Trimble is seeking a highly experienced Senior Application Security Engineer to lead Software Composition Analysis (SCA) and Static Application Security Testing (SAST) initiatives, driving strategic implementation and optimization of SCA tool. The role requires technical expertise, leadership skills, and ability to drive strategy and solutions for a global engineering footprint.
Requirements
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience
- 5+ years of progressive experience in application security, with a strong focus on secure software development lifecycle (SSDLC)
- Demonstrable expert-level experience (5+ years) specifically implementing, configuring, tuning, and optimizing SCA for large, complex organizations
- Proven experience with other SAST tooling (e.g., Checkmarx, SonarQube, Fortify, Veracode) and a strong understanding of their principles and challenges
- Hands-on experience integrating security tools into CI/CD pipelines (e.g., Jenkins, Azure DevOps, GitLab CI, GitHub Actions)
- Strong understanding of common application security vulnerabilities (OWASP Top 10, CWE) and their exploitation and remediation
- Proficiency in at least one major programming language (e.g., Java, C#, Python, JavaScript, Go)
- Experience working in agile development environments
- Exceptional communication, presentation, and interpersonal skills, with the ability to articulate complex technical concepts and strategic initiatives to a wide (global) audience of engineers and product owners
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Tuition Reimbursement
- Relocation Assistance