Principal Application Security Engineer - Threat Research
CVS Health - New York, NY
Hiring: Principal Application Security Engineer - Threat Research Company: CVS Health Location: New York, NY Job Posted Time: 2026-09-16 18:18:58 Employment Type: Full-time / Remote Target Skills & Keywords : AWS, Azure, C, C#, C++, Data Warehouse, Docker, GCP, GDPR, HIPAA, Java, JavaScript, Kubernetes, PowerShell, Project Management, Python, Shell, Snowflake, WAF About the job Experience: •10+ years of experience in developing and deploying security technologies. •7+ years of experience with one or more general-purpose programming/script languages including but not limited to: Java, C/C++, C#, Python, JavaScript, Shell Script, PowerShell. •5+ years of with Public Cloud (AWS/Azure/GCP) & Network Security. •5+ years of experience with Docker, Kubernetes, Security-as-Code, and Infrastructure-as-Code. •5+ years of experience with implementing and managing data protection measures and compliance with data protection regulations (e.g., GDPR, CCPA). Required Skills: •Development & Enforcement •Develop and enforce engineering security policies and standards. •Develop and enforce data security policies and standards. •Drive security awareness across the organization. •Lead the development and enforcement of comprehensive security policies and standards, integrating advanced security practices throughout the software development lifecycle to mitigate risks and align with industry-leading security protocols. Qualifications: •Partner cross-functionally with Engineering and Business teams to develop secure engineering practices. •Act as a pivotal security leader, driving the integration of secure engineering practices across the organization while liaising with senior management to ensure a cohesive security strategy that aligns with business objectives. •Analyze, develop, and configure security solutions across multi-cloud, on-premises, and colocation environments, ensuring application security, integrity, confidentiality, and availability of data. •Lead security testing, vulnerability analysis, and documentation. •Spearhead the evaluation and strategic deployment of cutting-edge security solutions, emphasizing scalability, performance, and adaptability, to fortify the organization's defense against evolving threats. •Operational Support •Participate in operational on-call duties to support a 24/7 infrastructure across multiple regions and environments (cloud, on-premises, colocation). •Lead by example in incident response situations, orchestrating rapid and effective responses while leveraging these experiences to bolster future resilience and response strategies. •Demonstrated leadership skills with developing a comprehensive mentorship program for junior engineers, including organizing regular training sessions to elevate the team's technical and security skills. This role requires a commitment to fostering a culture of continuous improvement and knowledge sharing. •Proven track record with participation in security research and the exploration of next-generation security tools and practices. This includes encouraging the team to engage with the wider security community, contributing to open-source projects, and staying well-informed of emerging threats and innovative defense mechanisms. Compensation: •$144,200 - $288,400 / year •Competitive benefits and rewards package •This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!