Application Security Engineer

Place of work Walnut Creek
Contract type -
Start date 1 week ago
Salary -

Job details

Job description, work day and responsibilities

Mechanics Bank is currently searching for an Application Security Engineer to join our team. Here at Mechanics Bank, we value connection, partnership, long term relationships and working together in person. This role will be working on-site at our Irvine office.

Under limited direction, the Application Security Engineer is responsible for securing the bank’s network and external-facing applications through continuous penetration testing, application code review, threat hunting, web application firewall management, and vulnerability scanning. This role requires effective communication of remediation requirements to both technical and business leaders. Additionally, the engineer takes a leading role in DevSecOps process discussions and planning.

What you will do:
• Defines security requirements for the implementation of new applications and projects: Serves as a security engineer/consultant on projects, works closely with the application development team to ensure coding follows security best practices, provides security guidance during the design and implementation phases to ensure robust security controls are integrated from the start.
• Performs continuous penetration testing: Effectively documents and reports findings, illustrating risks and requirements for resolution. Recommends and implements improvements based on testing outcomes.
• Leads security research on threats and remediation techniques and technology: Makes informed recommendations to Information Security and Information Technology teams, oversees the implementation of recommended security measures.
• Conducts security event analysis and intrusion detection (IDS/IPS): Leads incident response efforts, including triage, incident analysis/forensics, and remediation. Develops and refines incident response processes and playbooks.
• Serves on the Incident Response Team: Focuses on Computer Incident Response, coordinates with various teams to ensure a cohesive and effective incident response.
• Supports the Bank’s operational information security responsibilities, including the development and maintenance of standards, procedures, and guidelines necessary to satisfy the Information Security department’s network operations.
• Manages and enhances the bank’s network vulnerability management program: Regularly assesses and updates vulnerability management practices to ensure they meet current security standards and address emerging threats.
• Assists in conducting risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications and systems.
• Provides technical support to regulatory agencies, external auditors, and internal auditors, as required, to respond to audits and examinations of the Bank’s control environment

Who you are:
• Preferred: Bachelor’s Degree in a related field, or equivalent education, certifications, and experience
• Required: 3 - 5 years’ experience in application security, penetration testing, or a comparable role
• Required: Understanding of one or more of the following programming languages: C#, Angular JavaScript, T-SQL
• Preferred: Industry Standard Certifications, such as: CompTIA CASP+; GIAC, EC-Council, (ISC)2, OSCP, CompTIA Linux+; ISC2 CISSP, CompTIA Network+
• Understanding of one or more scripting languages.
• Understanding of Linux, Windows, and Mac OS.
• Passion for automation and scripting (Python, Perl, Bash, PowerShell, etc.).
• Strong technical skills with Microsoft Office; must have the ability to effectively communicate and write reports understandable to both business and technical staff.
• Threat analysis / Incident Response: interpreting events and analyzing network traffic.
• Mitigating and addressing threat vectors including XSS, broken authentication, SQL injections, SSRF, misconfigurations, insecure designs.
• Application vulnerabilities/penetration testing/remediation.
• Knowledge of current and upcoming IT security technologies.
• Awareness of the latest and common security threats (OWASP Top 10, OWASP for API).
• Excellent ability to diagnose and troubleshoot accessibility issues.
• Skill in oral and written communication, including presentations to senior management.
• Ability to influence and work with employees at all levels of the organization

Pay Range: $120,000 - $170,000 annually

Final compensation package will be determined by the work experience, education, and/or skill level of the applicant along with internal equity and alignment with geographic market data.
• Mechanics Bank is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, ****** orientation, religion, national origin, age, genetic information, veteran status, or on the basis of disability, gender identity, ****** orientation or other bases prohibited by applicable law.
• Please view Equal Employment Opportunity Posters provided by OFCCP here.
• To learn more about Mechanics Bank’s California privacy and security policies, including your right to a Notice At Collection as a California Resident, please visit

California Privacy Policy for Prospective Employees | Mechanics Bank

Company address

United States
California
Walnut Creek
Show on map Get directions
Company Name: Mechanics Bank
You will be redirected to another website to apply.
Offer ID: #954656, Published: 1 week ago, Company registered: 1 year ago

