Pru

Lead, Application Security

Newark, NJ, USA · Part-time

Sponsorship not specified$124k-$204kDetected 30 days ago
PythonBashPowerShellAWSGCPAzureCI/CDDevOpsAgentic AIAI OrchestrationCybersecurityPenetration TestingComplianceSupply ChainRecruitingLeadershipCommunicationProblem SolvingMentoring

> stay_score

odds of building a lasting career here

37Unrated
Cap-exempt (no lottery)0
Sponsors this role0
Entry-level history0
PERM / green-card track0
Lottery odds (Level IV)94
Fits your clock70

No strong sponsorship signal in the public record yet. In the full product we resolve the exact legal entity and show its filing history with a confidence score — treat as unverified until then.

Lottery odds assume a STEM candidate.

Personalize to your clock →

> community_outcomes

No reports yet — be the first to help the next applicant.

About the role

  • In this role, you will be accountable for shaping, governing, and maturing application security capabilities for modern, cloud-native, and DevOps-driven environments.
  • Your work will have a direct impact on Prudential's products, platforms, and customer trust.
  • As you put your skills to use, we'll help you make an even bigger impact with learning experiences that can grow your technical AND leadership capabilities.

Responsibilities

  • Serve as the technical lead and escalation point for complex operational and project work across the Application Security and Attack Surface Management domains.
  • Lead the design, evolution, and execution of application security assessment, response, and risk governance processes.
  • Lead the maturation of vulnerability and configuration monitoring across first-party, third-party, and open-source software.
  • Drive the integration of security controls into CI/CD pipelines, enabling automated enforcement, monitoring, and reporting.
  • Design and evolve security policies, standards, and alerting mechanisms aligned to SOX, NIST, PCI DSS, and other regulatory frameworks.
  • Apply qualitative and quantitative analysis to improve developer experience, security outcomes, and adoption of secure-by-design practices.
  • Champion secure-by-design principles across the SDLC through guidance, standards, tooling, and hands-on engagement.
  • Validate and document compensating controls and mitigations to manage risk until remediation is complete.
  • Author and maintain technical documentation, standards, and SOPs that continuously improve program maturity.
  • Develop proof-of-concept exploits in lab environments to demonstrate exploitability and validate remediation effectiveness.

Requirements

  • Bachelor of Computer Science/Engineering or formal experience in related fields
  • Hands-on experience with industry frameworks (OWASP Top 10, OWASP WSTG, PTES, MITRE ATT&CK)
  • Deep experience with SAST, SCA, DAST, and ASPM tooling
  • Strong understanding of software composition analysis (SCA), SBOMs, and supply chain risk

Nice to have

  • Scripting and automation experience (Python, PowerShell, Bash)
  • Experience performing exploit validation and web application penetration testing
  • Strong understanding of threat actors and real-world attack techniques
  • Knowledge of security standards and frameworks (NIST, CIS, PCI DSS)
  • Experience applying Agentic AI or AI-assisted approaches to security use cases
  • Advanced security certifications (e.g., OSCP, GPEN, GWAPT, CASP+, GCSA, GCFA, GCIH)
  • Cloud certifications (AWS, Azure, GCP)
  • 401(k) plan with company match (up to 4%).

Compensation

  • Prudential is required by state specific laws to include the salary range for this role when hiring a resident in applicable locations.

Benefits

  • Partner with senior leadership to define the future-state vision for Prudential's application security program, informed by hands-on operational insight.

Company info

  • The Global Technology team takes great pride in our culture where digital transformation is built into our DNA.

This listing is sourced directly from Pru's careers page and normalized into a canonical job model.