Application Security Engineer
PayPal
This job is no longer accepting applications
See open jobs at PayPal.See open jobs similar to "Application Security Engineer" Georgia Fintech Academy.
Birmingham, AL, USA
Posted 6+ months ago
At PayPal (NASDAQ: PYPL), we believe that every person has the right to participate fully in the global economy. Our mission is to democratize financial services to ensure that everyone, regardless of background or economic standing, has access to affordable, convenient, and secure products and services to take control of their financial lives.
Job Description Summary:As a member of the Enterprise Cyber Security (ECS) Threat Modeling Team you will be responsible for evangelizing, mentoring stakeholders, and executing threat modeling activities to secure PayPal applications and systems.
Job Description:
Job Description Summary:As a member of the Enterprise Cyber Security (ECS) Threat Modeling Team you will be responsible for evangelizing, mentoring stakeholders, and executing threat modeling activities to secure PayPal applications and systems.
What you need to know about the role:We are seeking an experienced Senior Threat Modeling Engineer to join our Enterprise Cyber Security (ECS) Threat Modeling Team. In this role, you will be responsible for assessing PayPal’s and associated business lines (e.g. Venmo, Xoom, Braintree, Chargehound, GoPay, HappyReturns, Hyperwallet, and Paidy) security posture by identifying and analyzing potential threats and vulnerabilities to our systems and applications. You will be expected to develop and maintain threat models that accurately reflect the security landscape and identify areas of weakness that need to be addressed.
Meet our team:As a Threat Modeling evangelist, you will work with Security Advocates, Architects, and Engineers to educate and bring awareness to the value of threat modeling in designing more secure systems. This role will work closely with different teams within cyber security and line of business partners building threat models and driving high impact security and technology changes.
Your way to impact:This role will have opportunities to keep up with current and emerging threats in the industry and latest bleeding edge tech to identify gaps or areas to improve upon in cyber security. If you are the kind of person who thinks outside of the box, brings an extra edge to the table to accomplish tasks, and desires to gain real-world experience with a world-class team in the ever-changing field of security, then please apply for this position.
In your day-to-day role you will:
- Develop and maintain threat models that reflect the organization's security posture.
- Analyze potential threats and vulnerabilities to our systems and applications.
- Work closely with engineers, developers, and security teams to identify security issues and develop appropriate mitigations.
- Educate and mentor key stakeholders on threat modeling frameworks, processes, and principles.
- Support the Security Advocates and Threat Modeling Champions programs.
- Stay up-to-date with the latest security trends, technologies, vulnerabilities, and attacks, and incorporate this knowledge into threat models.
- Develop and maintain security metrics to track progress towards security goals.
- Provide guidance and mentorship to junior team members.
- At least 5 years of experience in threat modeling, security risk assessments, and/or similar discipline.
- Expertise in threat modeling methodologies and tools (e.g. STRIDE, DREAD, LUNDDUN)
- Experience working with developers to communicate deficiencies and implement security measures.
- Strong knowledge of enterprise application architectures, cloud architectures, and related security principles.
- Experience working with OWASP and NIST security standards and frameworks.
- Excellent written and verbal communication skills.
- Ability to work independently and as part of a team.
- Ability to mentor and guide junior team members.
- We know the confidence gap and imposter syndrome can get in the way of meeting spectacular candidates. Please don't hesitate to apply.
This job is no longer accepting applications
See open jobs at PayPal.See open jobs similar to "Application Security Engineer" Georgia Fintech Academy.