Demo

Application Security Engineer

Capital Group
Los Angeles, CA Full Time
POSTED ON 1/14/2025
AVAILABLE BEFORE 3/13/2025

I can succeed as a n Application Security Engineer at Capital Group"

As the Application Security ("AppSec") Engineer you are an individual contributor in the C apital G roup (CG) AppSec team . The CG AppSec team is part of Information Security in CG's Information Technology Group . In the role you will be reviewing the architectures and performing threat models, code reviews, validating cloud configurations, and validating the DAST, SAST, and SCA findings for web application s . You will be doing code reviews (Java, TypeScript / JavaScript, Python , Terraform ) and creating POCs for DAST tooling where required or collaborating with the penetration testers, as appropriate . The team members are geographically dispersed with varying experience levels . You will help the teams understand how to fix issues and provide best practices or appropriate compensating controls . In this role, you will be using threat modeling tools, static analysis tools, cloud configuration tools . If you are good at software security, this role is for you.

A typical day in the life of the AppSec engineer may look like the following :

You will be performing AppSec reviews includ ing threat modeling, and code reviews

You will be meeting with the software development teams to understand a new application they are building and providing them with feedback on their architecture

You leverage SAST , DAST, SCA tool s to create findings and translating them to severity of risks to perform this in Capital Group's technology environment

You will write clear , succinct and effective technical documentation summarizing your findings , risks, and recommendations

You will write automated proof-of-concept s , and automat ed security tests by authoring security testing tools where needed

You will c ollaborate with technology stakeholders and advise on risks for technology solutions such as SaaS services and how they integrate with CG's environment

You will communicate effectively and have an empathetic outlook towards development teams by authoring clear, actionable guidance on writing secure code

You will effectively present to development teams educat ing them on secur e development.

I am the person Capital Group is looking for."

  • You have a bachelor's degree in computer science , a related field , or equivalent experience (preferably 7 years of experience )
  • You understand threat modeling, code reviews, network security, TCP / IP, DNS, TLS, HTTP, etc.
  • You have e xperience with technologies such as Threat modeler / Threat Dragon, Scoutsuite , Veracode, Checkmarx , Netsparker , DAST scanners like Burpsuite
  • You have the a bility to automate tasks in Python, bash, Java, C / C# / C , Rust, etc.
  • You have a strong understanding of attacks in AWS, Azure , OAuth
  • You have e xcellent communication skills (written , oral) , with the ability to simplify and document complex technical details to both technical and non-technical audiences
  • You can learn quickly and have a track record of developing a deep understanding of systems and risks to the business
  • You can work independently and take the initiative to drive security initiatives forward
  • You can juggle multiple tasks and coordinate / delegate to achieve speedy resolutions to application security-related security incidents working with Security operations.

Southern California Base Salary Range : $121,652-$194,643

San Antonio Base Salary Range : $100,008-$160,013

New York Base Salary Range : $128,957-$206,331

In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital's annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings.

You can learn more about our compensation and benefits here .

  • Temporary positions in Canada and the United States are excluded from the above mentioned compensation and benefit plans.
  • We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS / HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.

    Salary : $100,008 - $160,013

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Application Security Engineer?

    Sign up to receive alerts about other jobs on the Application Security Engineer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $88,984 - $115,784
    Income Estimation: 
    $111,369 - $141,168
    Income Estimation: 
    $117,871 - $153,580
    Income Estimation: 
    $109,939 - $144,341
    Income Estimation: 
    $114,500 - $144,633
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $164,835 - $201,088
    Income Estimation: 
    $135,994 - $168,063
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $70,462 - $84,818
    Income Estimation: 
    $77,991 - $108,747
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $87,093 - $107,335
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Capital Group

    Capital Group
    Hired Organization Address New York, NY Full Time
    Investment Operations Senior Manager - Business Transformation (Digital Transformation Practice Lead) As a Business Solu...
    Capital Group
    Hired Organization Address Irvine, CA Full Time
    I can take an active role in my career advancement." You've had ongoing conversations with your manager and you're ready...
    Capital Group
    Hired Organization Address Irvine, CA Full Time
    I can succeed as a Technology Risk and Security Analystat Capital Group.” The Technology Risk organization is responsibl...
    Capital Group
    Hired Organization Address Los Angeles, CA Full Time
    I can succeed as the Architecture Senior Manager - AI and Emerging Technologies at Capital Group " As Senior Manager in ...

    Not the job you're looking for? Here are some other Application Security Engineer jobs in the Los Angeles, CA area that may be a better fit.

    Sr. Application Security Engineer

    SPACE EXPLORATION TECHNOLOGIES CORP, Hawthorne, CA

    AI Assistant is available now!

    Feel free to start your new journey!