Job Closed
This listing is no longer active.
Life Runs on Clean Energy
Application Security Engineer
Location
United States
Posted
83 days ago
Salary
$154.8K - $185.8K / year
Seniority
Mid Level
Job Description
Application Security Engineer
Sunrun
Role Description The Application Security Engineer at Sunrun plays a pivotal role in protecting the applications that power our business. This position requires expertise across identity systems and the software development lifecycle. You will be responsible for driving the identification, assessment, and mitigation of security risks from the initial design phase through deployment and beyond. You will collaborate closely with developers and IT teams to integrate robust security practices, implement advanced protective measures for both applications and identities, and foster a comprehensive culture of security across the organization. Key Responsibilities - Threat Modeling & Security Design: Assess potential attack vectors and design defense-in-depth strategies that address gaps across infrastructure, 1st and 3rd party applications, and identity management. - Secure Software Development Life Cycle (SSDLC): Partner with application development teams to integrate security into every stage of the development lifecycle. Champion secure coding standards, conduct security code reviews, and provide expert guidance to minimize vulnerabilities before production. - Identity & Access Management (IAM): Design, implement, and manage identity security solutions across 1st and 3rd party applications. Showcase hands-on experience in implementing strategies like Zero Trust architecture and modern authentication standards like WebAuthn. - Implement & Manage Security Controls: Design, implement, and fine-tune application security controls like SAST/DAST vulnerability scanning and standardizing secure coding practices. Establish and improve operational processes to ensure their continued effectiveness. - Guidance, Training & Compliance: Develop and maintain security policies and standards for both application and identity security. Provide ongoing training to developers to elevate secure coding practices. - Stakeholder Collaboration: Use strong critical thinking and communication skills to present complex technical concepts to business stakeholders, gain alignment, and independently drive security initiatives forward. Qualifications - 7+ years of combined experience in application security and identity & access management (IAM), with a proven track record of supporting application development teams. - Deep knowledge of application security principles, secure coding practices, common vulnerabilities (e.g., OWASP Top 10), and zero-trust architecture. - Hands-on experience with security testing tools (SAST, DAST), Web Application Firewalls (WAF), and IAM platforms (e.g., Okta, AWS IAM). - Proficiency in programming languages such as Java, Python, or JavaScript. - Strong familiarity with cloud environments (AWS, GCP) and their native security and identity controls. - Demonstrated expertise in threat modeling and designing defense-in-depth strategies for complex applications. - Solid understanding of modern identity standards and technologies, including MFA, SSO, and WebAuthn. - Excellent communication and collaboration skills, with the ability to articulate technical findings and security risks to diverse audiences. - Strong critical thinking and creative problem-solving skills, with the ability to analyze systems from an attacker's perspective and devise effective countermeasures. Preferred Qualifications - Experience with Okta and Salesforce security principles and best practices. - Certifications (preferred): Certified Information Systems Security Professional (CISSP), Certified Application Security Engineer (CASE), or similar credentials. Compensation Starting salary/wage for this opportunity: 154,799.31 to 185,759.18. Compensation decisions will not be based on a candidate's salary history. Recruiter Kristina Sedjo (kristina.sedjo@sunrun.com) Equal Opportunity Employer Sunrun is proud to be an equal opportunity employer that does not tolerate discrimination or harassment of any kind. We believe that empowering people and valuing their differences are essential for our mission of connecting people to the cleanest energy on earth.
Job Requirements
- 7+ years of combined experience in application security and identity & access management (IAM), with a proven track record of supporting application development teams.
- Deep knowledge of application security principles, secure coding practices, common vulnerabilities (e.g., OWASP Top 10), and zero-trust architecture.
- Hands-on experience with security testing tools (SAST, DAST), Web Application Firewalls (WAF), and IAM platforms (e.g., Okta, AWS IAM).
- Proficiency in programming languages such as Java, Python, or JavaScript.
- Strong familiarity with cloud environments (AWS, GCP) and their native security and identity controls.
- Demonstrated expertise in threat modeling and designing defense-in-depth strategies for complex applications.
- Solid understanding of modern identity standards and technologies, including MFA, SSO, and WebAuthn.
