Senior Engineer, Application Security

VF Corporation
Greensboro, NC
**Senior Engineer, Application Security: Become the Newest Member of the VF Family** As a member of the Application Security team, you will be a key member of the team looking across the VF Global enterprise looking for threats and vulnerabilities that would potentially or unnecessarily place the company at risk. Working with the different teams within VF, you will oversee and report findings to the key stakeholders, evaluate and prioritize vulnerabilities and intersect with the risk functional team within cyber and information security. Responsibilities will include oversight and management of the Bug Bounty and Vulnerability Disclosure Programs at VF. **How You Will Make a Difference:** + Create and implement the strategic vision for the company's Bug Bounty and Vulnerability Disclosure Program + Develop policy for both programs + Drive continuous improvement in the programs by strategically aligning with organizational goals + Mentor and train Application Security team members + Ensure Organizational Level Agreements for remediation, as defined by internal policy and standards, are met + Serve as a cybersecurity subject matter expert for application development and infrastructure teams + Partner with application development teams for secure development process adoption and continuous security posture improvement + Participate in Red Team exercises to simulate real-world attacks, identifying potential gaps in security and effectiveness of existing defenses + Analyze organization's cyber defense policies and recommend improvements that align with strategic cybersecurity goals + Perform threat assessments on application-level and infrastructure components to identify security risks + Assist with the Dynamic Application Security Testing(DAST) program as needed + Identify metrics and Key Performance Indicators (KPIs) for application security program + Support authorized penetration testing on web applications and enterprise network assets as needed + Support purple team exercises and breach and attack simulations as needed + Perform end-to-end application security reviews to ensure critical information is appropriately protected + Assist with incident response activities as needed, particularly around web applications + Participate in the creation of effective and efficient processes to drive successful reduction of risk within the organization + Lead in the design and implementation of more secure pipelines and update existing ones + Research and advocate for new security solutions and technologies + Ensure the highest levels of security practices are maintained by VF through projects and implementations + Establish communications with associates related to threats, vulnerabilities, processes and security risks across a global landscape + Advocate and evangelize the importance of Threat and Vulnerability management within VF and socialize through internal channels **Years of Related Professional Experience:** 10+ years **Position Requirements:** + Proven experience in offensive security, penetration testing, or application security, with a focus on web application security + Expert level understanding of web application security vulnerabilities (OWASP Top 10, etc.) and exploits + Experience with Red Team and Purple Team exercises, with knowledge of attack simulation tools and methodologies + Extensive experience with agile delivery practices + Extensive experience integrating security into DevOps practices + Extensive experience conducting source code review + Experience using static application security testing tools such as Fortify, Checkmarx, Veracode, etc. + Extensive experience with dynamic application security testing tools such as AppScan, Invicti, Qualys WAS, BurpSuite, and OWASP ZAP, etc. + Familiarity with common enterprise architectures + Excellent organizational and communication skills + Demonstrated ability to work independently and with others + Follows all defined IT standards and processes (i.e. IT Governance, SM&G, Architecture, etc.), and provides input for improvements to the appropriate process owners as needed + Maintains a proper balance between business and operational risk **Educational Preferences:** + A bachelor's or master's degree in computer science, information systems or other related field; or equivalent work experience + Relevant certifications (CISSP, CSSLP, OSCP, OSWE, eWPT, PWPP etc.) **Special Physical and/or Mental Requirements:** + Travel by air and overnight, as required 10% amount of time. **Hiring Range** **:** $116,000.00 USD - $145,000.00 USD annually **Incentive Potential** : This position is eligible for additional compensation awards that may include an annual incentive plan, sales incentive, or commission potential. Specific details of the additional compensation eligibility for this position will be provided during the recruiting and interview process. **Benefits at VF Corporation** : You can review a general overview of each benefit program offered, including this year's medical plan rates on and by clicking **Looking to Join VF?** Detailed information on your benefits will be provided during the hiring process. **_P_** **_lease note, our hiring ranges are determined and built from market pay data. In determining the specific compensation for this position, we comply with all local, state, and federal laws._** _At VF, we value a diverse, inclusive workforce and we provide equal employment opportunity for all applicants and employees. All qualified applicants for employment will be considered without regard to an individual's race, color, sex, gender identity, gender expression, religion, age, national origin or ancestry, citizenship, physical or mental disability, medical condition, family care status, marital status, domestic partner status, sexual orientation, genetic information, military or veteran status, or any other basis protected by federal, state or local laws. If you require accommodations during the application process, please contact us at_ [email protected]_ _. VF will provide reasonable accommodations for qualified individuals to the extent required by applicable law._ _Pursuant to all applicable local Fair Chance Ordinance requirements, including but not limited to the San Francisco Fair Chance Ordinance, VF will consider for employment qualified applicants with arrest and conviction records._ VF Diversity Vision Statement VF is committed to creating an inclusive environment that welcomes and values the differences among all of our associates, customers, suppliers and the communities in which we live and conduct business. The continued success and growth of VF is enhanced through initiatives that promote diversity throughout VF around the world.VF is an equal employment opportunity/ affirmative action employer of minorities, females, protected veterans and the disabled. VF is committed to providing equal opportunities in employment, and treating our VF associates and VF applicants without discrimination on the basis of their race, color, gender, age, national origin, religion, sexual orientation, gender identity or expression, marital status, citizenship, disability, protected veteran status, HIV/AIDS status, or any other legally protected factor.
Posted 2025-12-10

