serve as a security advocate within development teams and promote secure software development practices.
  • Collaborate with software architects, developers, and DevOps teams to integrate security throughout the SDLC and CI/CD pipelines.
  • Provide guidance on secure architecture, API security, IAM, logging, encryption, data protection, and secure coding practices across Azure, GCP, and AWS environments.
  • Define and maintain security best practices based on current threats and vulnerabilities.
  • Ensure access controls, data encryption, and data anonymization requirements are followed.
  • Partner with incident response teams during security incidents and incorporate lessons learned into product and system hardening.
  • Work with engineering teams to ensure security vulnerabilities are addressed within established SLAs.
  • Support software supply-chain security, SBOM requirements, technical debt, and upgrade planning.
  • Maintain security requirements, test plans, and other cybersecurity documentation.
  • Support cybersecurity compliance activities, risk assessments, and related security requirements.
  • Communicate complex technical risks clearly to both technical and business stakeholders.


Job Requirements

Details:

Required Skills
  • Cybersecurity / Application Security
  • Software Development and Secure SDLC
  • Scripting and automation
  • Web applications and web technologies
  • TCP/IP and network fundamentals
  • Software development lifecycle
  • Troubleshooting and problem solving
  • Data integrity and data modeling
  • Security vulnerability remediation
  • Experience working with developers and DevOps teams
  • Experience with at least two programming languages, or advanced proficiency in one
  • Strong communication and analytical skills


Preferred Skills

  • Experience with Java, JavaScript, Python, Spring Security, Spring Boot, Linux, React, REST/API security, IAM, cloud computing, Azure, GCP, AWS, Burp Suite, Dynatrace, Salesforce, Pega, Apache Tomcat, penetration testing, network security, risk management, ISO 27001, configuration management, and security compliance.


Experience Required
  • 6+ years of IT experience, 4+ years of software development experience
  • Practical experience in two coding languages or advanced practical experience in one
  • Experience with application security, cybersecurity, or secure software development preferred
  • Experience supporting cybersecurity compliance activities is a plus
  • CISSP, CISA, CISM, or similar certifications are highly valued


Education required

  • Bachelor's degree


Education preferred

  • Master's degree


**Listed salary ranges may vary based on experience, qualifications, and local market. Also, some positions may include bonuses or other incentives***

Stefanini takes pride in hiring top talent and developing relationships with our future employees. Our talent acquisition teams will never make an offer of employment without having a phone conversation with you. Those face-to-face conversations will involve a description of the job for which you have applied. We will also speak with you about the process, including interviews and job offers.

#LI-FA1

#LI-ONSITE

Pay Range:

$ 61.00 - $ 66.00

Similar Jobs

More Jobs at Stefanini

  • Software Security Engineer
    $126K — $137K *
    Dearborn, MI 48126 (Wayne County)
    Information Technology
    In-Person
  • AEM Developer
    $126K — $137K *
    Dearborn, MI 48126 (Wayne County)
    Information Technology
    In-Person
  • Full Stack Developer
    $126K — $137K *
    Dearborn, MI 48126 (Wayne County)
    Information Technology
    In-Person
  • Full Stack Developer
    $126K — $137K *
    Dearborn, MI 48126 (Wayne County)
    Information Technology
    In-Person
  • Data Engineer
    $124K — $134K *
    Cuyahoga Falls, OH 44221 (Summit County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Software Security Engineer jobs: