Information Security Engineer

Posted 2 Days Ago
Be an Early Applicant
Plano, TX, USA
In-Office
Mid level
Cloud • Information Technology • Logistics • Software
The Role
Conduct web application security assessments, vulnerability testing, and remediation validation for company and customer-facing applications. Manage application security assets, analyze vulnerabilities, distinguish false positives, and track findings through resolution. Provide secure coding guidance and developer training, prepare assessment documentation, and collaborate with development, infrastructure, security, business, and customer teams to improve application security.
Summary Generated by Built In

Company Overview:

Samsung SDS is the digital arm of the Samsung group and a global provider of cloud and digital transformation innovations. Samsung SDS delivers enterprise-grade solutions and services in cloud, secure mobility, analytics / AI, digital marketing and digital workspace.  We enable our customers in government, financial services, healthcare, and other industries to drive business in a hyper-connected economy helping them to increase productivity, safeguard assets, and make smarter decisions.

Samsung SDS is entering on an exciting new chapter as we relocate our U.S. headquarters from New Jersey to Plano, Texas. This strategic move positions us for continued growth and innovation in one of the country’s most dynamic business and technology markets. As we expand our presence in Texas, employees will have the opportunity to be part of a growing organization, contribute to transformative technology initiatives, and help shape the future of Samsung SDS in the U.S.

Position Summary

Samsung SDS is seeking a detail-oriented Information Security Engineer – Web Application Security to join our Cloud Security Team.

This role is responsible for conducting web application security assessments, managing application security assets, identifying and tracking vulnerabilities through remediation, and partnering with development and technical teams to address security risks.

The engineer will support secure software development practices by providing security guidance and training to developers, analyzing reported vulnerabilities, and assisting with remediation efforts. The role works cross-functionally with application developers, infrastructure and systems teams, information security, business units, and customers to identify risks and drive timely resolution of web application security issues.

Responsibilites

  • Perform periodic security assessments and vulnerability testing of company and customer-facing web applications.
  • Conduct security assessments for newly developed or newly deployed web applications before production release.
  • Maintain and manage the inventory of web applications and related assets, ensuring accuracy and consistency of asset information.
  • Identify, analyze, and document web application vulnerabilities and provide remediation recommendations to development and system teams.
  • Track identified vulnerabilities through remediation and perform follow-up validation or retesting to confirm successful resolution.
  • Provide security guidance and technical support to developers for vulnerability remediation.
  • Develop and deliver secure development training for developers, including common web application vulnerabilities, secure coding practices, and vulnerability prevention.
  • Investigate reported security concerns or vulnerabilities affecting specific websites and support the responsible teams in analysis, remediation, and validation.
  • Prepare and maintain vulnerability assessment reports, remediation status, and supporting documentation.
  • Collaborate with development, infrastructure, security, and customer teams to improve the overall security posture of web applications.

Requirements
  • Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent practical experience.
  • 2–5 years of experience in information security, web application security, vulnerability management, or a related field.
  • Understanding of web application security concepts and common vulnerabilities, including the OWASP Top 10.
  • Experience conducting web application vulnerability assessments or penetration testing.
  • Knowledge of HTTP/HTTPS, web architecture, authentication, session management, APIs, and common web technologies.
  • Familiarity with web security testing tools such as Burp Suite, OWASP ZAP, WebInspect, or similar tools.
  • Ability to analyze vulnerability findings, identify exploitable security risks, and distinguish legitimate findings from false positives.
  • Understanding of secure coding principles, vulnerability remediation, and validation techniques.
  • Basic knowledge of operating systems, networking, and infrastructure security.
  • Strong technical documentation and communication skills, with the ability to clearly communicate security findings and remediation requirements to developers and other stakeholders.
  • Ability to collaborate effectively with application developers, infrastructure teams, information security teams, business units, and other stakeholders.

