Inmar logo

Sr. Application Engineer, Cyber Security

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Remote
On-site
Benefits
Health Insurance
Dental Insurance
Vision Insurance

Job Description

The Sr. Application Engineer, Cyber Security is responsible for building, managing and supporting information security that underpins all internal and external user technology services, according to security policies and best practices.

The Sr. Application Engineer, Cyber Security is a security-focused software engineer responsible for designing, building, and automating security controls directly into application architectures, CI/CD pipelines, and software development workflows. This individual is accountable for identifying weaknesses in our security posture within the application or web space while defining methods to achieve security control requirements via automation or highly efficient means that further support timely delivery with minimal overhead. They work across internal and external teams of infrastructure specialists and software engineers making sure services are delivered and used securely as required, offering advice and guidance on security decisions and ensuring the effective use of common tools and patterns.

The incumbent must have a collaborative, service-oriented mentality, a high sense of ownership, and a strong track record of driving security initiatives to completion They excel at communicating complex risk concepts to engineering teams, providing proactive status updates on architectural reviews and security remediation efforts, and managing production changes responsibly.

Additional insights, experience or background in any of the following are also of great value: NIST, ISO 27001, Data Protection & Privacy, Threat Modeling (STRIDE), Static & Dynamic Security Analysis (SAST/DAST), Penetration Testing, Secure Software Architecture & Design, Developer Workflow Governance & Branch Protections, CI/CD Security Gates & Supply Chain Controls, API Security & Identity (OAuth2, OIDC), Microservices, Containers (Docker, Kubernetes), Cloud Security (AWS, Azure, GCP) & Architecture, Agile/DevOps Methodologies, Process Maturity, and related frameworks.

Primary Accountabilities Technical (80%)

● Be the primary security expert for multiple product lines and act as the point of contact for engineering and security.

● Design, write, and maintain custom security tools, automation scripts, and custom scanner rules to streamline security checks in CI/CD pipelines.

● Partner directly with software developers at the code level - providing actionable code snippets, refactoring recommendations, and technical architectural patterns to remediate complex vulnerabilities.

● Support engineering with implementing security fixes, ensuring security scanners are utilized correctly, and develop strategies to proactively secure their architecture.

● Review development frameworks for security functionality, consistency, and uplift opportunities.

● Perform threat modeling sessions and leverage them to prioritize time based on risk impact.

● Implement and/or assess existing security controls.

● Produce detailed technical designs and document all work using required standards, methods and tools, including prototyping tools where appropriate.

● Design systems characterized by managed levels of risk, manageable business and technical complexity and meaningful impact; works with well-understood technology and identifies appropriate patterns.

Project Management (20%)

● Work with application development teams to ensure secure software development lifecycle (S-SDLC) implementation and validation.

● Educate and train product teams.

● Evaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical cyber security subjects.

Required Qualifications:

● Bachelor of Science Degree in Computer Science, or a Bachelor of Arts Degree in a related technical field

● 10+ years of related work experience in security engineering with prior experience as a Software Engineer, Backend Developer, or Full-Stack Developer.

● Or any equivalent combination of experience and training/certification that provides the required knowledge, skills, and abilities needed to complete the major responsibilities/essential functions of the position

● Certifications preferred. OSCP, CISSP, GCIH, GXPN, GPEN

● Strong experience in web and mobile application security

● Strong experience in distributed platform development security and design

● In-depth knowledge of web and mobile security standards and best practices (OWASP, etc.)

● Strong foundation in core information security principles and concepts (HTTPS, TLS, OAuth, etc.)

● Experience with industry tools and technologies such as Burp, Metasploit, etc. ● Demonstrated proficiency in building production-grade applications using modern programming languages (e.g., Java, Python, Go, TypeScript/JavaScript). ● Solid understanding of public cloud security deployment and implementation issues (AWS, Azure, GCP)

● Understanding of audits and standards requirements such ISO 27001, PCI DSS, SOC 1 & 2, etc.

● Proven expertise in enterprise-grade and web scale security solutions

Security and Risk Assessment

● Aware of Security governance principles and able to apply them to the enterprise

● Understands the legal and regulatory Issues relevant to the enterprise and does not place the enterprise at risk. Security Engineering

● Solid working knowledge of secure design principles

● Solid working knowledge of database security

● Solid working knowledge of cloud computing

● Solid working knowledge of cryptography

● Solid working knowledge of secrets management practices and secure API architecture. Identity and Access Management

● Authentication and authorization o OAuth, SAML, MFA, LDAP

● Session management

● Credential management Software Development Security

● Solid working knowledge of software development lifecycles

● Solid working knowledge of what software development methodologies are used in the enterprise and can explain what it means

● Solid working knowledge of DevSecOps methodologies

● Solid working knowledge of security vulnerabilities and understands how the following work: bounds checking, input/output validation, buffer overflow, privilege escalation

● Solid working knowledge of secure coding practices

● Solid working knowledge of modern version control and SDLC tooling (Github, Azure DevOps)

At Inmar, we put people first and that means empowering our associates to thrive at every stage of life and career. Our comprehensive and competitive benefits package is thoughtfully designed to support a wide range of lifestyles and life stages.

Eligible associates have access to:

  • Medical, Dental, and Vision insurance

  • Basic and Supplemental Life Insurance options

  • 401(k) retirement plans with company match

  • Health Spending Accounts (HSA/FSA)

We also offer:

  • Flexible time off and 11 paid holidays

  • Family-building benefits, including Maternity, Adoption, and Parental Leave

  • Tuition Reimbursement and certification support, reflecting our commitment to lifelong learning

  • Wellness and Mental Health counseling services

  • Concierge and work/life support resources

  • Adoption Assistance Reimbursement

  • Perks and discount programs

Please note that eligibility for some benefits may depend on your job classification and length of employment. Benefits are subject to change and may be governed by specific plan or program terms.

We are an Equal Opportunity Employer, including disability/vets.

Recruitment Fraud Notice: Recruitment fraud is an increasingly common scam where individuals pose as employers to offer fictitious job opportunities. Scammers sometimes impersonate Inmar recruiters on LinkedIn and other channels. We will never ask for payment or sensitive personal information during the hiring process. Verify any role on our official Workday Careers site and learn how to spot scams in our full notice.

This position is not eligible for student visa sponsorship, including F-1 OPT or CPT. Candidates must have authorization to work in the U.S. without the need for employer sponsorship now or in the future.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Sr. Application Engineer, Cyber Security Jobs at Inmar

What is the work location for this position at Inmar?
This job at Inmar is located in Winston Salem, NC, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Inmar?
Employer has not shared pay details for this role.
What employment applies to this position at Inmar?
Inmar lists this role as a Full-time position.
What experience level is required for this role at Inmar?
Inmar is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Inmar for this role?
Inmar offers following benefits: Health Insurance, Dental Insurance, Vision Insurance, Life Insurance, Paid Holidays, Parental and Family Leave, Flexible/Unlimited PTO, 401k Matching/Retirement Savings, Tuition/Education Assistance, and Health & Wellness Programs for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Inmar?
You can apply for this role at Inmar either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.