Recommended Jobs

Regulatory Affairs Program Manager

BD (Becton, Dickinson and Company)
Durham, NC

**Job Description Summary** **Job Description** We are **the makers of possible** BD is one of the largest global medical technology companies in the world. Advancing the world of health is our Purpos…

View Details
Posted 2025-11-19

Internal Medicine - Residency Stipend, Loan Repay - North Carolina Inner Banks

Enterprise Medical Recruiting
North Carolina

Our partner in LaGrange, North Carolina, is adding a BE/BC Internal Medicine physician to join their expanding primary care team. Highlights: Employment opportunity with an established practi…

View Details
Posted 2025-11-09

Business Risk Lead (Digital Banking) - Hybrid

M&T Bank
Wilmington, NC

**Overview:** Join our Enterprise Platforms Risk team as a key player in managing risk and strengthening controls across all digital channels - web, mobile app, and beyond. In this role, you'll serve …

View Details
Posted 2025-11-14

Foreman - DCI Archdale

Danella Construction, Inc.
Archdale, NC

OVERVIEW Danella, a national utility contractor, is adding a Foreman to its operations. We are seeking experienced Foremans, compensation based on experience. Medical, dental, vision, and life …

View Details
Posted 2025-08-18

Construction Project Manager

Overlook
Chapel Hill, NC

Overlook Projects Construction Project Manager Step Out of the Office. Step Into Impact. Overlook Projects is on the hunt for a rare type of builder, the kind of project manager who can han…

View Details
Posted 2025-12-09

Occupational Therapist / OTR / OT / OTR/L - Full Time

Broad River Rehabilitation
Fayetteville, NC

Occupational Therapist / OTR / OT Broad River Rehab is seeking an Occupational Therapist / OTR to join our Fayetteville, NC Skilled Nursing Facility. Fulltime - Flexible Schedule New Graduates…

View Details
Posted 2025-11-22

Account Development Associate - Building Products

Master Halco
Clayton, NC

Secure a sales career within the fence / building products industry! Master Halco: Fence & Deck Supply , North America’s leading manufacturer/distributor of fence, decking, railing, outdoor stru…

View Details
Posted 2025-12-12

Part-time sitter wanted near the University of North Carolina - Chapel Hill for toddler

Wyndy
Chapel Hill, NC

Pay: $19 - $29 per hour Start Date: Within 1 Month Location: Chapel Hill, NC Job Description Part-time sitter wanted for toddler. Must be experienced and reliable. CPR certified preferr…

View Details
Posted 2025-12-06

Certified Medication Technician (Med Tech)(Full-Time) - Walnut Ridge

Navion Senior Solutions
Walnut Cove, NC

Walnut Ridge Assisted Living, a community of Navion Senior Living, is seeking Certified Medication Technicians for medication administration-related roles. Our Medication Technicians are responsibl…

View Details
Posted 2025-11-12

Wholesale Payments Client Success Team Leader - Client Onboarding for CRE

Truist
Charlotte, NC

**The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to cre…

View Details
Posted 2025-11-26