Senior Application Security Engineer
Core
Guide software engineers on cybersecurity issues, influence security decisions, and act as a trusted partner to deliver solutions securely within the application development lifecycle.
Role type
Senior Application Security Engineer (IC)
Builds
Secure modern applications and software solutions for Caterpillar Digital
Domain
Cybersecurity / Software Engineering / Cloud
Deliverable
production ML models | product features
Required skills
Security defect management, Engineering consulting, Automated tool enablement, Security test onboarding, Maturity measurement, Error correction reporting
Preferred skills
Software engineering experience, Cloud platform expertise (AWS/Azure/GCP/Salesforce), SAST/DAST/SCA analysis, OWASP/CWE/ASVS frameworks, Web application and API development
Technologies
CodeQL, Rapid7, AWS, Azure, GCP, Salesforce, RESTful APIs, Single Page Applications
Responsibilities
Analyze and validate security defects from automated and manual sources; Provide context-aware guidance to engineering teams; Enable and monitor automated defect detection tooling; Manage penetration testing and security assurance assessments; Consult on practices to improve application security maturity; Author correction of error reports
Seniority
Senior, hands-on IC
