×
Register Here to Apply for Jobs or Post Jobs. X

Lead Application Security - DevSecOps & AI-Driven Software Assurance

Job in Dallas, Dallas County, Texas, 75215, USA
Listing for: East West Bank
Full Time position
Listed on 2026-09-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 120000 - 180000 USD Yearly USD 120000.00 180000.00 YEAR
Job Description & How to Apply Below

Introduction

Since 1973, East West Bank has served as a pathway to success. With over 110 locations across the U.S. and Asia, we are the premier financial bridge between the East and West. Our teams of experienced, multi-cultural professionals help guide businesses and community members on both sides of the Pacific looking to explore new markets and create new opportunities, and our sustained growth and expertise in industries like real estate, entertainment and media, private equity and venture capital, and high-tech help build sustainable businesses and expand our associates’ potential for career advancement.

Headquartered in California, East West Bank (Nasdaq: EWBC) is a top-performing commercial bank with a strong foundation, an enterprising spirit and a commitment to absolute integrity. East West Bank gives people the confidence to reach further.

Overview

The Senior Cyber Security Engineer will lead and execute security initiatives across the application lifecycle, integrating security into Dev Ops pipelines, managing vulnerability assessments, and coordinating penetration testing efforts. This role also extends into advanced software assurance, including third-party software analysis, binary-level inspection, and application trust validation, ensuring that both internally developed and externally sourced applications meet the bank’s security standards prior to execution within the enterprise environment.

Responsibilities

Application Security &Dev Sec Ops Integration
  • Embed security controls into CI/CD pipelines using Git Hub workflows and automation tools.
  • Collaborate with development teams to implement secure coding practices and threat modeling during design and development phases.
  • Manage Git Hub Advanced Security configurations, including secret scanning, push protection, and impact analysis.
Security Testing & Vulnerability Management
  • Conduct Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) using approved tools (e.g.,CodeQL,Dependabot,,OWASP ZAP).
  • Perform manual and automated code reviews toidentifyvulnerabilities and ensure remediation through code fixes or configuration changes.
  • Maintainaccuratemapping of applications to Git Hub repositories to support vulnerability tracking and reporting.
Advanced Software Analysis & Trust Establishment
  • Perform security analysis of third-party software, including both source code review and compiled binary analysis where source is not available.
  • Conduct binary decomposition and reverse engineering techniques, as appropriate, to evaluate software behavior and identify embedded risks.
  • Support the establishment and execution of a software trust and reputation framework, enabling secure decision-making for application onboarding and whitelisting within the enterprise environment.
  • Analyze open-source and Git Hub-hosted code, including dependencies and contribution risk.
  • Partner with App Sec leadership to support application security activities and formalize secure software approval processes.
API & Web Application Security
  • Conduct API security assessments and integrate monitoring tools to protect application endpoints.
  • Support WAF policy management and application-layer threat monitoring.
Threat Intelligence Integration
  • Threat Intelligence Integration
  • Integrate threat intelligence insights into software risk assessments, including monitoring for newly disclosed vulnerabilities or exposures in previously approved software.
  • Reassess software trust posture when threat conditions change, ensuring continuous validation of approved applications.
Penetration Testing& Third-Party Risk
  • Integrate threat intelligence insights into software risk assessments, including monitoring for newly disclosed vulnerabilities or exposures in…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary