Info Protection Advisor-App Security Eng- Hybrid
Stratford, Fairfield County, Connecticut, 06614, USA
Listed on 2026-10-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Cigna-Evernorth Services Inc. seeks an Info Protection Advisor – Applic Security Eng for the Bloomfield, CT location to collaborate with software development teams to lead and support Application Security activities that guide the design, development and security of code and code repositories for cloud-hosted and open-source applications.
Responsibilities- Assist with the inspection of application code for security issues, building a new framework to help our software developers deploy faster and more securely through CI/CD Integration, or performing assessments on existing software development lifecycle practices to ensure security standards are met.
- Act as a subject matter expert on application security to improve and further integrate security best practices into product design and software development life cycles (SDLC) of the organization.
- Perform focused risks assessments of existing or new services and technologies, security architecture, identifies design gaps, risks, and recommends security enhancements.
- Assist development teams with secure code reviews and other App Sec assessments to educate development teams on security weaknesses and vulnerabilities.
- Assist with the implementation and management of automated security controls as part of CICD pipelines and Dev Sec Ops philosophies.
- Assist with the education of development teams on the remediation of vulnerabilities detected in SAST, SCA, and DAST security tools.
- Establish and maintain secure coding standards and best practices to provide guidance and training to development teams on security best practices.
- Telecommuting permitted.
- Bachelor’s degree in Computer Science or related field and 5 years of experience.
- Full term of experience must include:
Integrating security at every phase of the Software Development Lifecycle; - Identifying potential threats and vulnerabilities early in the design phase;
- Using SAST/DAST tools and techniques to analyze source code and running applications for vulnerabilities;
- Utilizing secure coding standards, including OWASP Top 10 and SEI Cert, across multiple languages;
- Identifying, prioritizing, and remediating vulnerabilities using tools including Nessus, Qualys, and Burp Suite;
- Secure identity management including authentication, authorization mechanisms, and role-based controls using tools including OAuth, SAML, and JWT;
- Embedding security into CI/CD pipelines;
- Git Hub Actions for Dev Sec Ops Integration;
- Jenkins for Dev Sec Ops Integration;
- Securing applications deployed in cloud environments, including container security;
- Assessing application risk and compliance with security standards including NIST and ISO 27001;
- Detecting, analyzing, and responding to application-level security incidents.
- Telecommuting permitted.
Salary Range: $155,958-$171,900/year
For this position, we anticipate offering an annual salary of 103, USD / yearly, depending on relevant factors, including experience and geographic location.
This role is also anticipated to be eligible to participate in an annual bonus plan.
Work From HomeIf you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10
Mbps download/5
Mbps upload.
At The Cigna Group, you’ll enjoy a comprehensive range of benefits, with a focus on supporting your whole health. Starting on day one of your employment, you’ll be offered several health-related benefits including medical, vision, dental, and well-being and behavioral health programs. We also offer 401(k), company paid life insurance, tuition reimbursement, a minimum of 18 days of paid time off per year, paid holidays, and leaves of absence.
For more details on…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).