Lead Application Security - DevSecOps & AI-Driven Software Assurance
East West Bank - San Marino, CA
Hiring: Lead Application Security - DevSecOps & AI-Driven Software Assurance Company: East West Bank Location: San Marino, CA Job Posted Time: 2026-09-10 10:31:15 Target Skills & Keywords : CI/CD, DAST, Embedded Systems, GitHub, OWASP, Penetration Testing, SAST, SCA, WAF About the job Required Skills: •Embed security controls into CI/CD pipelines using GitHub workflows and automation tools. •Partner cross-functionally with development teams to implement secure coding practices and threat modeling during design and development phases. •Manage GitHub Advanced Security configurations, including secret scanning, push protection, and impact analysis. •Security Testing & Vulnerability Management •Conduct Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) using approved tools (e.g., CodeQL, Dependabot,, OWASP ZAP). •Perform manual and automated code reviews to identify vulnerabilities and ensure remediation through code fixes or configuration changes. •Maintain accurate mapping of applications to GitHub repositories to support vulnerability tracking and reporting. •A dvanced Software Analysis & Trust Establishment Qualifications: •Proven experience in application security, DevSecOps , or software security analysis . •SAST/DAST tools and secure SDLC practices •Operational familiarity with software supply chain security and trust validation frameworks •In-depth knowledge of secure SDLC, threat modeling (e.g., STRIDE), and vulnerability management. •Strong communication and stakeholder engagement skills. •Applicants must have legal authorization to work in the United States. We do not offer visa sponsorship at this time. Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!