
78 results (7 new)













First-Citizens Bank & Trust Company
Remote or Raleigh, North Carolina • Today
Full-time
depends on experience


First-Citizens Bank & Trust Company
Remote or Raleigh, North Carolina • Today
Full-time
depends on experience







.jpg%3Fformat%3Dwebp&w=828&q=75)

Cybersecurity Engineer IV – Application Security
Location: Chicago, IL | Peoria, IL | Dallas, TX
Work Model: Hybrid (Currently onsite every Wednesday; role is expected to transition to 5 days/week onsite. Candidates must be local and willing to work onsite full-time when required.)
Duration: Duration: 12 months
Important Notes
• This is an Application Security position, not a general Cybersecurity role.
• Candidates with backgrounds focused primarily on Network Security, SOC Operations, Infrastructure Security, or traditional Cybersecurity without significant Application Security experience are unlikely to be a strong fit.
• Experience collaborating directly with software development teams and integrating security throughout the SDLC is essential.
Position Overview
Caterpillar is seeking an experienced Cybersecurity Engineer IV specializing in Application Security to join its Security Engineering team. This is not a general cybersecurity role—the primary focus is embedding security throughout the Software Development Lifecycle (SDLC) while partnering directly with software engineering teams.
The selected candidate will support external-facing, revenue-generating eCommerce and web applications, ensuring security is integrated from application design through deployment and production. This position is ideal for security professionals who have experience working alongside developers to build secure applications rather than performing security assessments after development is complete.
About the Team
The Security Engineering team partners closely with Caterpillar''s eCommerce Development organization to integrate security into every phase of application development. Engineers work directly with software developers, architects, and technical leaders to improve secure coding practices, identify vulnerabilities early, and implement scalable security solutions throughout the SDLC.
Top Skills
• Application Security
• Software Development Lifecycle (SDLC)
• Secure Software Development
• SAST & DAST
• Security Governance
• DevSecOps / CI-CD Security
• Vulnerability Management
• Secure Coding Practices
• Software Development Background
• Strong Communication & Stakeholder Management
Key Responsibilities
• Partner with software engineering teams to integrate security throughout the Software Development Lifecycle (SDLC).
• Embed Security by Design principles into application architecture and development.
• Review and improve application security practices across enterprise web applications.
• Identify, analyze, prioritize, and help remediate application security vulnerabilities.
• Utilize and support security testing throughout the SDLC, including Static and Dynamic Application Security Testing (SAST/DAST).
• Analyze application code when necessary to identify security risks and recommend remediation.
• Collaborate with developers to implement secure coding practices.
• Communicate security risks, findings, and recommendations to software engineers, technical leadership, and business stakeholders.
• Provide guidance on secure software development, application security governance, and security best practices.
• Support security integration within CI/CD pipelines and modern development workflows.
• Educate development teams on application security principles and secure development methodologies.
Required Qualifications
Education & Experience
• Bachelor''s degree in Computer Science or a related technical field with 8+ years of Information Security experience
OR
• Master''s degree with 6+ years of Information Security experience
Senior candidates with significant Application Security experience are encouraged to apply.
Required Technical Qualifications
Application Security
• Strong hands-on experience in Application Security.
• Experience integrating security into modern Software Development Lifecycles.
• Knowledge of secure software development practices.
• Experience with application security governance.
Software Development Lifecycle (Highest Priority)
Candidates must demonstrate strong understanding of the complete SDLC, including:
• Requirements gathering
• Application architecture
• Software development
• Testing
• Deployment
• Production support
• Application maintenance
Previous software development experience is highly desirable, as this role partners directly with development teams throughout the development lifecycle.
Security Testing
Experience with application security testing methodologies such as:
• Static Application Security Testing (SAST)
• Dynamic Application Security Testing (DAST)
Experience with any commercial security testing platform is acceptable. Expertise with Caterpillar-specific tools is not required.
Software Development
Preferred experience with:
• Reading and understanding application source code
• Working alongside software developers
• Secure coding practices
• Security integration within CI/CD pipelines
Source Control
Experience with GitHub or similar source control platforms.
Preferred Qualifications
• Software development experience
• Ability to review and analyze application source code
• AI programming or AI model experience
• Experience utilizing AI tools within software development
• Familiarity with secure DevSecOps practices
Candidates with AI experience will receive additional consideration when technical qualifications are otherwise comparable.
Required Soft Skills
•Excellent written and verbal communication skills
•Ability to explain complex cybersecurity concepts to technical and non-technical audiences
•Strong collaboration and stakeholder management skills
•Experience working with software engineers, architects, and technical leadership
•Strong presentation and interpersonal skills
•Ability to influence security decisions across multiple teams
Virisha LLC is a fast growing renowned IT, Software development, Staffing and Consultancy firm based of 600 N Broad Street Suite 5, Middletown, DE 19709, United States, with the sole purpose of delivering tailored and innovative IT solutions to its clients worldwide. If we talk about our IT Staffing services, it’s one-stop recruitment solution where recruiters have the ability to think out of the box and render best solutions to our clients to overcome their staffing challenges.
.jpg%3Fformat%3Dwebp&w=1080&q=75)
🔢 Crunching numbers...
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs