Full-Time

Application Security Engineer II

Confirmed live in the last 24 hours

Capital Group

Capital Group

5,001-10,000 employees

Manages equity and fixed income assets

Quantitative Finance
Financial Services

Compensation Overview

$85.5k - $176.4kAnnually

+ Annual Performance Bonus + Profitability Bonus

Mid

Los Angeles, CA, USA + 3 more

More locations: Irvine, CA, USA | San Antonio, TX, USA | New York, NY, USA

Hybrid role requiring in-office presence 3 days a week in Los Angeles, Irvine, San Antonio, or New York.

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
Bash
Rust
Microsoft Azure
Python
Java
AWS
C/C++
Requirements
  • You have a bachelor's degree in computer science, a related field, or equivalent experience and 2 years of experience or more
  • You understand threat modeling, code reviews, network security, TCP/IP, DNS, TLS, HTTP, etc.
  • You have experience with technologies such as Threat modeler/Threat Dragon, Scoutsuite, Veracode, Checkmarx, Netsparker, DAST scanners like Burpsuite
  • You have the ability to automate tasks in Python, bash, Java, C/C#/C++, Rust, etc.
  • You have a strong understanding of attacks in AWS, Azure, OAuth.
  • You have excellent communication skills (written, oral), with the ability to simplify and document complex technical details to both technical and non-technical audiences.
  • You can learn quickly and have a track record of developing a deep understanding of systems and risks to the business.
  • You can work independently and take the initiative to drive security initiatives forward.
  • You can juggle multiple tasks and coordinate/delegate to achieve speedy resolutions to application security-related security incidents working with Security operations.
Responsibilities
  • You will be performing AppSec reviews including threat modeling, and code reviews
  • You will be meeting with the software development teams to understand a new application they are building and providing them with feedback on their architecture
  • You leverage SAST, DAST, SCA tools to create findings and translating them to severity of risks to perform this in Capital Group’s technology environment
  • You will write clear, succinct and effective technical documentation summarizing your findings, risks, and recommendations.
  • You will write automated proof-of-concepts, and automated security tests by authoring security testing tools where needed
  • You will collaborate with technology stakeholders and advise on risks for technology solutions such as SaaS services and how they integrate with CG’s environment
  • You will communicate effectively and have an empathetic outlook towards development teams by authoring clear, actionable guidance on writing secure code.
  • You will effectively present to development teams educating them on secure development.

Capital Group focuses on managing investments for long-term growth, primarily through its American Funds® brand. The company utilizes high-conviction portfolios, which means they invest in a select number of securities that they believe will perform well based on thorough research. This approach is supported by a team of over 8,000 associates who work across various global offices. Unlike many competitors, Capital Group emphasizes individual accountability among its investment professionals, ensuring that each team member is responsible for their investment decisions. The main goal of Capital Group is to enhance the financial well-being of its clients by providing successful investment strategies.

Company Stage

N/A

Total Funding

$703.7M

Headquarters

Beijing, China

Founded

N/A

Simplify Jobs

Simplify's Take

What believers are saying

  • The collaboration with KKR to launch interval funds in 2025 could open new avenues for investors to access private markets, enhancing Capital Group's product offerings.
  • Recognition as the Best Fixed Income Asset Manager at the Australian Wealth Management Awards underscores Capital Group's expertise and reputation in the industry.
  • The partnership with Deutsche Bank to distribute the Multi-Sector Income Fund globally expands Capital Group's reach and client base.

What critics are saying

  • The emergence of employment scams using Capital Group's name could damage its reputation and deter potential talent.
  • The departure of long-time portfolio manager Donald O'Neal may lead to shifts in investment strategy and potential instability.

What makes Capital Group unique

  • Capital Group's long-standing history and focus on high-conviction portfolios set it apart from newer investment firms, emphasizing a commitment to long-term results.
  • Their strategic partnership with KKR to create hybrid public-private investment solutions showcases their innovative approach to expanding investment opportunities.
  • Capital Group's global presence and management of over $2 trillion in assets highlight its scale and influence in the investment industry.

Help us improve and share your feedback! Did you find this helpful?