Discover
We power a network that helps people achieve a brighter financial future.
Hybrid

Principal Cybersecurity Application Security Engineer (DevSecOps)

Sorry, this job was removed at 11:06 a.m. (CST) on Friday, March 26, 2021
Find out who's hiring in Chicago.
See all Cybersecurity + IT jobs in Chicago
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Discover. A brighter future.

With Discover, you’ll have the chance to make a difference at one of the world’s leading digital banking and payments companies. From Day 1, you’ll do meaningful work you’re passionate about, with the support and resources you need for success. We value what makes each employee unique and provide a collaborative, team-based culture that gives everyone an opportunity to shine. Be the reason millions of people find a brighter financial future, while building the future you want, here at Discover.

Job Description  

The ideal candidate will have business acumen, a sound understanding of the Cybersecurity with the ability to think, operate and balance priorities in extreme dimensions strategic and tactical, long-term and near-term. The Engineer will provide technical leadership for Application Security Product domain and must be able to solve complex security problems. This individual will be expected to work closely with Cybersecurity and Enterprise Architects to build strategy and champion Application Security products and services.

As a Principal Cybersecurity Engineer you may work on solutions that range from helping developers build secure application to building tools for developers to integrate into their CICD pipelines. You will threat model and drive requirements into reusable enterprise solutions. The Principal Cybersecurity Engineer will proactively keep abreast of evolving technology landscape and business transformational practices as well as analyze threat landscape. This is an excellent opportunity for someone who is a self-starter, assertive, team player, loves to solve problems and enable secure business practices.

Responsibilities:

  • Acts as the principal advisor to upper management in Cybersecurity matters. Ensures security improvement designs are evaluated, validated, and implemented as required. Certifies that protection and detection capabilities are acquired or developed using the Cybersecurity engineering approach and are consistent with organization-level cybersecurity architecture. Explores and assesses the latest technology trends, disruptions and security/IT service business models to ensure Business Technology maintains, and improves, organization cyber competitive edge.
  • Works closely with management to define and promote the strategic direction of the team. Provides strong leadership and direction to team members. Provides subject matter expertise across all Cybersecurity technologies. Oversees project implementation to ensure successful solution delivery. 
  • Researches, engineers and integrates new Cybersecurity solutions. Applies service oriented security architecture principles to meet organization's confidentiality, integrity, and availability requirements. Performs cyber defense incident triage, to include determining scope, urgency, and potential impact; identifying the specific vulnerability. Makes recommendations that enable expeditious remediation. 
  • Creates and maintains Cybersecurity technology roadmap. Ensures compliance to audit, regulatory and legal requirements Builds and maintains effective relationships with peers and internal business partners, and external vendors. Enforces the engineering and architecture methodologies to be in compliance with technical aspects of security controls and standards, and pilots the implementation of prominent security solutions to improve the confidentiality, integrity and/or availability of the firm’s intellectual property, systems and applications.
  • Transforms business requirements into technical specifications. Designs and develops system security measures to ensure Cybersecurity is fully integrated. Validates current and future state architectural models to assess impact across all Cybersecurity technology systems. 

Minimum Qualifications

  • H.S. Diploma or GED
  • 6 + years of expereince in Information Security, Application Security, Programming, DevOps, Cloud, Computer Science, Data Analytics, or related 

Preferred Qualifications:

  • Bachelor’s Degree in Computer Science, Engineering, or related field.
  • 8+ years work experience programming in Java and Python with previous experience as senior developer/architect preferred.
  • 5+ years in application security, experience deploying and managing SAST, DAST, and IAST solutions. Experience should include experience consulting and helping application developers implement better approaches.
  • Experience conducting secure code reviews to identify and recommend resolution to secure code flaws.
  • Experience conducting Threat Modeling workshops or exercises.
  • Ability to articulate messages through designs and documentation.
  • Experience developing on and deploying to PaaS platforms, such as Openshift/Kubernetes and Pivotal Cloud Foundry.
  • Experience with SSDLC practices in DevOps, CI/CD environment is preferred
  • Strong problem solving and analytical skills; able to quickly digest any issue/problem encountered and recommend an appropriate solution
  • Excellent verbal and written communication skills including the ability to author and present materials ranging from detailed technical specifications to high-level executive presentations
  • Ability to manage multiple deliverables and in a fast-paced environment
  • Experience in building road maps, reference architectures, patterns, threat models, planning and managing work via standards and procedures
  • Experience with multiple security technologies such as Web Application Firewalls, Code Analysis Tools, Bot Mitigation, etc.
  • Experience or knowledge of applying risk management concepts is preferred
  • Experience working with or strong knowledge of cloud based services including SaaS, PaaS (e.g. Kubernetes), IaaS(e.g. AWS, GCP) and understanding of effectively enabling business while securing these environments is a preferred
  • Knowledge payment compliance and standards (PCI DSS, FFIEC, NIST Security Standards and Frameworks) is a preferred

What are you waiting for? Apply today!

The same way we treat our employees is how we treat all applicants – with respect. Discover Financial Services is an equal opportunity employer (EEO is the law). We thrive on diversity & inclusion. You will be treated fairly throughout our recruiting process and without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status in consideration for a career at Discover.

See More
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

What are Discover Perks + Benefits

Discover Benefits Overview

Start enjoying great benefits Day 1 — We support you with the same dedication we bring to all of our customers. Our comprehensive benefits package features first-class insurance, financial planning support and excellent perks designed to help you reach your goals and live a rich, healthy life.

Check out more of our amazing employee benefits at mydiscoverbenefits.com

Culture
Volunteer in local community
Discover’s business is built on helping people, and we invest in the community (Blessing Backpacks, Boys & Girls Clubs, Big Brothers/Sisters) to demonstrate our commitment to a brighter future.
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Flexible work schedule
Remote work program
Diversity
Dedicated diversity and inclusion staff
Mandated unconscious bias training
Diversity manifesto
Diversity employee resource groups
Hiring practices that promote diversity
Health Insurance + Wellness
Flexible Spending Account (FSA)
You can open a separate Health Care FSA (HCFSA) and contribute up to $2,650 tax-free from your paycheck to reimburse yourself for eligible out-of-pocket expenses.
Disability insurance
Employees receive Short-Term Disability Insurance at no cost.
Dental insurance
Discover offers two dental plan options — Standard and Premier — both are administered by MetLife.
Vision insurance
Discover offers two vision plan options — Standard and Premier through VSP.
Health insurance
Discover offers a variety of medical plans for you and eligible family members, so that you can choose the benefit plan that suits your needs.
Life insurance
As a Discover employee, you receive Basic Life Insurance of one times your HWEE (up to $500,000) at no cost to you.
Pet insurance
Purchase medical coverage at a discounted rate for your beloved family pet. The more pets you insure, the greater the discount.
Wellness programs
Help balance your work and personal life with a wide variety of free and discounted resource and referral services including family and relationship counseling and financial guidance.
Mental health benefits
Financial & Retirement
401(K)
You may elect to contribute 1% to 30% of your eligible base salary, commissions and bonus on a pre-tax basis, up to IRS limits every year.
401(K) matching
Discover matches up to 6% of the pre-tax contributions you make to the 401(k) Plan.
Employee stock purchase plan
The ESPP provides eligible employees with an opportunity to purchase shares of Discover common stock through payroll deductions at a 5% discount.
Performance bonus
Charitable contribution matching
Child Care & Parental Leave
Childcare benefits
Generous parental leave
Family medical leave
Adoption Assistance
Discover helps eligible employees and their families with the costs of adoption by reimbursing certain expenses.
Company sponsored family events
Vacation + Time Off
Generous PTO
Discover has a Paid Time Off of 4 to 5 Weeks of paid time per year.
Paid volunteer time
Paid holidays
Discover provides 7 paid holidays.
Paid sick days
Office Perks
Commuter benefits
When you enroll in the Commuter Benefits Program at WageWorks, you’ll save on taxes on mass-transit passes, parking and other eligible expenses.
Company-sponsored outings
Onsite office parking
Recreational clubs
Relocation assistance
Fitness stipend
Onsite gym
Discover has fitness centers and Weight Watchers® programs at all five major locations.
Professional Development
Job training & conferences
Tuition reimbursement
Discover provides tuition reimbursement and a full-ride bachelor's degree program for select online degree programs.
Lunch and learns
Promote from within
Mentorship program
Continuing education stipend
Continuing education available during work hours
Online course subscriptions available
Customized development tracks

More Jobs at Discover

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about DiscoverFind similar jobs like this