Senior Application Security Engineer

3 weeks ago


The Municipal District of Carlow, Ireland Unum Ireland Full time
Overview

Senior Application Security Engineer role at Unum Ireland. Unum Technology Centre in Carlow serves as a strategic software development and IT services centre supporting Unum, a leading provider of income protection in the US. Our team builds solutions and critical business applications to digitally transform the way we do business.

We are looking for a Senior Application Security Engineer to lead the integration of secure development practices across our SDLC in both cloud and on-prem environments. This role combines hands-on technical expertise with strategic influence, focusing on secure architecture, CI/CD automation, and developer enablement. You'll collaborate with cross-functional teams to drive threat modeling, build secure-by-default tooling, and mentor engineers across Ireland and the US—helping to elevate our overall security maturity and culture.

Hybrid work arrangement is available.

Responsibilities
  • Secure Software Development & DevSecOps Integration
    • Architect and integrate security into CI/CD pipelines using modern automation and guardrails.
    • Develop secure frameworks, SDKs, and CI integrations to enable frictionless adoption of security controls.
    • Maintain secure coding standards and guidance tailored to our technology stack.
    • Collaborate with DevOps and platform teams to enhance container and infrastructure security (Docker, Kubernetes, IaC).
  • Threat Modeling, Reviews & Remediation
    • Lead threat modeling workshops across product and platform teams.
    • Identify and assess vulnerabilities using SAST, DAST, SCA, manual code reviews, and penetration testing.
    • Promote reusable remediation patterns for code and infrastructure vulnerabilities.
    • Leverage threat intelligence to prioritize mitigations based on business risk.
  • Engineering & Automation
    • Build and maintain automation tools for vulnerability triage, mitigation, and reporting.
    • Strengthen API security through robust authentication protocols (OAuth 2.0, OpenID Connect, SAML).
    • Integrate with API gateways (e.g., Layer7, MuleSoft) to enforce secure communication and tokenization.
    • Support secure deployment of microservices and distributed systems using best-in-class tooling.
  • Security Culture & Enablement
    • Mentor engineers and analysts, fostering secure development capabilities across teams.
    • Lead internal workshops, onboarding sessions, and lunch-and-learns to promote security awareness.
    • Collaborate with Security Champions to build advocacy and threat modeling expertise.
    • Create internal documentation, playbooks, and training materials aligned with real-world threats.
  • Cross-Functional Leadership & Collaboration
    • Act as a bridge between Security, Engineering, and Product teams to align on secure architecture and SDLC practices.
    • Participate in incident response, forensic analysis, and post-incident remediation.
    • Support compliance initiatives (SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR) through technical guidance and documentation.
    • Define and track KPIs to measure and improve security maturity across the organization.
QualificationsRequired Qualifications
  • 5+ years in application security, software engineering, or a related technical security role.
  • Proficient in at least one modern programming language (e.g., Java, C#, Python, JavaScript).
  • Experience with security tools: SAST, DAST, SCA, IaC scanners, RASP.
  • Strong knowledge of cloud infrastructure (AWS preferred), containers (Docker, Kubernetes), and CI/CD security.
  • Familiarity with OWASP Top 10, ASVS, CVSS, MITRE ATT&CK, STRIDE, and software supply chain security.
Technical Skills
  • Deep understanding of API security protocols and secure service-to-service communication.
  • Experience with secure artifact/package management and container registries.
  • Ability to script or build internal tools to scale security practices.
  • Hands-on experience with DevSecOps tools (GitHub Actions, Jenkins, GitLab CI, Terraform, etc.).
Compliance & Governance
  • Working knowledge of privacy and security regulations (GDPR, CCPA, HIPAA, PCI, SOC 2, ISO
  • Experience supporting audits, risk assessments, and policy development.
Preferred Qualifications
  • Professional certifications (e.g., OSCP, CSSLP, CISSP, Security+).
  • Contributions to open-source security projects or community involvement.
  • Experience with policy-as-code tools (e.g., Open Policy Agent).
  • Familiarity with secure runtimes (e.g., Firecracker), sidecars, or service meshes (e.g., Istio).
Key Attributes
  • Strategic thinker with a hands-on, problem-solving mindset.
  • Strong communicator, able to engage both technical and non-technical stakeholders.
  • Collaborative leader with a growth mindset and a passion for mentoring.
  • Comfortable navigating fast-paced, cross-functional environments.
Job Details
  • Seniority level: Mid-Senior level
  • Employment type: Full-time
  • Job function: Information Technology
  • Industries: IT Services and IT Consulting
Company

Unum

Benefits & Perks

We offer work-life-balance with flexible working arrangements (including hybrid) and initiatives in support of your well-being. Our benefits include competitive compensation, 25 days annual leave, paid health insurance, pension scheme, annual performance-based bonus, parental leave, reward programs, and opportunities to engage with charity and community activities.


