Full-Time

Senior Application Security Engineer

Posted on 3/18/2025

First American

First American

10,001+ employees

Provides title insurance and real estate services

Compensation Overview

$166.8k - $222.3kAnnually

Senior, Expert

Orange, CA, USA

Category
Cybersecurity
IT & Security
Required Skills
Git
Jenkins
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Security, or a related field.
  • Minimum of 8-10 years of experience in application security or a related field, with a proven track record of securing complex applications in a fintech environment.
  • In-depth knowledge of application security principles, secure coding practices, and security testing methodologies, including proficiency with tools like Veracode, Burp Suite, and development environments like GitHub and Jenkins.
  • Strong analytical and problem-solving skills, with the ability to identify and mitigate security risks effectively.
  • Excellent verbal and written communication skills, with the ability to convey complex security concepts to both technical and non-technical stakeholders.
  • Proven leadership experience, with the ability to lead and coordinate security initiatives across multiple teams.
  • Ability to adapt to a fast-paced and dynamic environment, with a strong focus on delivering results.
  • Strong interpersonal skills, with the ability to build effective working relationships with cross-functional teams.
Responsibilities
  • Develop, implement, and maintain a comprehensive application security strategy that aligns with the company's business goals and regulatory requirements, utilizing industry-leading tools.
  • Conduct thorough security assessments, including static and dynamic application security testing (SAST/DAST), penetration testing, and code reviews using tools like Veracode and Burp Suite to identify vulnerabilities in our applications. Collaborate with development teams to remediate identified issues.
  • Proactively identify and assess security risks associated with applications and systems. Develop and implement risk mitigation strategies to address identified vulnerabilities, ensuring compliance with frameworks such as OWASP, NIST, and ISO 27001.
  • Integrate security best practices into the software development lifecycle. Provide guidance and training to development teams on secure coding practices, security testing methodologies, and the use of development tools such as GitHub and Jenkins for continuous integration and deployment.
  • Lead and coordinate incident response efforts related to application security breaches. Conduct root cause analysis and implement corrective actions to prevent future incidents.
  • Evaluate, implement, and manage security tools and technologies to enhance the security posture of our applications. Stay updated on the latest security trends, emerging threats, and advancements in security technologies.
  • Ensure compliance with industry standards, regulatory requirements, and internal security policies, including PCI-DSS and SOC 2. Prepare and maintain documentation to support audits and assessments.
  • Work closely with cross-functional teams, including development, operations, and compliance, to ensure security requirements are integrated into all phases of the application lifecycle.
  • Provide mentorship and guidance to junior members of the security team. Foster a culture of security awareness and continuous improvement within the organization.
Desired Qualifications
  • Relevant certifications such as CISSP, CEH, OSCP, or CSSLP are highly desirable.

First American provides title insurance, specialty insurance, and various real estate-related services. Their title insurance protects buyers' investments and ownership rights during real estate transactions, ensuring that the property title is clear of any issues. The company offers a platform called myFirstAm®, which allows users to access property information, maps, and manage open orders conveniently. First American differentiates itself from competitors by offering a comprehensive range of services that include mortgage lender solutions, real estate data solutions, home warranty products, and trust services, all designed to streamline transactions and reduce risks. The company's goal is to facilitate smooth real estate transactions while protecting clients' investments and providing valuable insights into the real estate market.

Company Size

10,001+

Company Stage

N/A

Total Funding

$800.2M

Headquarters

Santa Ana, California

Founded

1889

Simplify Jobs

Simplify's Take

What believers are saying

  • Acquisition of Mother Lode expands First American's market share in California.
  • Docutech purchase boosts First American's digital mortgage revenue by 38%.
  • Growing fintech trends align with First American's digital transformation strategy.

What critics are saying

  • Data breach allegations could harm First American's reputation and lead to legal issues.
  • Integration of Mother Lode may face challenges and financial risks.
  • Dependence on digital transformation poses risks if technology advances rapidly.

What makes First American unique

  • First American offers comprehensive title insurance and settlement services nationwide.
  • The company provides a vast database of over 5.5 billion document images.
  • First American's digital platform, myFirstAm®, enhances real estate transaction efficiency.

Help us improve and share your feedback! Did you find this helpful?

Benefits

401k matching

Health, vision, dental insurance

Professional development

Company News

Finsmes
Jun 7th, 2022
Knock Closes $220M Funding Round

Knock, a New York-based fintech company focused on improving the experience of homebuyers, raised $220M in funding. The round was led by Foundry Group with participation from Greycroft, RRE, First American Financials venture arm Parker89, Company Ventures, Second Century Ventures, M. Night Shyamalan and Kevin Ryan. In conjunction with the funding, Ian Sigalow, Co-Founder and Managing Partner [] The post Knock Closes $220M Funding Round appeared first on FinSMEs.

Business Wire
May 3rd, 2022
First American Announces Completion Of Acquisition Of Mother Lode Holding Company And Its Operating Subsidiaries

SANTA ANA, Calif.--(BUSINESS WIRE)--First American Financial Corporation (NYSE: FAF), a premier provider of title, settlement and risk solutions for real estate transactions and the leader in the digital transformation of its industry, announced today the completion of First American’s acquisition of Mother Lode Holding Company, a California-based provider of title insurance, underwriting and escrow services for residential and commercial real estate transactions with 17 operating subsidiaries

PR Newswire
Mar 10th, 2022
Roofstock raises $240M at $1.9B valuation to expand access to real estate investing

/PRNewswire/ -- Roofstock, the leading end-to-end online platform for single-family rental (SFR) investing, today announced it closed a $240 million Series E...

Business Wire
Jan 26th, 2022
Polly Raises $37 Million in Series B Funding to Modernize Capital Markets

Polly™, the SaaS technology company transforming the mortgage capital markets, today announced it has raised $37 million in Series B funding, bringing

HousingWire
Oct 22nd, 2020
Docutech purchase drives First American information revenue up 38%

First American moved toward a digital mortgage with its purchase of mortgage tech firm Docutech. Now, that purchase is driving up the company’s revenues.