PRINCIPAL ASSOCIATE, APPLICATION SECURITY ENGINEER

5 days ago


Newport News, United States Capital One Full time
Center 3 (19075), United States of America, McLean, Virginia

Principal Associate, Application Security Engineer

Application security is one of our highest priorities at Capital One. As a Capital One customer, you benefit from an environment built to meet the requirements of one of the most security-sensitive organizations in not only the financial industry, but also the technology landscape. As a Capital One Security team member, you will help secure our applications for our customers while working on cutting edge security products for a variety of platforms and technologies, all operating at massive scale. We are looking for an experienced security engineer to join our Capital One Application Security team.

Responsibilities:

  • Dynamic Application security testing of web assets and APIs

  • Mobile application security testing

  • Projects and research work as needed

  • Security training and outreach to internal development teams

  • Security guidance documentation

  • Security tool development

  • Security metrics delivery and improvements

Basic Qualifications:

  • High School Diploma, GED or equivalent certification

  • At least 3 years of experience working in cybersecurity or information technology

  • At least 2 years of experience in application security

Preferred Qualifications:

  • 3+ years of experience with dynamic application security and software testing

  • 2+ years of experience with penetration testing

  • 2+ years of experience with Kali Linux

  • 2+ years of experience with mobile testing

  • 2+ years of risk analysis experience

  • Experience with risk-based prioritization

  • One of the following cybersecurity certifications: (OSCP, CISSP, CEH)

  • Experience architecting, securing, and operating Amazon Web Services

At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or another type of work authorization).

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

New York City (Hybrid On-Site): $165,100 - $188,500 for Prin Assoc, Cyber Technical

San Francisco and San Jose, California (Hybrid On-Site): $174,900 - $199,700 for Prin Assoc, Cyber Technical

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate?s offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.

No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City?s Fair Chance Act; Philadelphia?s Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).



  • Newport Beach, California, United States Green Street Advisors LLC Full time

    Job Title: Principal DevOps EngineerWe are seeking a highly skilled Principal DevOps Engineer to join our team at Green Street Advisors LLC. As a Principal DevOps Engineer, you will be responsible for designing, building, and maintaining our cloud infrastructure to support our internal and client-facing applications.Key Responsibilities:Design and implement...


  • Newport News, United States NTT DATA Services Full time

    Req ID: 286118  NTT DATA Services strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Information Systems Security Engineer to join our team in Newport News, Virginia (US-VA), United...


  • Newport News, United States NTT DATA Services Full time

    Req ID: 286118 NTT DATA Services strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Information Systems Security Engineer to join our team in Newport News, Virginia (US-VA), United States...

  • Principal Engineer

    2 weeks ago


    Newport Beach, United States Broadcom Inc. Full time

    Job Title: Principal Engineer - Network Detection and ResearchJob Summary:We are seeking a highly skilled Principal Engineer to join our Network Detection and Research Team in the ANS Business Unit at Broadcom Inc. As a Principal Engineer, you will be responsible for leading the architecture of our network detection pipeline, constantly monitoring the threat...


  • Newport Beach, United States Green Street Advisors LLC Full time

    Job DescriptionJob DescriptionDescription:The OpportunityInterested in working at a fast-paced growing Fin/PropTech company? Do you like working with the latest technologies, cloud computing platforms, and collaborating with other passionate technologists? If so, we are excited to have you join the Green Street technology team. We are a group of innovative...


  • Newport News, United States The Richmond Group USA Full time

    The TRG Manufacturing Search Division is excited to find an energetic and enthusiastic Sales Applications Engineer for a growing electro-mechanical products manufacturer. This company designs and manufactures innovative technology that is integrated into all sorts of cool products across multiple industries! Imagine the satisfaction you will get selling...


  • newport news, United States The Richmond Group USA Full time

    The TRG Manufacturing Search Division is excited to find an energetic and enthusiastic Sales Applications Engineer for a growing electro-mechanical products manufacturer. This company designs and manufactures innovative technology that is integrated into all sorts of cool products across multiple industries! Imagine the satisfaction you will get selling...


  • Newport News, Virginia, United States Transportation Security Administration Full time

    Job SummaryAs a Transportation Security Officer with the Transportation Security Administration, you will play a critical role in safeguarding the nation's transportation systems. Your primary responsibility will be to ensure the security of airports, seaports, railroads, highways, and public transit systems, protecting America's transportation...


