Essential Responsibilities:
- Independently apply security best practices to enhance and optimize systems, ensuring robust protection and efficiency, while beginning to understand and align security solutions with business objectives.
- Partner with peers and internal teams to drive security initiatives, contribute to cross-functional projects, and at times co-lead efforts to strengthen security posture.
- Analyze and resolve security challenges by adapting standard processes and exploring alternative approaches to address complex threats.
- Influence the quality, efficiency, and effectiveness of the team through informed decision-making, with a potential impact on other teams.
- Collaborate with other engineers to gather and incorporate feedback, driving continuous improvements in security processes.
Expected Qualifications:
- 3+ years relevant experience and a Bachelor’s degree OR Any equivalent combination of education and experience.
Essential Responsibilities:
- Leverage specialized security expertise to identify and resolve complex security issues, recommending best practices and determining new approaches that have an impact on broader security operations, while aligning security strategies with business priorities
- Partner across teams and key stakeholders to drive security initiatives, leading and solutioning complex projects and programs to strengthen overall security posture.
- Apply advanced analytical skills and sound judgment to solve security challenges, considering diverse perspectives and innovative solutions. Stay current with industry trends and emerging technologies, understanding their security implications to the company’s context.
- Directly contribute to improvements within the security domain and occasionally beyond, ensuring decisions lead to meaningful enhancements in security practices.
- Leverage relationships across teams, both within and outside of security, to influence initiatives and integrate feedback into security processes.
Your way to impact
- You will be responsible for engineering security solutions into developer CI/CD workflows to identify vulnerabilities in PayPal’s code ensuring that they can be remediated before causing damage
- You will ensure that vulnerabilities are identified natively and efficiently within existing developer workflows, enabling faster, simpler remediation work
- You will apply your engineering skills to ensure that security solutions are of high quality, robustly tested, and performant
- This role is best served with prior experience in cyber security engineering with capability to dive deep into various technologies, have a thirst for being on the cutting edge, and have a passion for security
Your day to day
- Define and improve application security in the SDLC, ensuring security is prioritized from inception to deployment.
- Develop and measure KPIs to report on the program’s progress toward key objectives and goals
- Implement and Test Next Gen AppSec products as part of SDLC.
- Gain expertise and deep understanding of PayPal’s development cycles, platforms and technology.
- Collaborate with Security Architects, Product Manager, Program Manager and other teams to deliver high quality products.
- Apply your technical expertise to guide the team in making intelligent and pragmatic design decisions.
- Help identify and develop ways to improve our team's efficiency by expanding on our existing tools and processes.
- Mentor junior engineers and interns as they develop their skills.
What do you need to bring
- At least 3 years of experience in application security or software development and a Bachelor's degree OR any equivalent combination of education and experience
- Programming experience in at least one language such as Java, Python, JavaScript, Ruby, Go
- A strong familiarity with application security scanners such as SAST, SCA, DAST
- Expert knowledge of Git, common CI/CD pipelines, and other standard developer tools
- Knowledge of OWASP top 10 and a deep understanding of web application and mobile app vulnerabilities.
- Experience with data structures, software design, RESTful APIs, containers, SQL & NoSQL – an advantage
- Working knowledge of major cloud platforms such as Google Cloud, AWS, Azure – an advantage.
- Industry certifications (e.g.,CISSP, CISM, CCSP, or equivalent) – an advantage.
- Familiarity with iOS, Android and browser SDK development – an advantage.
Travel Percent:
The total compensation for this practice may include an annual performance bonus (or other incentive compensation, as applicable), equity, and medical, dental, vision, and other benefits. For more information, visit .
The US national annual pay range for this role is $123,500 to $212,850
Our Benefits:
Any general requests for consideration of your skills, please