Log InSign Up
Premium

See who posted the job

Premium

Competitive Insights

Premium

Check your commute time

Closed

Baltimore, VT

Full-time

About the job

Under Armour is all about performance. Because what we make empowers athletes in every form to push themselves, to turn good into great, and to stay hungry for whatever comes next. And this is exactly what we expect from each other.
Working with us means one key thing: no matter what you do, you see every day and every project as a chance to push your field forward. In every store and every office, we build teams where everyone is an MVP. And together we tackle every challenge head on. Because we work to push the gear, the game, and ourselves farther.
We’re looking for people who do more than good work. We’re looking for the Best in Every Game.
Under Armour is the chosen brand of this generation of athletes... and the athletes of tomorrow. We're about performance - in training and on game day, in blistering heat and bitter cold. Whatever the conditions, whatever the sport, Under Armour delivers the advantage athletes have come to demand.That demand has created an environment of growth. An environment where building a great team is vital. An environment where doing whatever it takes is the baseline and going above and beyond to protect the Brand is commonplace.The world's hungriest athletes live by a code, a pledge to themselves and everyone else: Protect This House... I Will.  Our goal is to Build A Great Team!  Will YOU…Protect This House?!
SUMMARY
Our next Lead Application Security Engineer is experienced at building security into the SDLC for web platforms, mobile applications, and digital devices. They are forward thinking and like to stay one step ahead of the latest threats. You are passionate about cloud, DevOps, rugged software, security and want to help software engineers build more secure applications, e-commerce, and digital products.
RESPONSIBILITIES 
Develop and implement best practices, reference implementations, automation, and testing for application security in web, mobile and API development
Support application security team efforts to engage throughout the SDLC including:
Create & communicate security requirements
Conduct threat modeling exercises
Assist with secure coding & secure design patterns
Act as product owner for security features and changes
Ensure proper testing & quality for security
Consult with product owners, architects, and developers on application security
Train developers, architects, code reviewers, and others on secure coding design patterns
Improve application & data security awareness throughout UA E-Commerce & Digital
Evaluate new security technology, trends and vulnerabilities and make recommendations to enhance our security posture
Monitor platform security, and assist the team to make continuous improvements
Mentor and develop team members on their career journey
Prepare and present recommendations to developers, architects, product owners, and managers
ESSENTIALS & CRITICAL SKILLS
You have found defects in someone else’s code, helped them fix the issues, yet you remain friends
Ability to learn new programming languages and platform technologies quickly
Understanding of web, mobile, and API design patterns and core architectures
Fluid knowledge and experience with AWS, Docker, DevOps
Passion for supporting all types of athletes through digital technologies
Awareness & applied use of OWASP Top Ten, CWE, and other types of web attack patterns
Applied use of web application penetration testing and static code analysis tools
Excellent verbal and written communication skills
REQUIRED EDUCATION AND/OR EXPERIENCE
Relevant work experience in software development, application security or information security of at least 5 years
Bachelors degree in computer science or relevant engineering major plus 3 or more years of relevant work experience
Masters degree in computer science or relevant engineering major plus 2 or more years of  relevant work experience
PREFERRED
Experience with AWS, particularly IAM, CloudWatch, CloudTrail, ACM, ELB, and S3
Experience with CI/CD pipelines and tools like Docker, Jenkins, kubernetes
Strong desire and ability to learn new technologies
CSSLP certification
At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, and any other characteristic protected by applicable law.  Under Armour believes that diversity and inclusion among our teammates is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. 
View Company Profile
1501 Lincoln Blvd.#1014 Venice, CA. 90291