Security Engineer II focusing on application security at NerdWallet, ensuring products safeguard user data. Collaborating with teams to improve security practices and develop tooling.
Responsibilities
Partner closely with engineering teams across the company to reduce security risk throughout the software development lifecycle
Contribute to initiatives that strengthen NerdWallet’s security posture by improving tooling, workflows, and standards
Help scale NerdWallet’s application security program through automation, tooling, and developer enablement
Build tools, processes, and automation that improve security posture visibility for engineers and leadership
Review pull requests and provide actionable guidance on secure coding practices
Support operational work during security investigations or incidents affecting applications
Help integrate security practices into the secure development lifecycle (SDLC) across teams
Requirements
2+ years of experience in application security, software engineering, or a related security role
Experience identifying, triaging, and remediating security vulnerabilities in applications
Experience working with software deployed in cloud environments, particularly AWS
Proficient in Python or another scripting language used for automation
Comfortable reading and reviewing JavaScript or similar application code
Experience or interest in building automation, tooling, or processes that improve application security workflows
Comfortable learning new programming languages, frameworks, or security tools as needed
Benefits
Monthly Healthcare Stipend
Rejuvenation Policy – Vacation Time Off + You will receive the official public holidays in your province
Paid sabbatical for Nerds to recharge, gain knowledge and pursue their interests
Monthly Wellness Stipend, Wifi Stipend, and Cell Phone Stipend
IT Security Specialist responsible for day - to - day support of Hudbay’s IT security program and monitoring security risks. Collaborating on various projects to ensure security best practices are followed across the organization.
Linux Engineer enhancing security technology for Canonical’s Ubuntu. Collaborating on FIPS and CC certification while implementing security frameworks and benchmarks.
Senior Security Officer managing security operations at Umicore to ensure safe and smooth business operations while leading the security staff and compliance.
Security GRC Specialist managing risk lifecycle and compliance at Aviso, a leading wealth management organization. Conducting assessments and supporting governance in a dynamic work environment.
ICRC Police and Gendarmerie Delegate focusing on dialogue with armed forces to enhance humanitarian efforts in various conflict situations. Coordination of strategies to prevent and respond to humanitarian consequences of armed conflict.
Senior Cybersecurity Advisor at Optiv designing advanced security solutions for clients. Collaborating with specialists to drive cybersecurity initiatives and meet strategic goals of client organizations.
Software Engineer II building scalable infrastructure for email security product at Abnormal AI. Collaborating with engineers and data scientists to ensure high - performance solutions.
Cybersecurity Officer ensuring end - to - end cybersecurity for Growe Talents in a leadership role. Overseeing security operations, defining strategies, and managing security teams in a dynamic environment.
Cybersecurity Officer managing end - to - end security across the company with a focus on compliance and risk management. Leading a large team in executing security strategies across the organization.
Global Security Architect at Colliers responsible for defining security solutions across global processes and technology. Leading cloud migrations and security strategies for GCP and Azure environments.