WinstonSalemRecruiter Since 2001
the smart solution for Winston-Salem jobs

Information Security Engineer 5 - Web Application Penetration Tester

Company: Wells Fargo
Location: Winston Salem
Posted on: July 13, 2019

Job Description:

Job Description
At Wells Fargo, we want to satisfy our customers' financial needs and help them succeed financially. We're looking for talented people who will put our customers at the center of everything we do. Join our diverse and inclusive team where you'll feel valued and inspired to contribute your unique skills and experience.Help us build a better Wells Fargo. It all begins with outstanding talent. It all begins with you.Wells Fargo Technology sets IT strategy; enhances the design, development, and operations of our systems; optimizes the Wells Fargo infrastructure footprint; provides information security; and enables continuous banking access through in-store, online, ATM, and other channels to Wells Fargo's more than 70 million global customers.Enterprise Information Security within Wells Fargo Technology is seeking an Info Security Engineer to support application security for all of Wells Fargo applications. In this role, you will work with software development partners to identify and mitigate the security vulnerabilities in the applications identified through DAST. Communication with the business security team, Application Security Champions (ASCs), enterprise security group, and development technology partners is critical in this role. You will also act as an application security SME for the development and security communities within Wells Fargo.DAST Testing Responsibilities--- Perform Web Application Penetration testing--- Meet with application team to collect information and determine scope of testing--- Install, configure, use and maintain scanning and testing tools--- Manually verify security vulnerabilities identified by automated tools--- Perform manual testing to supplement results of automated scanning and testing tools--- Provide status and resolve issues that impact testing as required--- Document identified security vulnerabilities and related matters in a clear, concise and timely manner--- Meet with the application teams to review, describe and explain identified security vulnerabilities and possible remediation--- Retest application updates or deployed remediation logic to verify resolution of security vulnerabilities--- Update documentation as required--- Maintain electronic or paper trail of testing activity for audit purposes--- Maintain confidentiality of authentication credentials, sensitive application information and test results before, during and after completion testing and/or retestingThe Info Security Engineer will additionally be responsible for:--- Providing adhoc penetration testing as necessary--- Providing application security consulting SME Support to developers--- Providing for root cause analysis and incident management investigation--- Providing security training as required--- Stay up to speed on 3rd party (inside and outside Wells Fargo) known security vulnerabilities--- Develop and review malicious use cases/threat models--- Maintain a broad understanding of security technologies and products --- Actively participate on improving the security culture and education throughout the organization.

Required Qualifications

  • 7+ years of information security applications and systems experience
  • 5+ years of DAST (Dynamic Application Security Testing) experience
  • 5+ years of automated information security penetration tools experience

    Desired Qualifications
    • Advanced Information Security technical skills and understanding of information security practices and policies
    • Ability to manage complex issues and develop solutions
    • Excellent verbal and written communication skills
    • Knowledge and understanding of banking or financial services industry
    • Experience working in a large enterprise environment
    • Strong analytical skills with high attention to detail and accuracy
    • Knowledge and understanding of information security industry standards and government regulations
    • Ability to manage multiple and competing priorities
    • Ability to work with limited supervision
    • Ability to take on a high level of responsibility, initiative, and accountability
    • Good attention to detail and accuracy skills
    • Strong collaboration and partnering skills

      Other Desired Qualifications
      • 2+ years of mobile testing / forensic experience


        All offers for employment with Wells Fargo are contingent upon the candidate having successfully completed a criminal background check. Wells Fargo will consider qualified candidates with criminal histories in a manner consistent with the requirements of applicable local, state and Federal law, including Section 19 of the Federal Deposit Insurance Act.

        Relevant military experience is considered for veterans and transitioning service men and women.
        Wells Fargo is an Affirmative Action and Equal Opportunity Employer, Minority/Female/Disabled/Veteran/Gender Identity/Sexual Orientation.

Keywords: Wells Fargo, Winston-Salem , Information Security Engineer 5 - Web Application Penetration Tester, IT / Software / Systems , Winston Salem, North Carolina

Click here to apply!

Didn't find what you're looking for? Search again!

I'm looking for
in category

Other IT / Software / Systems Jobs

BI Developer
Description: FAIRVIEW SEARCH GROUP, LLCCareer Opportunity: Business Intelligence AnalystEmployment Type: Direct Hire - Full TimeCompensation: Up to 110000 bonusJO : 2253Fairview Search Group, LLC. is currently (more...)
Company: Fairview Search Group, LLC
Location: Charlotte
Posted on: 07/20/2019

Business Systems Administrator
Description: Job Title: Business Systems AdministratorLocation: Charlotte, NCReports To: VP, Information Technology and Data AnalyticsFLSA Status: Non-Exempt Girls on the Run International is a national nonprofit (more...)
Company: Girls on the Run International
Location: Charlotte
Posted on: 07/20/2019

PL/SQL Developer
Description: Position PL SQL Developer Location Phoenix ,
Company: AriVik Technologies Inc.
Location: Charlotte
Posted on: 07/20/2019

Java Application Architect
Description: Java Application Architect The Solution Architect is responsible for providing technology solution thought leadership and recommendations for business initiative projects for a line of business. Develops (more...)
Company: Cognizant US Corporation
Location: Charlotte
Posted on: 07/20/2019

Mainframe Engineering Manager
Description: Where good people build rewarding careers.Think that working in the insurance field can't be exciting, rewarding and challenging Think again. You'll help us reinvent protection and retirement to improve (more...)
Company: Allstate
Location: Charlotte
Posted on: 07/20/2019

Software Engineer - Full Stack Engineer
Description: Brainstorm, design and develop an enterprise software product. Design and implement re-usable software components. Work collaboratively with a core team of architects and developers spread across different (more...)
Company: eFinancial Careers
Location: Charlotte
Posted on: 07/20/2019

Senior Software Engineer (Full Stack Developer)
Description: Where good people build rewarding careers.Think that working in the insurance field can't be exciting, rewarding and challenging Think again. You'll help us reinvent protection and retirement to improve (more...)
Company: Allstate
Location: Charlotte
Posted on: 07/20/2019

Senior Instructional Designer/Developer
Description: Job Description More than a career - a chance to make a difference in people's lives. Build an exciting, rewarding career with us - help us make a difference for millions of people every day. Consider (more...)
Company: Duke Energy
Location: Charlotte
Posted on: 07/20/2019

Assistant Retail Sales Manager - University
Description: br Retail Sales Assistant Location Manager br br br Overview br br Maycom, LLC, is a Sprint Authorized Retailer committed to providing Sprint customers superior customer service. In 1997, (more...)
Company: Maycom Communications
Location: Charlotte
Posted on: 07/20/2019

Talend Developer
Description: Synechron is one of the fastest-growing digital, business consulting technology firms in the world. Specialized in financial services, the business focus on embracing the most cutting-edge innovations (more...)
Company: Synechron Inc.
Location: Charlotte
Posted on: 07/20/2019

Log In or Create An Account

Get the latest North Carolina jobs by following @recnetNC on Twitter!

Winston-Salem RSS job feeds