Expedia

Senior Application Security Engineer (Remote US)

Costa Mesa, California, United States

Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Data and Technology, Financial Services, Healthcare, Automotive, Agribusiness, InsuranceIndustries

Job Description: Application Security Engineer

Location Type: Remote Employment Type: Full-time


Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics, and software. We also assist millions of people to realize their financial goals and help them save time and money.

We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments. We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland.

Learn more at experianplc.com.


Position Overview

In this remote role, reporting to the Manager, Application Security, you will work with software engineers and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC).


Responsibilities

  • Collaborate with development teams to understand their needs, assess risks, and customize solutions.
  • Implement and manage security tools (SAST, SCA, DAST) and integrate solutions into CI/CD pipelines.
  • Review applications against common flaws (e.g., OWASP Top 10) and report to senior management.
  • Work with Risk & Compliance teams on audits (e.g., SOC 2, PCI-DSS, HIPAA) and recommend relevant policies.
  • Define security guardrails through automated tool policies, SLAs, and custom rules.

Qualifications

  • 5+ years of direct experience in enterprise-level application security, with an understanding of MITRE, OWASP, SafeCode, and risk management methodologies related to integration/software testing.
  • Experience in AppSec or DevSecOps, collaborating with developers to adopt and mature secure development practices.
  • Proficiency with SAST, SCA, DAST, IAST, RASP, and other DevSecOps tools, including deploying, maintaining, operating, and improving these tools.
  • Solid background in software development, familiar with development lifecycle processes and technologies.
  • Experience with CI/CD pipelines and related technologies (e.g., Git, Jenkins, Maven, Chef, Puppet, Ansible, Nexus, Artifactory, NPM) and cloud-based architectures.
  • Experience overseeing the integration of applications between different teams and systems.
  • Experience in business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping.

Additional Information

Benefits/Perks:

  • Great compensation package and bonus plan
  • Core benefits including full medical, dental, vision, and matching 401K
  • Flexible work environment, ability to work remote, hybrid or in-office
  • Flexible time off including volunteer time off, vacation, sick, and 12 paid holidays

Company Culture:

Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people-first approach is award-winning: World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.

Compensation:

Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay range for this position is listed above. Within this range, individual pay is determined by work location and additional factors such as job-related skills, experience, and education. This position is also eligible for a variable pay opportunity and a comprehensive benefits package.

Experian is proud to be an Equal Opportunity Employer.

Skills

Application Security
Secure Development Lifecycle (SDLC)
SAST
SCA
DAST
CI/CD
OWASP Top 10
Risk Management
SOC 2
PCI-DSS
HIPAA
MITRE
SafeCode
AppSec
DevSecOps

Expedia

Travel booking platform for flights, hotels, rentals

About Expedia

Expedia Group operates in the travel industry, offering a wide range of services for travelers and travel-related businesses. It connects users with options for flights, hotels, car rentals, vacation packages, and activities through its various brands, including Expedia, Hotels.com, and Vrbo. Travelers can easily find and book trips that match their preferences and budgets. The company earns revenue primarily through commissions on bookings and advertising from travel service providers looking to promote their offerings. Additionally, Expedia Group supports its partners by providing access to valuable data and technology, helping them improve their operations and grow their businesses. The goal of Expedia Group is to create a seamless travel experience for users while maximizing the potential of its partners.

Bellevue, WashingtonHeadquarters
1996Year Founded
$3,277.3MTotal Funding
IPOCompany Stage
Consumer Goods, EntertainmentIndustries
10,001+Employees

Benefits

Competitive Paid Time Off
Travel Discounts
Healthcare Flexible Spending Accounts
Employee Assistance Program
Wellness & Travel Reimbursement
Workplace Accomodations
Medical, Dental, & Vision Insurance
Matching Gifts
New Parental Benefits

Risks

Riyadh Air's entry could increase competition, affecting Expedia's market share.
CFO transition may lead to strategic shifts impacting financial management and investor confidence.
Expedia's partnerships may strain resources, affecting service quality if not managed well.

Differentiation

Expedia offers a comprehensive suite of travel services under one platform.
The company leverages a diverse portfolio of brands like Hotels.com and Vrbo.
Expedia provides partners with valuable data and technology to optimize their offerings.

Upsides

Expedia can capitalize on the rise of 'workcations' with longer stay packages.
The trend of 'bleisure' travel offers opportunities for specialized leisure-business packages.
Increased demand for personalized travel experiences can enhance user engagement for Expedia.

Land your dream remote job 3x faster with AI