- Excellent communication and collaboration skills, with the ability to articulate technical findings and security risks to diverse audiences.
- Strong critical thinking and creative problem-solving skills, with the ability to analyze systems from an attacker's perspective and devise effective countermeasures.
- Preferred Qualifications
- Experience with Okta and Salesforce security principles and best practices.
- Certifications (preferred): Certified Information Systems Security Professional (CISSP), Certified Application Security Engineer (CASE), or similar credentials.
- Compensation
- Starting salary/wage for this opportunity: 154,799.31 to 185,759.18. Compensation decisions will not be based on a candidate's salary history.
- Recruiter
- Kristina Sedjo (kristina.sedjo@sunrun.com)
- Equal Opportunity Employer
- Sunrun is proud to be an equal opportunity employer that does not tolerate discrimination or harassment of any kind. We believe that empowering people and valuing their differences are essential for our mission of connecting people to the cleanest energy on earth.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
High School Special Education Teacher
Stride, Inc.Stride, Inc., formerly known as K12 Inc., is a leading provider of personalized online education programs and services, including customized tutoring, online ed
Job Description Required Certificates and Licenses - South Carolina Department of Education High School (9-12) Special Education Teaching Certification Required Residency Requirements - Must Reside in South Carolina Salary: $53,000 plus the eligibility of a performance bonus Start Date: School Year 2026/2027 K12, a Stride Company, believes in Education for ANY ONE. We provide families with an online option for a high-quality, personalized education experience. Students can thrive, find their passion, and learn in an environment that encourages discovery at their own pace. Passionate Educators are needed at the Stride K12 partner school, Carolus Online Academy (COA). We want you to be a part of our talented team! The mission of Carolus Online Academy (COA) is to provide an exemplary individualized and engaging educational experience for students by incorporating school and community/family partnerships coupled with a rigorous curriculum along with a data-driven and student-centered instructional model. Student success will be measured by valid and reliable assessment data, parent and student satisfaction, and continued institutional growth within the academic community. Join us! The High School Special Education Teacher is a state certified teacher responsible for delivering specific course content in an online environment. The Special Education Teacher must provide instruction, support, and guidance, manage the learning process, and focus on students’ individual needs as defined by each student’s Individualized Education Program. The Special Education Teacher works actively with students and parents to advance each student’s learning and is also responsible for the compliance documents required in serving students with special needs. This is a full-time position. Ability to work independently, typically 40+ hours per week is required. Ability to maintain a professional home office without distraction during workday, typically 9-5 (or 8-4) or as defined by the school. Essential Functions: Reasonable accommodation may be made to enable individuals with disabilities to perform the essential duties. - Ensure all special education and related services are provided as determined by the IEP team by: - Communicating with parents and applicable related service staff to ensure that students with special needs are receiving the appropriate therapies - Developing compliant IEP’s, progress reports and other state specific required special education documentation - Facilitating and leading collaborative special education meetings such as annual IEP meetings - Using provided resources to ensure accommodations and modifications for students with disabilities such as assistive technology, supplemental curriculum, and accessible text - Make modifications and accommodations to Stride K12 lessons and assessments as specified by the IEP - Ensure inclusion and success of student in the general education classroom - Collect data and work samples to monitor student progress towards Individual Education Program (IEP) goals and objectives - Document all contact with parents and interventions with students - Analyze student data to prescribe remediation and enrichment as needed - Provide rich and engaging synchronous and asynchronous learning experiences for students - Commitment to personalizing learning for all students - Demonstrate a belief in all students’ ability to succeed and meet high expectations - Maintain grade book ensuring student academic integrity, makes student placement and promotion decisions, and alerts administrators to concerns about student performance and progress - Prepare students for high stakes standardized tests - Understand that a primary responsibility is to establish and maintain positive rapport with families and regularly communicates with and responds to students and learning coaches/parents in a timely manner - Support learning coaches/parents with student curricular and instructional issues, as well as basic troubleshooting in a virtual classroom environment that is in line with academy policies and procedures - Ability to travel up to 20% of the time for face-to-face professional development, student testing, and/or as required by the school. MINIMUM REQUIRED QUALIFICATIONS: - Bachelor's degree AND - Active state teaching license AND - Ability to clear required background check OTHER REQUIRED QUALIFICATIONS: - Ability to work collaboratively with other teachers to interpret and produce numeric, tabular, and graphic representations of student data, and use it to drive instructional decisions - Receptive to receiving coaching on a regular basis with administrators - Ability to embrace change and adapt to ensure excellent student outcomes - Proficient in Microsoft Excel, Outlook, Word; PowerPoint - Ability to rapidly learn and adapt to new technologies and teaching platforms - Strong written/verbal communication skills DESIRED QUALIFICATIONS: - Experience working with the proposed age group - Experience supporting adults and children in the use of technology - Experience teaching online (virtual) and/or in a brick-and-mortar environment - Experience with online learning platform Compensation & Benefits: Stride, Inc. considers a person’s education, experience, and qualifications, as well as the position’s work location, expected quality and quantity of work, required travel (if any), external market and internal value when determining a new employee’s salary level. Salaries will differ based on these factors, the position’s level and expected contribution, and the employee’s benefits elections. Offers will typically be in the bottom half of the range. - We anticipate the salary range to be $53,000. Eligible employees may receive a bonus. This salary is not guaranteed, as an individual’s compensation can vary based on several factors. These factors include, but are not limited to, geographic location, experience, training, education, and local market conditions. Stride offers a robust benefits package for eligible employees that can include health benefits, retirement contributions, and paid time off. Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. - This position is virtual Job Type Regular The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.
Identity and Access Control Manager
Rolls-RoyceRolls-Royce provides power systems for various industries, such as aerospace, marine, and energy sectors. The company promotes an environment of innovation, inc
Job Description Job Title: Identity and Access Control Manager Working Pattern: Full-Time Working location: Remote Rolls-Royce offers an excellent opportunity for an Identity and Access Manager (IAM) to join our team. In this role you will be supporting CMMC /NIST compliance though the application of policy, standards and best practice to support the IT Team. An Identity and Access Manager (IAM) develops and maintains systems that control user access to digital resources, focusing on security, compliance, and efficiency by managing user identities, roles, permissions, and authentication (like MFA), conducting audits, automating provisioning/deprovisioning, and ensuring adherence to policies like NIST v2 and v3 and CMMC. You will act as a bridge between security needs and user access, ensuring only authorized individuals access sensitive data. Why Rolls-Royce? Rolls-Royce is one of the most enduring and iconic brands in the world and has been at the forefront of innovation for over a century. We design, build and service systems that provide critical power to customers where safety and reliability are paramount. We are proud to be a force for progress, powering, protecting and connecting people everywhere. We want to ensure that the excellence and ingenuity that has shaped our history continues into our future, and we need people like you to come and join us on this journey. We’ll provide an environment of caring and belonging where you can be yourself. An inclusive, innovative culture that invests in you, gives you access to an incredible breadth and depth of opportunities where you can grow your career and make a difference. Rolls-Royce is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any protected characteristics. What you will be doing - Responsible for ensuring all AC (22) and Identity (IA-11) Control Statements and their sub actions are managed and maintained to the level required for both Assessment 1 and Assessment 2 (NOFORN) scope - Policy & Strategy: Develop, implement, and enforce IAM policies, procedures, and strategies for secure access. - System Management: Design, build, and maintain IAM solutions (e.g., Active Directory, Azure AD, SSO, MFA). - User Lifecycle Management: Manage user onboarding, offboarding, role changes, and account provisioning/deprovisioning. - Access Control: Define and enforce role-based access control (RBAC) and privileged access management (PAM). - Authentication: Oversee multi-factor authentication (MFA) and other authentication methods. - Auditing & Compliance: Conduct regular access audits, monitor for violations, and ensure regulatory compliance (SOX, GDPR, HIPAA). - Support & Troubleshooting: Provide technical support, resolve access issues, and train users. - Collaboration: Work with IT, security, and business stakeholders to integrate IAM and address risks. - Risk Mitigation: Proactively identify security gaps and vulnerabilities in access controls. Basic Requirements: - Bachelor's degree in Computer Science, Information Technology, or a related technical field with 5+ years of experience in Identity and Access Controls. - Master’s degree in computer science, Information Technology, or a related technical field with 3+ years of experience in Identity and Access Controls. - In lieu of degree,7 plus years of experience in Identity and Access Controls. - In order to be considered for this opportunity, you must be a US Citizen Preferred Requirements: - Good overall knowledge of information systems best practices and a track record of delivering NIST accredited services - ITIL certification - Communicates well and has the skill to influence through persuasion in a formal context - Broad knowledge of IT Identity and Access control practices demonstrated by attainment of appropriate qualifications - Experience / awareness of cloud technologies and capabilities in an enterprise environment What we offer We offer excellent development opportunities, a competitive salary, and exceptional benefits. These include bonus, employee support assistance and employee discounts. Your needs are as unique as you are. Hybrid working is a way in which our people can balance their time between the office, home, or another remote location. It’s a locally managed and flexed informal discretionary arrangement. As a minimum we’re all expected to attend the workplace for collaboration and other specific reasons, on average three days per week. For fully remote roles, employees can live in any state except Idaho, Nebraska, Nevada, Vermont, and Wyoming. Relocation assistance will be provided if applicable. “ Job location updated to remote based upon work related changes that occurred after original posting” Global Grade/Level: Level C Closing Date: 03/25/2026 #CLOLI Job Category Information Technology Job Posting Date 19 Mar 2026; 00:03 Pay Range $119,520 - $194,220-Annually Location: Remote Benefits Rolls-Royce provides a comprehensive and competitive Total Rewards package that includes base pay and a discretionary bonus plan. Eligible employees may have the opportunity to enroll in other benefits, including health, dental, vision, disability, life and accidental death & dismemberment insurance; a flexible spending account; a health savings account; a 401(k) retirement savings plan with a company match; Employee Assistance Program; Paid Time Off; certain paid holidays; paid parental and family care leave; tuition reimbursement; and a long-term incentive plan. The options available to an employee may vary depending on eligibility factors such as date of hire, employment type, and the applicability of collective bargaining agreements.
Head of Risk, Security
Akoya LLCAkoya LLC is an API-based network dedicated to helping keep consumer financial data safe by enabling secure, privacy-centric data sharing between financial institutions and third-p
• Lead and mature Akoya’s cybersecurity, risk management, and IT governance functions • Serve as the operational backbone of Akoya’s security and risk programs • Translate strategy into execution and lead a team across security engineering, cyber operations, risk, compliance, and IT • Mature and execute Akoya’s enterprise risk management (ERM) framework • Develop and track key risk indicators (KRIs) aligned with business OKRs • Lead third-party risk management across fintech partners, vendors, and service providers • Conduct product risk assessments across new open finance capabilities • Support regulatory readiness related to CFPB Section 1033 • Lead day-to-day execution of Akoya’s cybersecurity program • Drive continuous improvement of zero-trust cloud architectures (AWS-centric) • Enhance monitoring, automation, and threat intelligence capabilities • Own operational execution of SOC 2 Type II and other certifications • Ensure alignment with NIST, ISO 27001/27002, GLBA, SOX, PCI • Partner closely with Legal and Product on regulatory interpretation and implementation • Respond to due diligence inquiries from financial institutions, fintechs, investors, and regulators • Oversee corporate IT governance in partnership with IT Systems Administrator • Lead and mentor security engineers, risk analysts, and IT personnel
Senior Technical Marketing Engineer – Security
Forward Networks, Inc.Mathematically accurate network modeling with full path analysis and security compliance verification
• Partner with Product Management to define, validate, and shape security-related capabilities and use cases. • Design and evangelize customer workflows to realize the value of security features. • Build and maintain lab environments to support demos, technical validation, and security use-case exploration. • Develop high-quality technical collateral for internal audiences, including training materials, demo guides, and sales enablement content. • Collaborate with Marketing to create external-facing assets such as whitepapers, solution briefs, blogs, presentations, and videos. • Enable Sales and Solutions teams with security-focused demos, messaging, and technical training. • Represent Forward Networks at customer meetings, webinars, and industry events, including security conferences and trade shows. • Contribute thought leadership on network security trends and Forward’s role in modern security architectures. • Gather field and market feedback to influence product roadmap and security positioning.


