Tallo logoTallo logo

Application Security Engineer North Dallas or Det

Job

Comerica Bank

Lake Angelus, MI (In Person)

Full-Time

Posted 4 weeks ago (Updated 4 weeks ago) • Actively hiring

Expires 5/28/2026

Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
75
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Application Security EngineerThe Application Security Engineer provides a higher level of security in Comerica's web application environments. Generally working with dynamic and static code analyzers, communicates vulnerabilities to development teams and coaches as necessary to remediate these vulnerabilities. Integrates tool output into development pipelines. Creates and shares proof of concept code to demonstrate application attacks. Onboards applications and vulnerability tracking into management system and reports on progress. Hosts threat modeling exercises based on STRIDE or other industry standard methodology to draw out vulnerabilities during design phase. Guides aspiring application security individuals, leads implementation of new tools and methods. Significant overlap and interplay with Penetration Testing team.
Position Responsibilities:
Static and Dynamic Code AnalysisPerforms integration of static and dynamic code scan output into CI/CD pipeline.

Reviews of code analysis output and translation into findings.

Utilizes the finding management software and tracking remediations with the development teams.

Performs development and application team education resolution training.

Performs emerging threat and threat landscape research.

Provides forensic cyber event analysis.

Identifies means to reduce cyber-attack effectiveness.

Looks for continuous improvement of detections for operationalization.

Threat Modeling and Emerging Vulnerability DetectionLeads threat modeling workshops to draw out vulnerabilities.

Champions industry standard Threat Modeling framework (such as STRIDE).Updates detection tools as new vulnerabilities emerge.

Stays aware of new vulnerabilities to articulate their inner workings against Comerica's environment.

Company Expert Application Security ConsultingWorks closely with partners in Cyber and Technology to solve security problems.

Serves as the escalation point for cyber incidents, events, and application vulnerability research.

Identifies and provides guidance to mitigate threat vectors unique to the shared cyber-attack surface.

Proactively communicates with application development teams to illustrate vulnerabilities and solutions.

Planning and OrganizingIdentifies & evaluates projects, products, and solutions to enhance threat detection and other capabilities.

Provides expert guidance on highly complex, large projects to incorporate cyber and fraud detection capabilities and considerations.

Participates in industry working and information sharing groups.

AdministrationKeeps management informed of status of threats, the threat landscape, and current incidents and events through appropriate reporting.

Actively participates on committees representing Cybersecurity.

Keeps abreast of leading-edge technologies in the application security space.

Other duties as assigned.
Position Qualifications:
Bachelor's degree from an accredited university in Computer Science, Mathematics, Information Technology, Big Data, Cyber Security or equivalent through a combination of education and/or technology experience or 12 years of technology experience8 years progressive cyber security technology experience5 years of experience in application security engineering2 years of Static Application Security Testing (SAST) Snyk experience preferred2 years of Dynamic Application Security Testing (DAST) Rapid7 experience preferred2 years web application development/object-oriented programming2 years working with attack vectors in OWASP top 101 year of threat modelingAuburn Hills Operations Center8:00am
  • 5:00pm Monday
  • Friday Comerica is proud to be an Equal Opportunity Employer
  • veterans/individuals with disabilities, committed to workplace diversity.

Similar remote jobs

Similar jobs in Lake Angelus, MI

  • Job

    Service Deli Clerk

    Costco Wholesale Corporation

    Lake Angelus, MI

    Posted2 days ago

    Updated15 hours ago

  • Job

    Any Position

    Costco Wholesale Corporation

    Lake Angelus, MI

    Posted2 days ago

    Updated15 hours ago

  • Job

    Gas Station Attendant

    Costco Wholesale Corporation

    Lake Angelus, MI

    Posted2 days ago

    Updated15 hours ago

  • Job

    Cake Decorator

    Costco Wholesale Corporation

    Lake Angelus, MI

    Posted2 days ago

    Updated15 hours ago

  • Job

    Maintenance Clerk

    Costco Wholesale Corporation

    Lake Angelus, MI

    Posted2 days ago

    Updated15 hours ago

Similar jobs in Michigan