Application Security Engineer Position
Pearson is a Global organization that does business in nearly every country; the majority of our systems are cloud based, using modern infrastructure and development practices. Pearson services a number of federal and highly sensitive workloads, ensuring security is routinely prioritized.
While we have a global reach, impacting the lives and work of many, we are a close-knit and passionate team of engineers with expertise ranging across the board in the realm of Cybersecurity. Here, you will always be a stone's throw away from exciting projects with many opportunities for growth and developing knowledge in cutting-edge technologies.
As an Application Security Engineer, you will be responsible for ensuring the holistic security of various applications and services used throughout the organization. You will be working with various application teams throughout the organization to ensure security best practices are adopted and implanted throughout the SDLC. You will work to identify, track, and advise the application teams to remediate vulnerabilities and the associated risks. Vulnerailities may come from various tools and testing done by yourself or other internal or third-party penetration testers.
The primary job responsibilities include:
Engagement with internal and external partner teams
Collaborate with product and platform teams on security controls
Plan, implement, upgrade, and monitor security measures related to application security
Collaborate with functional area architects, engineers, and security specialists across Pearson to implement suitable security solutions and controls.
Provide security expertise and assist project teams in adhering to enterprise and IT security policies, industry regulations, and best practices
Evaluate Pearson's current security and future architecture, offering solutions to address any gaps.
Assess and understand the current and planned security posture for platforms, provide recommendations for improvements and risk reduction
Develop security configuration standards, procedures, and guidelines for various platforms, including baseline security configurations and hardening guides.
Communicate security risks and solutions to business partners and IT staff
Coach developers on application security
Implement industry-leading security engineering practices across the organization.
Escalate and document risks when observed
Perform threat modeling
Perform thorough security reviews of software applications.
Identify and propose process improvements and identify opportunities for new processes and procedures to reduce risk
Assist with configuring Web Application Firewalls (WAF)
Assist with the tuning of Runtime Application Self Protection (RASP) tools
Assist in security incident response efforts as necessary
Aid teams in implementing appropriate logging practices
Collaborate with security operations teams to develop detection capabilities
Conduct research, design, and advocate for new technologies and security products that fulfill the security requirements of the enterprise, as well as those of its customers, business partners, and vendors.
Contribute to the development and maintenance of the information security strategy
Administer, configure, and support security tools
Assist with adoption of new/existing security tools as needed
Create/support integrations of security tools into central analytics system
Embrace a culture of continuous service improvement and service excellence
Stay up to date on security industry trends
Essential Skills:
Desirable Skills:
Who we are:
At Pearson, our purpose is simple: to help people realize the life they imagine through learning. We believe that every learning opportunity is a chance for a personal breakthrough. We are the world's lifelong learning company. For us, learning isn't just what we do. It's who we are. To learn more: We are Pearson.
Pearson is an Affirmative Action and Equal Opportunity Employer and a member of E-Verify. We want a team that represents a variety of backgrounds, perspectives and skills. The more inclusive we are, the better our work will be. All employment decisions are based on qualifications, merit and business need. All qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, sexual orientation, gender identity, gender expression, age, national origin, protected veteran status, disability status or any other group protected by law. We strive for a workforce that reflects the diversity of our communities.
If you are an individual with a disability and are unable or limited in your ability to use or access our career site as a result of your disability, you may request reasonable accommodations by emailing [email protected].
Note that the information you provide will stay confidential and will be stored securely. It will not be seen by those involved in making decisions as part of the recruitment process.
Job: ENGINEERING
Organization: Corporate Strategy & Technology
Schedule: FULL\_TIME
Workplace Type:
Req ID: 18391
\#location
...Job Description The Food Service Manager is a management position responsible for developing and implementing dining solutions to meet customer needs and tastes at a Starbucks store location at Purdue University. Oversees and manages dining operations where customers...
...Nurse Services Supervisor 2 - Staffing and Patient Placement - FT Day Shift Req ID: 96291 Location: Orange, California Division: Medical Center Department: Staffing and Patient Placement Position Type: Full Time Salary Range Minimum: USD $61.6...
We are seeking a Certified Journeyman Electrician to join our clients team and become an integral part of their continued success throughout Southern California. In order to be considered you must hold a current CA Journeymans License/Card, have a clean driving record...
Occupational Therapy Assistant (COTA) - Full time, Monday-Friday SNF in Cincinnati, Ohio Location: CareCore at Montgomery - Cincinnati, OH Schedule: Monday-Friday, 30-40 hours per week BRR is currently seeking a full time COTA for our 5-star CMS rated facility...
...Content Marketing Manager Remote- Must reside in United States Job Summary Tillster is looking for a dedicated content marketing manager to help in brand storytelling, thought leadership, and demand-driving content. We are looking for someone who can help us build...