Search by job, company or skills

Security Engineer

Security Engineer

Q2
12-15 Years
Not Disclosed
Quick Apply
  • Posted 27 days ago
  • Over 100 applicants have applied

Job Description

  • Manage and optimize code scanning tools (e.g., SAST, DAST) to detect and remediate security vulnerabilities.
  • Provide security guidance and best practices to engineering teams throughout the software development lifecycle.
  • Design, maintain, and report on application security metrics and dashboards to track progress and effectiveness.
  • Perform security assessments, including threat modeling and architecture reviews for new features and applications.
  • Collaborate with DevOps and CI/CD teams to integrate security tools seamlessly into development pipelines.
  • Stay up-to-date on the latest security threats, vulnerabilities, and remediation strategies to evolve application security practices.
  • Deliver secure coding training and resources to engineering teams to foster a security-first culture.

Things You Will Need to Be Successful in This Role

  • Typically requires a minimum of 5 years of related
  • experience with a Bachelor s degree; or 3 years and
  • a Master s degree; or a PhD without experience; or
  • equivalent work experience.
  • Proficiency with code scanning tools.
  • Deep understanding of secure coding practices and standards (e.g., OWASP Top Ten).
  • Hands-on experience with programming languages such as Python, Java, JavaScript, or C#.
  • Familiarity with CI/CD pipelines and integrating security tools into DevOps workflows.
  • Strong analytical skills to interpret scan results and prioritize remediation efforts.
  • Certifications (Preferred): CSSLP or relevant security certifications.
  • Excellent communication and collaboration skills to work effectively with cross-functional teams.
  • A proactive and detail-oriented mindset to identify and mitigate risks early in the development lifecycle.

More Info

Job Type:
Function:
Employment Type:

Key Skills

About Company

Q2 is a financial experience company dedicated to providing digital banking and lending solutions to banks, credit unions, alternative finance, and fintech companies in the U.S. and internationally. With comprehensive end-to-end solution sets, Q2 enables its partners to provide cohesive, secure, data-driven experiences to every account holder – from consumer to small business and corporate. Headquartered in Austin, Texas, Q2 has offices throughout the world and is publicly traded on the NYSE under the stock symbol QTWO. To learn more, please visit Q2.com.

Similar Jobs

15-17 yrs
Bengaluru, India
Skills:
threat modeling , Ml, Mern Stack, Software Design, Sdlc, Jenkins, cloud, MLops, Docker, Python, agentic AI concepts, GitOps, OWASP Top 10 vulnerabilities, Ai, governance frameworks, secure workflows, software systems design tools and languages, GitHub Actions, responsible AI principles, CI/CD pipelines, secure coding practices, large language models, AI security
5-12 yrs
Bengaluru, India
Skills:
Scripting, Incident Response, Https, Web Application Security, Python, AWS, PowerShell, Log Analysis, Soc, Idam, SSL, Automation, Gcp, Iam, Owasp Top 10, Azure, Splunk SIEM, F5 ASM, Agile delivery models, CSIRT, DevSecOps automation, Azure WAF, WAF tuning, Security Operations, akamai, WAF rule creation, Security Monitoring, TLS certificates, Rate limiting, Cloud-native security controls
8-15 yrs
Bengaluru, India
Skills:
PowerShell, Dlp, Intune, Terraform, Siem, Azure, Python, Sso, Saml, Okta, AWS, XDR, CASB, Jamf, WebAuthn, EDR, MDM, FIDO2, Authentication policy, SCIM, Microsoft Entra ID, SOAR, conditional access, OIDC
10-12 yrs
Bengaluru, India
Skills:
threat modeling , DAST, Cloudformation, Javascript, Application Security, Terraform, Owasp Top 10, Python, AWS, NIST AI RMF, MITRE ATLAS, zero-trust architectures, secure software development, OWASP LLM Top 10, cloud platforms, Go, identity access controls, Security Architecture, infrastructure-as-code, secure API gateways, SAST, AI security, AI ML systems
10-12 yrs
Bengaluru, India
Skills:
C, secure key management, UEFI BIOS security, TPM Trusted Platform Module firmware and protocols, open-source TPM stacks, industry best practices, hardware-backed security, embedded security solutions, cryptographic algorithms, security vulnerabilities mitigations, secure enclave technologies