Cyber Defense, Application Security Engineer III
Location: Irvine, CA
Company Overview: Hyundai AutoEver America (HAEA), the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis. HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group. At HAEA, we understand that IT is the cornerstone of today’s fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations. If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that’s driving the future of automotive innovation.
What You Will Be Doing: The Senior Application Security Engineer plays a key role in strengthening application security across the software development lifecycle. This role sits within the Cyber Defense organization and is responsible for defining and documenting Secure SDLC requirements, developing and managing a hardened cloud container image repository, and embedding automated security testing into CI/CD pipelines. The role requires hand-on technical capability combined with the ability to define standards, influence development teams, and ensure vulnerabilities are identified and remediated before final build and release, in alignment with agreed remediation timelines. The key responsibilities of this role are as described below: Secure SDLC Requirements & StandardsDefine, document, and maintainSecure SDLC policies, standards, and procedurescovering: Secure design and coding expectations Security testing requirements Build, release, and deployment security controlsPartner with Engineering, Platform, and AppDev teams to ensure Secure SDLC requirements are: Practical and scalable Integrated into existing development workflows Clearly communicated and understoodUtilizing the standardized Risk Operation processes, support governance activities, including reviews, exceptions, and continuous improvement of SDLC security requirements. Container Security & Hardened ImagesDevelop, manage, and maintain ahardened cloud container image repositoryfor application workloads. Define baseline security requirements for container images, including: Base image selection and hardening Patch and dependency management Runtime security considerationsPartner with platform and application teams to drive adoption

Also on the board Same function, level within a rung

Level

Lead

Location

Irvine, CA

Occupation

Information Security Engineers

Industry

Computer Systems Design Services

Posted

today

Apply for this role →