Wells Fargo is seeking a Lead Information Security Engineer to join our Application Security Team.
In this role, you will:
- Strengthen integration of AppSec controls across enterprise tools and CI/CD pipelines
- Improve workflow alignment between Security Architecture and Application Security functions
- Design and implement repeatable, scalable, and automated AppSec processes
- Drive prioritization frameworks aligned with enterprise risk and business objectives
- Enhance transparency and reporting of AppSec processes, execution status, and outcomes
- Provide hands-on technical leadership in tooling integration, automation, and process execution
- Lead implementation of shift-left security strategies while maintaining strong developer experience within Wells Fargo's internal tooling ecosystem
- Recommend mitigation strategies for identified application security risks
- Serve as an AppSec representative in cross-functional governance and technical forums
- Partner with AppSec governance teams to support control development, validation, and testing
- Collaborate with control management and cybersecurity leadership to design new security controls
- Support internal and external audits, regulatory reviews, and third-party assessments
- Implement ongoing product (internal and vendor) enhancements and fine-tuning of rules to increase the precision in identifying and prioritizing application security defects.
- Manage upgrades, resiliency, continuity, and compliance with enterprise standards.
- Lead a team to achieve objectives
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Deep expertise across core Application Security domains SAST, DAST, SCA, Secrets management and detection, Infrastructure as Code (IaC)
- Strong experience integrating SAST, DAST, and SCA tools into SDLC workflows and source code repositories
- Proven experience evaluating and managing multiple AppSec tooling vendors
- Advanced knowledge of GitHub, Jira, ServiceNow, Jenkins, Harness, and CI/CD ecosystems
- Strong understanding of OWASP standards and MITRE CVE/CWE frameworks
- Experience implementing and maturing Secure Software Development Lifecycle (SSDLC) practices across Agile and custom development frameworks
- Familiarity with AI/LLM-enabled development tooling (e.g., Cursor, GitHub Copilot, custom LLM integrations), including auto-remediation capabilities using AI, and governance considerations
- Demonstrated ability to lead cross-functional initiatives, drive workflow integration, and prioritize enterprise-level initiatives
- Strong leadership skills with the ability to foster a collaborative, high-performance team culture grounded in continuous learning and improvement
- Excellent written, verbal, and executive-level presentation skills
- Proven leadership in highly regulated environments with strong project and program management capabilities
- 5 + years - Development experience in more than one language
- 3 + years of using the IaC to configure, build, and deploy
- 2+ years of DevSecOps / Automation experience
- Relevant industry certifications such as CISM, CISSP, CSSLP, or equivalent
- Hands-on experience with vendor tools Checkmarx, Blackduck, Prisma, Trufflehog, GHAS, Synk, Socket, Invicti, Qualys
- Experience in API development and custom services
- This position offers a hybrid work schedule
- This position is not eligible for Visa sponsorship
- Demonstrate proficiency in using AI-assisted development and analysis tools (e.g., GitHub Copilot and approved code-centric agents)
- Leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting
- Apply strong technical judgment when validating and integrating AI-assisted outputs into solutions
- Understand and account for model limitations, security risks, and operational considerations
- Apply AI responsibly in development and production environments
- Ensure AI usage aligns with security, compliance, privacy, and ethical standards
- $119,000 - $187,000 - Charlotte, NC
- $119,000 - $187,000 - Chandler, AZ
- $119,000 - $187,000 - Irving, TX
- $131,000 - $206,000 - Minneapolis, MN
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
$119,000.00 - $206,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
23 Aug 2026
* Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo .
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
#BI-Hybrid
Skills Required
- 5+ years of Information Security Engineering experience (or equivalent)
- Deep expertise across Application Security domains: SAST, DAST, SCA, Secrets management and detection, IaC
- Experience integrating SAST, DAST, and SCA tools into SDLC workflows and source code repositories
- Proven experience evaluating and managing multiple AppSec tooling vendors
- Advanced knowledge of GitHub, Jira, ServiceNow, Jenkins, Harness, and CI/CD ecosystems
- Strong understanding of OWASP standards and MITRE CVE/CWE frameworks
- Experience implementing and maturing Secure Software Development Lifecycle (SSDLC) practices across Agile and custom frameworks
- Familiarity with AI/LLM-enabled development tooling (e.g., Cursor, GitHub Copilot, custom LLM integrations) including AI-enabled auto-remediation and governance considerations
- Demonstrated ability to lead cross-functional initiatives, drive workflow integration, and prioritize enterprise-level initiatives
- Strong leadership, project and program management skills in highly regulated environments
- Excellent written, verbal, and executive-level presentation skills
- Demonstrate proficiency using AI-assisted development and analysis tools (e.g., GitHub Copilot) and apply AI responsibly
- Not eligible for Visa sponsorship / must be authorized to work without sponsorship
- 5+ years development experience in more than one language
- 3+ years using IaC to configure, build, and deploy
- 2+ years of DevSecOps / Automation experience
- Relevant industry certifications such as CISM, CISSP, CSSLP (or equivalent)
- Hands-on experience with vendor tools: Checkmarx, Blackduck, Prisma, Trufflehog, GHAS, Synk, Socket, Invicti, Qualys
- Experience in API development and custom services
Wells Fargo Compensation & Benefits Highlights
-
Retirement Support — Retirement support is anchored by a dollar‑for‑dollar 401(k) match on employee contributions after one year of service, with an additional non‑matching company contribution for some lower‑paid employees. Access to an employee stock purchase plan further expands long‑term savings opportunities.
-
Parental & Family Support — Family supports include up to 16 weeks of paid parental leave available from the first day of employment, plus paid critical‑caregiving leave and extensive backup care options. Fertility, adoption, and surrogacy programs are highlighted with meaningful coverage and reimbursements, including a combined lifetime maximum up to $35,000 for eligible expenses.
-
Healthcare Strength — Health coverage is comprehensive from day one, spanning medical, dental, vision, mental health, prescriptions, and preventive care often fully covered in‑network. Employer cost‑sharing is emphasized alongside no‑cost counseling through the EAP within plan limits.
Wells Fargo Insights
What We Do
Wells Fargo & Company (NYSE: WFC) is a leading financial services company that has approximately $2.2 trillion in assets. We provide a diversified set of banking, investment and mortgage products and services, as well as consumer and commercial finance, through our four reportable operating segments: Consumer Banking and Lending, Commercial Banking, Corporate and Investment Banking, and Wealth & Investment Management. Wells Fargo ranked No. 33 on Fortune’s 2025 rankings of America’s largest corporations. Our technology professionals drive innovation, information security, and big data analytics while maintaining a network that handles more than 12 billion customer interactions a year. Join us! Are you looking for more? Find it here. At Wells Fargo, we're more than a financial services leader – we’re a global trailblazer committed to driving innovation, empowering communities, and helping our customers succeed. We believe that a meaningful career is much more than just a job – it’s about finding all of the elements to help you thrive, in one place. Living the Well Life means you’re supported in life, not just work. It means having robust benefits, competitive compensation, and programs designed to help you find work-life balance and well-being. You’ll be rewarded for investing in your community, celebrated for being your authentic self, and empowered to grow. And we’re recognized for it — Wells Fargo continues to rank on the LinkedIn Top Companies lists of best workplaces “to grow your career.” All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic. © 2026 Wells Fargo Bank, N.A. All rights reserved. Member FDIC.
Why Work With Us
We're known for our “Well Life” approach to supporting employees’ career aspirations, work-life balance, and mental and physical health. Wells Fargo continues to rank on the LinkedIn Top Companies lists of best workplaces “to grow your career.”
Gallery
Wells Fargo Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.