Senior Application Security Engineer
M&T BankFull Time
Senior (5 to 8 years), Expert & Leadership (9+ years)
Candidates must have 5+ years of experience in application or product security roles, preferably in high-growth, cloud-native environments. They should possess a strong ability to collaborate with software development teams, experience performing architecture reviews/threat models for custom software, and excellent communication skills. Familiarity with common security libraries and tools, understanding of common security vulnerabilities and mitigation strategies (e.g., OWASP Top 10), basic development or scripting skills, and fundamental knowledge of network and web protocols are also required. A proactive approach to project management and willingness to participate in on-call rotations are necessary.
The Senior Application Security Engineer will act as the initial security point of contact for engineering and product teams, conducting security-focused architectural reviews and threat modeling. They will contribute to the development of security policies and standards, create secure coding guidelines, build automated tools, and embed security into CI/CD pipelines. This role also involves owning the end-to-end vulnerability management program, deploying scanning tools, triaging vulnerabilities, and supporting program tool development. Additionally, the engineer will evaluate new security vendors, run evaluations, coordinate demos, pilot tools, and make recommendations.
Business management solutions for beauty professionals
GlossGenius provides business management solutions specifically designed for beauty and wellness professionals, including salon owners, spa operators, and independent beauty experts. The platform offers tools for automated appointment scheduling, payment processing, client management, and marketing, which help streamline daily operations and improve client experiences. For example, clients can easily book appointments online, reducing the administrative workload for business owners. GlossGenius operates on a subscription model, allowing users to access its services for a monthly fee, while also offering a unique feature that provides loans to eligible businesses based on their sales and payment history. With over 70,000 salon and spa businesses served, GlossGenius aims to empower its users to enhance their income and achieve their business goals.