Engineer - Application Cybersecurity

Chicago, IL, US • Posted 18 days ago • Updated 2 hours ago
Full Time
On-site
Fitment

Dice Job Match Score™

🧠 Analyzing your skills...

Job Details

Skills

  • Aviation
  • Management
  • Recovery
  • Risk Management
  • SAFE
  • Cyber Security
  • Testing
  • Mobile Applications
  • Vulnerability Assessment
  • Accessibility
  • Continuous Integration and Development
  • Research
  • Security Architecture
  • Design Review
  • OWASP
  • Quality Assurance
  • SCA
  • Programming Languages
  • Scripting
  • Software Development Methodology
  • API
  • Problem Solving
  • Conflict Resolution
  • Critical Thinking
  • Collaboration
  • Communication
  • Software Security
  • DevSecOps
  • Continuous Integration
  • Continuous Delivery
  • Data Analysis
  • Identity Management
  • Software Development
  • System Administration
  • Amazon Web Services
  • C#
  • Java
  • Python
  • Swift
  • JavaScript
  • Threat Modeling
  • Cloud Computing
  • Vulnerability Management
  • Regulatory Compliance
  • NIST 800-53
  • Technical Writing
  • Standard Operating Procedure
  • Cryptography
  • Authentication
  • Authorization
  • Web Applications
  • Network Security
  • WAF

Summary

Description

We're on a path to becoming the best airline in aviation history. Join our Cybersecurity and Digital Risk (CDR) team to help lead the industry in cyber safety, security and resilience. United's CDR team plays a critical role in protecting our operations by enabling secure and resilient systems, managing threats and vulnerabilities, and ensuring swift response and recovery. Our mission is to seamlessly embed cybersecurity and digital risk management into every aspect of our business. We help drive progress and growth through trusted digital solutions, safeguarding assets and empowering our team, all while promoting a cyber-safe and secure environment that supports resilient airline operations.

Job overview and responsibilities

The Engineer- Application Cybersecurity helps validate that our services, applications, and websites are designed and implemented in accordance with United's secure development standards. The engineer works closely with development teams, product teams, and other teams across the organization to integrate security into the product lifecycle from design through deployment.

The engineer will support the enforcement of security requirements, perform application security assessments, and provide developers with remediation guidance and advice.

  • Perform code analysis of applications, manually and using application security testing solutions including mobile application security tests as well as conducting manual vulnerability analysis, and assisting product teams with vulnerability remediation
  • Improve the accessibility of security through automation, continuous integration pipelines, and other means including but not limited to developing and maintaining CI/CD templates
  • Research, define and communicate security best practices and standards and ensure products development teams understand them
  • Support security architecture design reviews and threat modelling of our products

Qualifications

What's needed to succeed (Minimum Qualifications):

  • Bachelor's degree
  • Minimum of 3 years of experience in a relevant field
  • Working knowledge of OWASP Top 10, CWE 25
  • Working knowledge with application testing (i.e., SAST, DAST, SCA, etc.)
  • Working knowledge of programming languages and scripting (Python preferred)
  • Basic understanding of SDLC process
  • Basic understanding of web and app security stack (e.g., API security)
  • Ability to own projects and learn architecture over time
  • Ability to work independently and self-motivate
  • Excellent problem solving, critical thinking, interpersonal, collaboration, written and verbal communication skills
  • Must be legally authorized to work in the United States for any employer without sponsorship
  • Successful completion of interview required to meet job qualification
  • Reliable, punctual attendance is an essential function of the position

What will help you propel from the pack (Preferred Qualifications):

  • AWS Certified Solutions Architect - Associate
  • Certified Application Security Engineer
  • Basic understanding of DevSecOps (e.g., CI/CD)
  • Data analysis capability
  • Experience with any combination of the following: threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security, cloud computing
  • Experience with AWS technologies
  • Working knowledge of C#, Java, Python, Swift, and JavaScript
  • Basic understanding of threat modeling
  • Basic understanding of cloud technologies and security
  • Basic understanding of vulnerability management processes and proficiency in providing remediation guidance
  • Basic understanding of compliance frameworks (e.g., NIST 800-53) and processes
  • Working knowledge with technical documentation / Standard Operating Procedures (SOPs) creation
  • Basic understanding of cryptography
  • Basic technical understanding of authentication and authorization flows in web applications
  • Basic understanding of networks and network security (i.e., WAF, Micro-segmentation)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: unitedil
  • Position Id: 19745f0ca91167edd344a29e99b749c2
  • Posted 18 days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote or Chicago, Illinois

Today

Full-time

Chicago, Illinois

11d ago

Full-time

USD 114,500.00 - 194,700.00 per year

Chicago, Illinois

Today

Full-time

USD 114,500.00 - 194,700.00 per year

Chicago, Illinois

Today

Full-time

Compensation information provided in the description

Search all similar jobs