Cardinal Health Logo

Cardinal Health

Application Security Engineer

Posted Yesterday
Be an Early Applicant
IND
Senior level
IND
Senior level
The Application Security Engineer will support security implementations, remediation partnerships, compliance monitoring, and assist in application security investigations while collaborating across teams.
The summary above was generated by AI
Headquartered in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a global, integrated healthcare services and products company connecting patients, providers, payers, pharmacists and manufacturers for integrated care coordination and better patient management. Backed by nearly 100 years of experience, with more than 50,000 employees in nearly 60 countries, Cardinal Health ranks among the top 20 on the Fortune 500.

We currently have a full-time job opening for 'Specialist - Application Security'

Department overview: 

The Information Security organization is on a tremendous growth journey.  We aim to be a world-class cybersecurity organization that enables Cardinal Health to be healthcare’s most trusted partner. We boast tremendous opportunities to grow and apply technical skills to meet organizational needs, empowering talented engineers who mentor and uplift others, led by leaders with a maniacal focus on employee development and well-being, dedicated training programs, and a fun, collaborative atmosphere. 

As a part of our growth, we are investing heavily in Application Security to enable the enterprise to deliver products and services to our customers with security in mind. Traditionally Application Security was a function of Security Architecture. This new team’s sole function is dedicated to Application Security and is being created to reflect its importance to our organization. 

Job Overview: 

The Application Security Engineer is a foundational member of the new Application Security team at Cardinal Health. This role will utilize one's Software Development experience to serve Cardinal Health's best interests by balancing security with software delivery. 

Responsibilities include the following: 

  • Support the implementation and configuration of application security tools

  • Partnering with application teams to assist with remediation of security gaps
  • Assist in monitoring organizational compliance with Application Security standards
  • Support the evaluation of new technologies and programming practices to facilitate application team secure adoption across the enterprise
  • Support ingesting application logs into SIEM and application monitoring and alerting systems to help build detections indicating possible application attacks and resiliency issues
  • Assisting the Incident Response team on application security investigations, where needed
  • Collaborating across Information Security to advocate for Application Security
  • Building custom tooling when none exists to enable software teams to embed security into their processes
  • Executing on the Application Security roadmap with the guidance of senior technical leaders
  •  

     

    Qualifications:

  • Required Qualifications
  • Proven experience with one or more of the following development languages/platforms: Java, JavaScript, .NET/C#, Python, PHP/Laravel or CodeIngnitor
  • 5yrs-8yrs of relevant experience
  •  

    Preferred Qualifications

  • Familiarity with Application Security concepts
  • Understanding or previous experience in one or more of the following preferred:
    • SDLC and DevSecOps concepts such as CI/CD pipelines
    • Agile development concepts and methods such as Scrum or Kanban
    • Container concepts and technologies, including Docker and Kubernetes
    • OWASP Top 10
    • Static or Dynamic code scanning and subsequent remediations
    • Common application security controls, including WAF
    • Common patterns for AuthN and AuthZ
    • Experience in understanding the SCA/SAST/DAST Scanning process.
    • Experience in understanding the scan results and share the tools agnostics to the application teams.
    • Experience in creating dashboards and guide the application teams through the remediation process.
    • Experience in Veracode a Plus.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here

Top Skills

.Net/C#
Codeignitor
Docker
Java
JavaScript
Kubernetes
Laravel
Owasp
PHP
Python
Veracode

Similar Jobs

10 Days Ago
Remote or Hybrid
Hyderabad, Telangana, IND
Senior level
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves identifying strategic product security areas, leading security discussions, performing product security testing, auditing source code, and recommending remediation of security vulnerabilities.
Top Skills: JavaJavaScriptPython
6 Days Ago
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
Mid level
Mid level
Food • Greentech • Logistics • Sharing Economy • Transportation • Agriculture • Industrial
The role involves maintaining and implementing software applications with a focus on SAP security management, application development, user communication, application support, and stakeholder management.
Top Skills: Cloud SolutionsFioriHana DbS4HanaSAPSap BobjSap Btp
22 Minutes Ago
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Artificial Intelligence • Cloud • Information Technology • Consulting
Lead detection, analysis, and remediation of cybersecurity incidents; secure software delivery processes; mentor juniors; collaborate with cybersecurity teams.
Top Skills: AWSAzureAzure DevopsCi/CdCloudFormationCosignDastGCPGitGitlabGoJavaJavaScriptJenkinsPythonSastScaSigstoreTerraformWaf

What you need to know about the Pune Tech Scene

Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account