Preferred Qualifications

  • Experience working directly with software developers to identify, remediate, and validate web application vulnerabilities.
  • Experience with web application asset management and vulnerability tracking.
  • Experience supporting secure software development practices or providing security guidance to development teams.
  • Security certifications such as Security+, CEH, OSCP, or other relevant industry certifications.
  • Experience with vulnerability management processes, including remediation tracking and validation.
  • Strong analytical, problem-solving, and organizational skills.

Benefits

Samsung SDSA offers a comprehensive suite of programs to support our employees:

  • Top-notch medical, dental, vision and prescription coverage
  • Wellness program
  • Parental leave
  • 401K match and savings plan
  • Flexible spending accounts
  • Life insurance
  • Paid Holidays
  • Paid Time off
  • Additional benefits

Samsung SDS America, Inc. is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability, status as a protected veteran, marital status, genetic information, medical condition, or any other characteristic protected by law.

We are committed to providing reasonable accommodations to participate in the job application or interview process for candidates with disabilities. Please let your recruiter know if you need an accommodation at any point during the interview process.

Skills Required

  • Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field, or equivalent practical experience.
  • 2-5 years of experience in information security, web application security, vulnerability management, or a related field.
  • Understanding of web application security concepts and common vulnerabilities, including the OWASP Top 10.
  • Experience conducting web application vulnerability assessments or penetration testing.
  • Knowledge of HTTP/HTTPS, web architecture, authentication, session management, APIs, and common web technologies.
  • Familiarity with web security testing tools such as Burp Suite, OWASP ZAP, WebInspect, or similar tools.
  • Ability to analyze vulnerability findings, identify exploitable security risks, and distinguish legitimate findings from false positives.
  • Understanding of secure coding principles, vulnerability remediation, and validation techniques.
  • Basic knowledge of operating systems, networking, and infrastructure security.
  • Strong technical documentation and communication skills.
  • Ability to collaborate effectively with developers, infrastructure teams, information security teams, business units, and other stakeholders.
  • Experience working directly with software developers to identify, remediate, and validate web application vulnerabilities.
  • Experience with web application asset management and vulnerability tracking.
  • Experience supporting secure software development practices or providing security guidance to development teams.
  • Security certifications such as Security+, CEH, OSCP, or other relevant industry certifications.
  • Experience with vulnerability management processes, including remediation tracking and validation.
  • Strong analytical, problem-solving, and organizational skills.

Samsung SDS America, Inc. Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Samsung SDS America, Inc. and has not been reviewed or approved by Samsung SDS America, Inc..

  • Healthcare Strength — Company materials and job postings list comprehensive medical, dental, vision, and prescription coverage, often paired with wellness programs and FSAs. Built In also notes disability and life insurance, reinforcing a robust health-related package.
  • Leave & Time Off Breadth — Built In and company sources highlight generous PTO, paid holidays, and paid sick days. Multiple postings reaffirm paid time off and holidays as standard parts of the package.
  • Retirement Support — Careers pages and postings consistently include a 401(k) with employer match and savings plan. This retirement support is positioned as a core part of the total rewards offering.

Samsung SDS America, Inc. Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Hanyang
Year Founded: 1997

What We Do

Samsung SDS America is a global provider of IT services, cloud computing, digital logistics, and enterprise digital transformation solutions. They operate in IT Service and Logistics segments, offering consulting, system design, integration, and global logistics services.

Similar Jobs

Wells Fargo Logo Wells Fargo

Security Engineer

Fintech • Financial Services
Hybrid
Irving, TX, USA
205000 Employees
119K-187K Annually

Wells Fargo Logo Wells Fargo

Security Engineer

Fintech • Financial Services
Hybrid
Irving, TX, USA
205000 Employees

Zscaler Logo Zscaler

Security Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
134K-168K Annually

Cisco Logo Cisco

Security Engineer

Cloud • Information Technology • Internet of Things • Professional Services • Software
In-Office or Remote
Dallas, TX, USA
77500 Employees
112K-213K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account