Meijer Logo

Meijer

Senior IT Application Security Engineer

Posted One Month Ago
Remote
Hiring Remotely in Michigan, USA
121K-191K Annually
Senior level
Remote
Hiring Remotely in Michigan, USA
121K-191K Annually
Senior level
Lead application security initiatives across the SDLC: perform threat modeling, secure design reviews, remediation guidance, third-party pen test management, develop security tooling, advise leadership on risks, mentor teammates, and improve application security maturity and training.
The summary above was generated by AI

As a family company, we serve people and communities. When you work at Meijer, you’re provided with career and community opportunities centered around leadership, personal growth and development. Consider joining our family – take care of your career and your community!


Grab the Good Stuff:

  • Weekly pay

  • Team member discount

  • 401(k) with company contributions

  • Paid parental leave 

  • Paid education assistance

  • Development programs for advancement and career growth

  • Medical/dental/vision

  • And more!

 

Please review the job profile below and apply today!

The Senior IT Application Security Engineer is recognized as a subject matter expert in secure application design, threat modeling, and secure coding practices. You will assist software development teams in designing, creating, and implementing secure solutions by ensuring that security checks are followed throughout each phase of the software development life cycle (SDLC). You are expected to take a proactive leadership role in driving application security initiatives and define, communicate, and enforce application security standards across the organization. You will lead opportunities to enhance security processes and mentor team members by sharing your expertise. You will also identify security knowledge gaps and present training to IT stakeholders. Additionally, you will champion efforts to advance the maturity of the application security program to help foster a culture of continuous improvement.

What You'll be Doing: 

  • Develop and provide presentations on application security topics to both technical and non-technical audiences. 

  • Advise executive leadership on current and evolving threats to enable risk-informed decisions. 

  • Mentor members of the information security team on matters of application security. 

  • Facilitate third-party penetration tests, triage findings, and create remediation plans with development teams. 

  • Provide tailored remediation guidance to software developers to address security findings. 

  • Provide architectural and security guidance for third-party platforms and services as they integrate into Meijer environments and/or code.  

  • Review the security of third-party/open-source software used by Meijer. 

  • Provide risk-based analysis of security posture to drive business decisions. 

  • Foster relationships with key business partners to create a culture of security and achieve prioritization of security initiatives. 

  • Develop internal security tooling for identifying or remediating security risks. 

  • Assist/lead on matters of application security in the event of an incident. 

  • This job profile is not meant to be all inclusive of the responsibilities of this position.  May perform other duties as assigned or required. 

What You Bring with You (Qualifications): 

  • Bachelor’s degree or above in Computer Science, Information Security, or related field. 

  • At least four years of professional experience, with at least two years in a security field and at least one year with direct experience writing code. 

  • Familiar with object-oriented programming and have written code in one or more programming languages (e.g. C#, Java, C++). 

  • Agile/Scrum, SAFe, or Lean certification preferred. 

  • Familiarity with secure coding best practices such as the OWASP Top 10. 

  • Knowledge of common application architectures and the relative risks associated with them (e.g. single page apps, client-server, native mobile, microservices). 

  • Foundational knowledge of security practices in several applied contexts, e.g. networking, cloud infrastructure, containerization, operations, audit, or governance. 

  • Knowledge of relevant technology, tools, databases, and development techniques. 

  • Strong focus on team dynamics and interpersonal relationships. 

  • Strong sense of task ownership with consistent follow-through. 

  • Ability to anticipate risks and devise solutions with limited information or context. 

  • Excellent project management, organization, and team collaboration skills. 

  • Curiosity to learn. 

  • Capable of defining and measuring key performance indicators. 

  • Able to work cross-functionally with IT and business partners across all areas of Meijer and vendor partners. 

  • Adaptive, flexible, and responsive to challenges. 

  • Awareness of how security controls influence both internal stakeholders and Meijer customers. 

  • SANS/GIAC, CompTIA, ISC2 (e.g. CISSP) or other applicable industry certifications preferred. 

We are committed to offering competitive pay that reflects market standards and ensures consistency within our organization.

The pay range for this position is listed below.

$120,750.00 - $191,000.00

This pay range represents the minimum and maximum base pay for the position, which is determined by factors such as market data, the qualifications required, the level of responsibilities associated with the role and other roles at this same level. Your specific pay rate within this range will be based on your experience, qualifications, and skills compared to the internal team you’ll be joining.

We offer a comprehensive benefits package that includes medical, dental, vision, life insurance, a 401(k) plan with employer match, disability leave, and paid time off (PTO). In addition to these core benefits, we are committed to supporting your overall well-being and career growth. Our offerings include a variety of programs designed to support your personal and professional development, such as paid parental leave, paid education assistance (including free education), a childcare subsidy and more. We are dedicated to creating a work environment that promotes work-life balance, long-term health and financial security, and continuous professional development

The interview process is intended to learn more about your personal skills and experience. To this end, we ask that candidates do not use AI tools during the hiring process.

Please note:

  • Cameras must be turned on during all virtual interviews.

  • AI tools may not be used during any part of the interview process.

Similar Jobs

3 Minutes Ago
Remote or Hybrid
45K-85K Annually
Junior
45K-85K Annually
Junior
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Handle inbound calls and warm leads, consult customers on insurance needs, recommend appropriate property and casualty coverages, and convert prospects into policyholders. The role includes paid training and licensing, commission opportunities, customer relationship building, and adherence to remote work, schedule, and state residency requirements.
Top Skills: Cable/Fiber/Dsl InternetPcWired High-Speed Internet
5 Minutes Ago
Remote or Hybrid
United States
130K-160K Annually
Senior level
130K-160K Annually
Senior level
Enterprise Web • HR Tech • Information Technology • Software • Cybersecurity
Sell Immersive's cyber resilience SaaS to large enterprise clients in the US East region, acquire net-new flagship accounts, retain and grow account value, coordinate with marketing, pre-sales, channel partners and customer success, and represent the company at industry events.
6 Minutes Ago
Easy Apply
Remote or Hybrid
USA
Easy Apply
174K-220K Annually
Senior level
174K-220K Annually
Senior level
Healthtech • Information Technology • Software • Telehealth
Build and operate data platform services, APIs, SDKs, schemas, validation tools, event-driven pipelines, and reverse ETL workflows. Improve Kafka-based data delivery, schema evolution, observability, lineage, access controls, privacy, and compliance. Partner with engineering, analytics, data science, security, and infrastructure teams to create reliable, self-service data workflows. Operate AWS services, infrastructure as code, monitoring, alerting, and incident response.
Top Skills: Apache IcebergAPIsAutomated TestingAvroAWSC#Continuous DeliveryData WarehousingDatabricksInfrastructure As CodeJavaJson SchemaKafkaKotlinLakehouseObservabilityOpenapiProtobufPythonReverse EtlSdksSnowflakeSQLTypescript

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account