✦ Luna Orbit — Cybersecurity

Technical Lead - Information Security

at Ameriprise Financial

📍 2 Locations Hybrid Posted March 16, 2026
Type Full-Time
Experience mid
Exp. Years 5+ years
Education Not specified
Category Cybersecurity

This role involves reviewing and validating code fixes, assessing false positives, and evaluating design controls to ensure application security. The focus is on remediating OWASP Top 10 vulnerabilities and partnering with development teams.

  • Identify, analyze, and remediate code vulnerabilities
  • Partner with development teams to validate fixes
  • Review security findings and false positives
  • Evaluate design controls for risk
  • Provide guidance on secure coding

The technical environment includes application security, vulnerability assessment tools like SAST and DAST, and platforms such as ServiceNow. The candidate should have experience with secure coding practices and risk management.

The ideal candidate is a mid-level cybersecurity professional with 5+ years of experience in application security, vulnerability assessment, and remediation techniques. They should have strong knowledge of OWASP Top 10 and experience working with security tools like SAST and DAST, with excellent collaboration skills.

5+ years in software developmentStrong understanding of OWASP Top 10Partner with development teamsReview security findingsEvaluate design controls
Experience with SAST/DAST toolsKnowledge of secure design principlesThreat modeling
ServiceNow
Java.NETPythonOWASP Top 10SASTDASTSecure codingVulnerability assessmentServiceNowRisk assessment
Java.NETPythonOWASP Top 10SASTDASTSecure codingVulnerability assessmentServiceNowRisk assessment
CommunicationCollaborationAnalytical thinkingProblem-solving
Industry Financial Services
Job Function Application security and vulnerability remediation in software development
Role Subtype Cybersecurity Engineer
Tech Domains Cybersecurity, Active Directory, Microsoft 365, OWASP Top 10, ServiceNow
security engineerOWASP Top 10vulnerability remediationcode reviewapplication securitySASTDASTsecure codingrisk assessmentServiceNowsoftware developmentcybersecurityrisk managementvulnerability assessmentremediation techniques

Less than 5 years in software development, Lack of understanding of OWASP Top 10, No experience with vulnerability assessment tools, No security certifications

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile