Design, develop, and maintain full-stack web applications, internal tools, and API-driven solutions that support application security program management, including vulnerability discovery and tracking, data aggregation, risk reporting, and workflow automation.
Build and support applications and tooling to enhance the efficiency of key support processes such as financial planning, project tracking, and headcount management.
Leverage AI-assisted development tools (e.g., Claude Code, GitHub Copilot, ChatGPT Codex, or similar) to accelerate coding, testing, and documentation workflows.
Use CI/CD pipelines (e.g., GitHub Actions, Jenkins, or similar) to build, test, and deploy solutions.
Integrate AI/ML capabilities into applications to enable features such as intelligent alerting, anomaly detection, natural language interfaces, or automated triage to enhance the value of solutions delivered.
Write clean, well-documented, secure, and maintainable code in modern languages such as Python and JavaScript/TypeScript across both backend and frontend layers.
Collaborate with stakeholders to gather requirements, translate business needs into technical specifications, iterate rapidly on working solutions, and advance working prototypes into production applications.
Participate in code reviews, contribute to team engineering standards, and support peer learning across the team.
Manage and prioritize a personal backlog of application enhancements and bug fixes, communicating status clearly to stakeholders.
Understand and adhere to corporate solution development standards including security and quality requirements.
Bachelor's Degree and 6 years of experience OR Master's Degree and 5 years of experience OR PhD and 0 years of experience.
Proficiency in Python (backend services, scripting, automation) and JavaScript/TypeScript (frontend and/or Node.js backend).
Demonstrated experience building and deploying resilient and secure full-stack web applications, including frontend frameworks (e.g., React, Vue, or similar), REST APIs, and relational or NoSQL databases.
Hands-on experience using AI-assisted development tools to improve code quality, velocity, and documentation.
Familiarity with application security concepts and secure coding practices (e.g., OWASP Top 10).
Familiarity with DevOps/DevSecOps practices, CI/CD pipelines, and infrastructure-as-code to facilitate code build, test, and deployment activities.
Familiarity with deploying production applications via cloud and containerized models as appropriate.
Ability to work independently on multiple concurrent projects with minimal supervision.
Strong written and verbal communication skills, with the ability to engage and partner with both technical and non-technical stakeholders.
Preferred:
Experience integrating AI capabilities into production applications to enable enhanced usability, data insights, and autonomous/agentic workflow automation.
Experience building solutions using low- and no-code platforms such as MS Power Apps, OutSystems, etc.
Experience with project/operational tooling such as Jira, ServiceNow, or similar platforms.
Experience building or using solutions to detect, prevent, or remediate security issues.
Experience in large corporate or enterprise environments, ideally within technology, healthcare, or a regulated industry.
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law:
We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insur
Benefits
Health insuranceDental insuranceVision insurancePaid time off
Additional Information
As a Full Stack Software Engineer within the Information Security and Risk Management (ISRM) team , you will contribute to the design, development, and maintenance of internal software applications and tools that support operational excellence and increased security maturity. As a member of the Application Security (AppSec) Platform Engineering team, you will build tools and capabilities to enhance AppSec processes. In addition, you will partner closely with other teams across ISRM such as program management, finance, etc. to build practical, high-quality solutions based on their specific needs. Projects will range from building application security program tooling to developing tools and capabilities that help us operate better as an organization. You will apply modern full-stack development practices and leverage artificial intelligence to accelerate development and embed intelligent features into the solutions you build.