Other offers

Systems Analyst Intermediate Revenue Management
1486login
· Danville, US
Job Summary Responsible for utilizing technical and business knowledge to configure and support assigned applications/systems. Responsible for assisting with project planning and completion including analysis, training, ...
UI/UX Product Design Internship
1486login
· Berkeley, US
Product Designer Internship Opportunity at ProspectorAI Location: Remote Type: Internship (Unpaid, with potential for future salary/equity opportunities) About Us ProspectorAI is a fast-paced startup founded by two UC Be...
Remote Loan Operations Specialist | WFH
1486login
· Lewiston, US
Loan Operations Specialist - Remote | WFH Overview Join a reputable financial institution as a Loan Operations Specialist II and seize the opportunity to support diverse aspects of loan servicing within a dynamic and thr...
Labor And Employment Attorney (Litigation, PAGA, FEHA Class, Plaintiff) - to $750k
1486login
· California City, US
Job Title: Senior Litigation Attorney – Employment, PAGA, FEHA & Class Action Job Location: While preference is given to candidates who can work in-office in Westwood, California, flexible working arrangements may be...
Staff Counsel III, Workers Compensation NH & VT
1486login
· Hillsborough, US
Overview Responsible for managing a case load from inception to resolution. Responsibilities include pre-trial discovery, drafting pleadings, communicating with involved parties, and presenting defense strategies in cour...
Legal Assistant (Management Analyst I) with Security Clearance
1486login
· Sacramento, US
Legal Assistant (Management Analyst I) Position Description As a Legal Assistant (Management Analyst I), you will support the DOJ's Executive Office for Immigration Review, specifically supporting the Sacramento, CA Immi...
2025 Reed Smith/Capital One 1L Fellowship Program
1486login
· Washington, US
The Reed Smith/Capital One 1L Fellowship Program provides an award in the amount of $5,000 and a summer associate position in Reed Smith’s Washington, D.C. office to a first-year law student who has demonstrated academic...
Associate Attorney - Construction Defect
1486login
· Port Saint Lucie, US
Want to learn more about this role and Jobot? Click our Jobot logo and follow our LinkedIn page! Job details Civil Litigation Firm Seeks Associate Attorney This Jobot Job is hosted by Jacob Wolf Are you a fit? Easy Apply...
Conflicts Resolution Attorney (JD Required)
1486login
· Pittsburgh, US
Clark Hill PLC is seeking a is seeking a motivated and dynamic individual for the role of Conflicts Resolution Attorney to join either the Dallas, Detroit, or Pittsburgh office. T he Conflicts Resolution Attorney works c...
IMMEDIATE OPENING: Entry Level Attorney
1486login
· Glendale, US
Want to learn more about this role and Jobot Consulting? Click our Jobot Consulting logo and follow our LinkedIn page! Job details 3 month contract to hire. Must be ok working in employment litigation and barred in CA. T...
Legal Billing Specialist
1486login
· Fresno, US
Want to learn more about this role and Jobot? Click our Jobot logo and follow our LinkedIn page! Job details Fully Remote Legal Billing Specialist Opportunity up to $85k! This Jobot Job is hosted by Zach Allison Are you ...
Associate Attorney - Hybrid Remote, Low Billable, Up to $250k
1486login
· Chula Vista, US
Family Law Attorney We are looking for a qualified Family Law Attorney to join our team in providing legal representation and advice to our clients. The Attorney will draft documents, review documents, provide legal advi...
Japanese Language Document Review Attorney
1486login
· Boston, US
Japanese Document Reviewer Contact Review - Washington, DC Location: Remote Start Date: Negotiable Experience & Qualifications Fluent in Japanese Language Familiarity with document review workflows Examples: Privileg...
IP Legal Billing Coordinator (Hybrid)
1486login
· Orlando, US
Want to learn more about this role and Jobot? Click our Jobot logo and follow our LinkedIn page! Job details IP Legal Billing Coordinator (Hybrid) - Intellectual Property experience a must / AmLaw 50 This Jobot Job is ho...
Attorney
1486login
· Brentwood, US
Are you a litigation attorney with at least 2 years of experience looking for a role with a wonderful mentor? We are assisting a firm in Brentwood, TN looking to add to their team. This is a great opportunity to learn fr...