Senior Engineer – Cybersecurity Application Security
Location: Irving, Texas
What makes a Senior Engineer – Cybersecurity Application Security successful at OneMain? Check out the top traits we’re looking for and see if you qualify.
- Adaptable
- Analytical
- Curious
- Entrepreneurial
- Inventive
- Problem Solver
Culture
- We foster an entrepreneurial spirit that's powered by a national brand – our teams are empowered to make a difference
- We encourage teams to take ownership of initiatives in this fast-paced, innovative culture so they can drive solutions that stay ahead of customer needs
- We prioritize teamwork and building in-person connections with each other, understanding that fostering a collaborative environment is the best way to support each other.
- We promote avenues to allow team members to expand their professional capabilities and continuously develop skills, facilitating upward mobility and career progression
I like working at OneMain because of the opportunity it provides. You get to work with a lot of talented people, a lot of motivation to better the lives of our customers and a lot of fun technology that you get to interact with on a daily basis. I feel like I have many different options that I can take on yearly.
Andy W., Software Developer
Benefits
We promote social and family well-being by offering paid time off for volunteer hours and providing family back-up care.
We offer extensive, comprehensive coverage to support team members’ needs physically and mentally, such as access to Talkspace and Hinge for on-demand physical therapy via an app.
We offer financial wellness that includes 401(k) with match, ESPP, tuition reimbursement and tools like subscription cancelation that help you stay on top of your financial goals.
Senior Engineer – Cybersecurity Application Security
Location: Irving, TX
Key Responsibilities
- Implement, administer, and continuously improve application security tooling supporting secure software development.
- Integrate security testing and security controls into software delivery pipelines and engineering workflows.
- Develop, maintain, and enhance application security standards, policies, procedures, documentation, and operational guidance.
- Analyze security findings, operational metrics, and compliance trends to identify improvement opportunities and areas of elevated risk.
- Partner with engineering teams to improve security adoption and enable secure-by-design and secure-by-default development practices.
- Support secure SDLC governance, vulnerability management, and remediation tracking activities.
- Collaborate with cybersecurity, architecture, platform, and engineering stakeholders to improve overall application security maturity.
- Contribute to security automation initiatives that increase operational efficiency and reduce manual effort.
- Support the secure implementation of emerging software development practices, including AI-assisted development workflows.
Required Qualifications
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field.
- 5+ years of application security engineering experience.
- Experience implementing and administering application security platforms, including SAST, DAST, SCA, IAST, container security, API security testing, and software supply chain security capabilities.
- Experience securing APIs across the development lifecycle, including API discovery, authentication and authorization validation, schema and contract testing, abuse-case analysis, OWASP API Security Top 10 risks, and remediation guidance.
- Experience integrating security tooling and automated security controls into CI/CD pipelines using infrastructure-as-code (IAC).
- Experience supporting secure SDLC governance, policy enforcement, compliance reporting, and remediation management.
- Working knowledge of application security principles, secure coding practices, OWASP Top 10 risks, and common vulnerability remediation techniques.
- Experience developing and maintaining technical standards, procedures, policies, and security documentation.
- Strong written and verbal communication skills with the ability to influence technical stakeholders.
- Ability to independently manage moderately complex security initiatives and contribute to broader cybersecurity objectives.
Preferred Qualifications
- Industry certifications such as CSSLP, GSEC, CISSP, GWAPT, or similar.
- Experience supporting financial services, banking, or other highly regulated environments.
- Experience assessing, implementing, and governing security controls for AI-assisted software development workflows, including secure use of code-generation tools, prompt and output handling, developer guardrails, and risk monitoring.
- Experience with security automation, scripting, and workflow orchestration.
- Experience creating executive, engineering, or operational security metrics and dashboards.
- Senior Engineer – Cybersecurity Application Security Texas, United States 07/31/2026
- Loan Sales Specialist North Carolina, United States 07/31/2026
- Loan Sales Specialist Maryland, United States 07/31/2026
- Help Desk Specialist Indiana, United States 07/31/2026
You have not saved any jobs.
You have not recently viewed any jobs.