#J-18808-Ljbffr

  • The Municipal District of Carlow, Ireland Unum Ireland Full time

    OverviewJoin to apply for the Amazon Connect Senior Software Engineer role at Unum Ireland.Our StoryUnum Technology Centre in Carlow serves as a strategic software development and IT services centre supporting Unum, a leading provider of income protection in the US. Our team of IT professionals build solutions and critical business applications to digitally...


  • The Municipal District of Carlow, Ireland Netwatch Full time

    Software Development Engineer (Hybrid | .NET & React | AI-Driven Security Tech)Join to apply for the Software Development Engineer (Hybrid | .NET & React | AI-Driven Security Tech) role at NetwatchSoftware Development Engineer (Hybrid | .NET & React | AI-Driven Security Tech)Join to apply for the Software Development Engineer (Hybrid | .NET & React |...


  • The Municipal District of Carlow, Ireland Teagasc Full time

    OverviewTeagasc - the Agriculture and Food Development Authority - is the national body providing integrated research, advisory and training services to the agriculture and food industry and rural communities. Our vision is to be a globally recognised leader in developing innovative science-based solutions for the sustainable transformation of our land...


  • The Municipal District of Carlow, Ireland Unum Ireland Full time

    Join to apply for the Senior MuleSoft Developer role at Unum IrelandOur story: Unum Technology Centre in Carlow serves as a strategic software development and IT services centre supporting Unum, a leading provider of income protection in the US. Our team of IT professionals builds solutions and critical business applications to digitally transform the way we...


  • The Municipal District of Carlow, Ireland Netwatch Full time

    Job Title: Software Development Engineer (Hybrid | .NET & React | AI-Driven Security Tech)Department: Netwatch R&DLocation: Carlow Office (Hybrid Option Available)Join Us in Building the Future of Proactive SecurityAre you ready to make a global impact through cutting-edge technology? At Netwatch, we're redefining proactive video monitoring to protect...


  • The Municipal District of Carlow, Ireland Unum Ireland Full time

    Our StoryUnum Technology Centre in Carlow serves as a strategic software development and IT services centre supporting Unum, a leading provider of income protection in the US. Our team of IT professionals build solutions and critical business applications to digitally transform the way we do business.Join us as a Senior developer, where you'll architect...


  • The Municipal District of Carlow, Ireland Design Build Search Full time

    Senior Environmental Engineer - CarlowA primary national consultancy in Ireland with specialisation across Sustainable Infrastructure, Circular Economy, Environment, Energy and Renewables. Specialising in providing solutions for waste and resource management for clients. Due to an increase in work awarded there is an opportunity for a Senior Environmental...

  • Process Engineer

    3 weeks ago


    The Municipal District of Carlow, Ireland PSC Biotech® Corporation Full time

    OverviewNew exciting opportunity now exists on our Carlow Site for a Process Engineer to join the Process Engineering Group on site and report to the Technical Engineering Manager. Our new team member will serve as technical support for new product introduction (NPI) and commercial manufacturing and will participate and/or lead cross functional or single...

  • Process Engineer

    2 weeks ago


    The Municipal District of Carlow, Ireland Tandem Project Management Ltd. Full time

    ERF CertRP | Talent Solutions Specialist | Sourcing & Developing Life Sciences TalentSummary:A Process Engineer is required to join the Process Engineering Group on-site at a biopharmaceutical company in Carlow. The successful candidate will provide technical support for new product introductions (NPI) and commercial...

  • Process Engineer

    3 weeks ago


    The Municipal District of Carlow, Ireland PE Global Full time

    Direct message the job poster from PE GlobalOverviewPE Global is currently recruiting for a Process Engineer on behalf of our Biotech client based in Carlow.11-month initial contract.Hybrid role (once successful completion of training, occasional shift support as required based on program needs).The Process Engineer will join the Process Engineering Group on...