Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

American Express Global Business Travel

Sr. Application Security Engineer

Career Insights for Cyber Security Engineer

See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.

Scorecard

Based on national data

Review key factors to help you decide if this role fits your goals. How is this calculated?

Were these scores useful?

What they do

A Cyber Security Engineer designs systems that protect the security of large databases, including databases with customer information and patient files. Examines client computer systems, identifies weak points in security, develops and implements new systems, monitors and responds to security issues.

$109,450 / year median in the U.S.

+8% projected growth

Explore Career

Job Description

at American Express Global Business Travel in Springfield, Illinois, United States Job Description United States Full time J-84294 Amex GBT is a place where colleagues find inspiration in travel as a force for good and - through their work - can make an impact on our industry. We're here to help our colleagues achieve success and offer an inclusive and collaborative culture where your voice is valued. We are seeking an experienced Senior Application Security Engineer to join our team in the corporate travel industry. This remote position requires a unique blend of application development experience and security expertise to build, secure, and maintain our cloud-native infrastructure. The ideal candidate will have transitioned from application development into application security, bringing a developer's mindset to security and operations, and will mentor others while helping shape how the organization builds and governs secure software.

What You'll Do:

+ Work with DevOps teams to design, implement, and maintain secure CI/CD pipelines that integrate security testing at every stage of the software development lifecycle

+ Implement and tune automated security scanning, including

SAST , DAST , SCA

, and container scanning

+ Deploy and support API security tools, ensuring findings are consistently reported to a central aggregator

+ Collaborate with development teams to promote secure coding practices and provide security guidance throughout the development process

+ Evaluate and help govern the secure use of agentic AI coding tools across engineering teams, establishing guardrails and detection strategies to mitigate risks such as hallucinated dependencies, injected vulnerabilities, and insufficient oversight

+ Ensure compliance with industry standards relevant to the travel industry, including

PCI - DSS , GDPR

, and SOC 2

+ Build KPI and metrics reporting for application security initiatives and present findings to leadership as needed

+ Mentor junior engineers and promote a security-first culture across engineering teams

What We're Looking For:

+ 5+ years of professional software development experience with demonstrable expertise in major programming languages (Python, Go, Java, JavaScript/TypeScript); 3+ years of hands-on application security or DevSecOps experience

+ Strong knowledge of OWASP Top 10 and related secure coding practices; deep understanding of API security, authentication protocols, and secure API design

+ Strong cloud security expertise with at least one major cloud service provider ( AWS , Azure, or GCP ); deep understandin To view full details and how to apply, please login or create a Job Seeker account