Application Security Engineer - Product Security
Listed on 2026-05-23
-
IT/Tech
Cybersecurity, Systems Engineer
Position Summary
The Information Security team has the herculean task of assuring that customers can safely shop with peace of mind knowing their data and information will be safe and secure. Solving some of the most unique cybersecurity problems in the industry, our team members share an elevated level of creativity and ingenuity to secure data for the largest retail operation in the world.
As part of Product Security, this role plays a critical part in advancing security automation and governance capabilities embedded directly into developer workflows. You will help define, validate, and govern secure architecture, configuration standards, and enterprise control logic across Walmart’s application ecosystem—ensuring automated validation decisions are defensible, risk‑aligned, scalable, and audit‑ready.
- You have proven experience partnering with technology and business stakeholders to integrate security early in the product lifecycle.
- You have deep expertise in OWASP risks, secure coding patterns, and threat modeling, with the ability to define secure‑by‑default standards and clearly distinguish acceptable risk tradeoffs.
- You have strong experience governing secure architecture and defining configuration baselines across enterprise environments (e.g., authorization models, database hardening, input validation frameworks).
- You have demonstrated proficiency designing and validating security controls, mapping them to compliance frameworks, and producing defensible audit evidence.
- You have experience operationalizing SAST and SCA tooling outputs, assessing misconfiguration risk, and minimizing false positive and false negative validation outcomes.
- You have experience aligning technical security decisions with enterprise risk modeling and risk acceptance frameworks.
- You enjoy solving complex technical challenges while collaboratively partnering to accelerate priority business initiatives on scale.
- Supporting Fortune 1’s priority business and technology initiatives through scalable, automated security governance.
- Reducing manual and inconsistent security review processes by embedding secure standards and validation logic directly into engineering workflows.
- Collaborating and delivering global solutions that enable our customers to Save Money and Live Better.
- Leverage your proven experience, passion, and enthusiasm partnering with technology and business stakeholders to integrate security early in the product lifecycle.
- Define and govern secure architecture patterns, configuration standards, and enterprise control logic to ensure consistent and scalable security validation across applications.
- Develop deep knowledge of products and platforms to define secure‑by‑default implementation guidance.
- Design and validate automated control logic that produces defensible, risk‑aligned validation outcomes.
- Display strong expertise in threat modeling, penetration/security testing, and code reviews, and collaboratively partner to accelerate priority business initiatives.
- Evaluate and operationalize SAST, SCA, and related security tooling outputs to ensure accurate risk detection and reduce misconfiguration exposure.
- Serve as a trusted partner for technology and business stakeholders by securely enabling business initiatives through architecture and configuration reviews.
- Map security controls to applicable compliance frameworks and ensure validation outcomes generate reliable audit evidence.
- Build strong collaborative partnerships with stakeholders that securely accelerate speed to market for the business.
- Provide secure design, development, implementation, sustainment, and governance expertise across the application lifecycle.
- Effectively document product security standards, validation logic, and governance decisions.
- Develop and evolve metrics to measure the efficacy, accuracy, and coverage of automated product security controls.
- Mentor and share knowledge with stakeholders and peers to advance secure engineering maturity.
- Continually exercise effective communication, writing, and presentation skills.
At Walmart, we offer competitive…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).