Security engineer on security Job at Fynbosys Inc, Cincinnati, OH

VVBWWmNsTi9zb2twSGo3aU5mSG04QWJR
  • Fynbosys Inc
  • Cincinnati, OH

Job Description

FUNCTION:
Securing APIs is essential to "shifting left" the technology development at the Bank. The Individual will participate in technical conversations to determine API security risks, help establish an API scanning strategy specifically around API Security scanning, discovery and tooling. They will write and define API patterns while also creating the business and security requirements. They will write requirements with threat modeling in mind to assist engineers with building securely.

They will meet with stakeholders and determine criticality of controls and work with application owners to create patterns. They will collaborate with technical and business stakeholders to address Information Security risks while achieving business objectives, meeting regulatory requirements, and addressing emerging threats.

Responsible for providing expertise and support on decisions and priorities regarding the enterprise's overall Information Security strategy and posture. Responsible and accountable for risk by openly exchanging ideas and opinions, elevating concerns, and personally following policies and procedures as defined.

Accountable for always doing the right thing for customers and colleagues and ensures that actions and behaviors drive a positive customer experience. While operating within the Bank's risk appetite, achieves results by consistently identifying, assessing, managing, monitoring, and reporting risks of all types.

MINIMUM KNOWLEDGE, SKILLS AND ABILITIES REQUIRED:
  • Bachelor s degree in a relevant technology field or equivalent combination of education and work experience.
  • 8+ years of engineering or other IT/Security work experience relevant to the position

Five or more years of interdisciplinary experience in 4 or more of the following:

  • Access Control Systems, Application Security, Application SDLC, Operating Systems, Cryptographic Controls, API Security, API Scanning, Experience with secure development tools, and Networking.
  • Excellent communications skills as well as the ability to build effective relationships with business leaders, governance leads and stakeholders. Ability to manage multiple, diverse tasks simultaneously and effectively prioritize work; strong organizational skills in a results-oriented environment.
  • Willingness to work in a highly collaborative environment.
  • Ability to effectively communicate with technical and non-technical stakeholders.
  • Solid understanding of IT security best practices.
  • Skilled in designing, implementing, and supporting complex technical solutions. Ability to troubleshoot complex operational issues.
  • Extensive experience designing, developing, and implementing serverless solutions within AWS.
  • Extensive development experience with different API capabilities.
  • Experience in building and deploying CI/CD pipelines.
  • Familiarity with OWASP
  • Previous experience automating security controls within CI/CD pipelines a plus.
  • Previous microservice development a plus.
  • Previous experience in application vulnerability remediation a plus.


ESSENTIAL DUTIES AND RESPONSIBILITIES:

  • Provides expert technical insight and industry perspective in the creation, delivery, and integration of complex and comprehensive security solutions for securing APIs.
  • Acts as an internal consultant, advocate, mentor, and change agent.
  • Viewed as an Information Security expert and critical technical resources across multiple technical areas and business segments.
  • Partners with other groups to ensure solid, cross-functional decisions are made as a team.
  • Maintains and demonstrates a strong understanding of enterprise systems, policies, standards, regulatory requirements, and business drivers.
  • Represents Information Security at enterprise review meetings (ITAC, NPI Reviews, Production Readiness, etc.).
  • Adheres to and promotes compliance to Information Security policies, standards and best practices.
  • Leads process improvement and risk mitigation initiatives.

This position will perform the following functions:

  • API Security
  • API Scanning
  • Process Automation
  • Testing
  • API Architecture
  • API Design and Lifecycle management
  • Work with other dev teams to integrate new security-focused API initiatives and provide support to IT Teams through API integrations.
  • Provide clear and concise documentation on delivered code as well as customer onboarding and support documentation
  • Work collaboratively in an agile environment


MUST HAVE SKILLS:

  • API Development
  • API Discovery
  • API Scanning
  • API Security Tooling
  • AWS API Gateway
  • CI/CD
  • DevOps
  • Groovy
  • Secure Code Tooling
  • Security Engineering

NICE TO HAVE SKILLS:

  • API Management
  • SAST/SCA Experience

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

Report this job
  • Dice Id: 10494738
  • Position Id: 8345480

Job Tags

Contract work, Work experience placement, Shift work,

Similar Jobs

Goldbelt Inc

Lead Ticket Agent Job at Goldbelt Inc

 ...supervisor, and in a lead capacity by assigning and checking work and providing daily guidance/training to subordinate Hosts or Ticket Agents. Seasonal Employees are eligible for the Seasonal Sign-on Bonus and Layoff Employee Bonus Plan (Plans) is designed to provide... 

United Parcel Service of America, Inc.

AUTOMOTIVE JOURNEYMAN TECHNICIAN Job at United Parcel Service of America, Inc.

 ...help you become better every day. We know what it takes to lead UPS into tomorrowpeople with a unique combination of skill + passion...  ...Automotive Technicians must be willing to work 1st, 2ndor 3rdshifts, including Monday through Friday, Sunday through Thursday as well... 

IFG - International Financial Group

Graphic Designer Job at IFG - International Financial Group

 ...General - Job Title: Presentation Designer - Type: Contract - Level: Mid-Level - Location: Remote...  ...collaborate with multiple teams and use your graphic design skills to enhance the visual...  ..., InDesign) - Familiarity with entry-level Microsoft products (Microsoft... 

Riverside Community College District

Director, Government Contracts and Procurement(Institutional Advancement and Economic Development) | Riverside Community College District Job at Riverside Community College District

 ...Director, Government Contracts and Procurement (Institutional Advancement and Economic Development) Application Deadline Interested...  ...the Department of Defense (DoD), other federal agencies, and state and local governments; 2. The North American Industry Classification... 

WAKEFIELD MCCOY LIMITED

Remote Data Entry Clerk Job at WAKEFIELD MCCOY LIMITED

 ...updating data into our systems, ensuring data integrity and accuracy at all times. This position offers the flexibility to work remotely, providing an excellent opportunity for those looking for a work-from-home role. Employment Type: Full-Time Salary: $ 35.00 Per Hour