  • Newport News, United States SAIC Full time

    DescriptionSAIC is seeking a Digital Engineer that will support the Army Futures Command, Futures and Concepts Center (FCC) to assess the threat and future operational environment, develop future concepts, requirements, and an integrated modernization pathway to increase lethality and overmatch to enable Soldiers and units to compete-and, if...


  • Newport Beach, United States Obsidian Security Full time

    About UsObsidian Security is a pioneering cybersecurity company that specializes in solving the unaddressed blindspot of SaaS Security. Our mission is to provide the industry's most comprehensive and powerful SaaS defense solution, ensuring the security and integrity of our customers' critical data.Job SummaryWe are seeking a highly skilled Data Software...


  • Newport News, United States NTT DATA Services Full time

    Req ID: 293399 NTT DATA Services strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Information Systems Security Engineer to join our team in Newport News, Virginia (US-VA), United States...


  • Newport News, Virginia, United States NTT DATA Services Full time

    About the RoleWe are seeking a highly skilled Information Systems Security Engineer (ISSE) to join our hybrid agile delivery team at NTT DATA Services. As an ISSE, you will play a critical role in ensuring our systems are secure and compliant with all federal regulations and standards.Key ResponsibilitiesManage, own, and support the implementation and impact...


  • Newport News, Virginia, United States NTT DATA Services Full time

    About the RoleWe are seeking a highly skilled Information Systems Security Engineer (ISSE) to join our hybrid agile delivery team at NTT DATA Services. As a key member of our team, you will be responsible for managing, owning, and supporting the implementation and impact statements for RMF packages across Navy and DCSA accredited networks.Key...


  • Newport News, Virginia, United States NTT DATA Services Full time

    Job Summary:We are seeking a highly skilled Cybersecurity Engineer to join our team at NTT DATA Services. As a key member of our hybrid agile delivery team, you will play a critical role in ensuring the security and compliance of our systems with federal regulations and standards.Key Responsibilities:Manage, own, and support the implementation and impact...


  • NEWPORT NEWS, United States Centene Full time

    You could be the one who changes everything for our 28 million members by using technology to improve health outcomes around the world. As a diversified, national organization, Centene's technology professionals have access to competitive benefits including a fresh perspective on workplace flexibility. Position Purpose:The Sr Security Architect will lead the...


  • Newport News, Virginia, United States NTT DATA Services Full time

    About the RoleWe are seeking a highly skilled Information Systems Security Engineer (ISSE) to join our hybrid agile delivery team at NTT DATA Services. This individual will be instrumental in managing, owning, and supporting the implementation and impact statements for Risk Management Framework (RMF) packages across Navy and Defense Counterintelligence and...

  • Principal Engineer

    4 weeks ago


    Newport Beach, United States Broadcom Inc. Full time

    About the Role:We are seeking a highly skilled Principal Engineer to join our Network Detection and Research Team at Broadcom Inc. As a Principal Engineer, you will play a key role in the development of our network intrusion detection capabilities for the VMware vDefend Advanced Threat Prevention (ATP) solution.Key Responsibilities:Lead and drive the...


  • Newport Beach, United States Macom Technology Solutions Holdings, Inc. Full time

    Job Title: Senior Principal Design EngineerJoin Macom Technology Solutions Holdings, Inc. as a Senior Principal Design Engineer and drive the development of state-of-the-art products for serial communications over copper and fiber.Key Responsibilities:Provide technical leadership involving a wide range of engineering disciplinesPerform system-level analysis...


  • Newport News, Virginia, United States TekStream Solutions Full time

    Job Title: Sr. Cyber Security EngineerAt TekStream Solutions, we are seeking a highly skilled and experienced Sr. Cyber Security Engineer to join our team.Job Summary:We are looking for a seasoned cybersecurity professional to lead our security efforts and protect our organization's assets from cyber threats. The ideal candidate will have a strong background...


  • Newport News, Virginia, United States Chipotle Mexican Grill Full time

    Job Title: IT Security EngineerAt Chipotle Mexican Grill, we're committed to making a positive impact on our customers, employees, and the environment. As an IT Security Engineer, you'll play a critical role in ensuring the security and integrity of our systems and data.Key Responsibilities:Implement and maintain security controls to protect against cyber...