Selective Insurance · 2 weeks ago
Principal Application Security Engineer
Selective Insurance is a midsized U.S. domestic property and casualty insurance company with a long-standing reputation for financial performance. The Principal Application Security Engineer will lead security initiatives, conduct assessments, and integrate security into the software development lifecycle to ensure a robust application security posture across the organization.
FinanceFinancial ServicesInsurance
Responsibilities
Lead application security initiatives across agile teams and delivery portfolios. Define and execute scalable security strategies tailored to cloud, on-premises, and hybrid environments
Conduct static (SAST), dynamic (DAST), and interactive (IAST) application security testing. Perform penetration testing and vulnerability assessments using industry-standard tools
Integrate security controls into CI/CD pipelines and DevOps workflows. Promote threat modeling and automated security testing during development phases
Develop and enforce application security standards and Secure SDLC policies aligned with frameworks like OWASP, NIST, and ISO
Monitor compliance with data privacy regulations and internal standards. Security Enablement & Training
Establish and manage an Application Security Champions program. Deliver training on secure coding practices and security awareness
Lead incident response efforts related to application vulnerabilities. Continuously evaluate and improve risk mitigation strategies
Deploy and manage security tools for code analysis, vulnerability scanning, and runtime protection. Implement runtime application self-protection (RASP) and code obfuscation techniques
Act as a liaison between development, architecture, and cybersecurity teams. Translate technical risks into business impacts for non-technical stakeholders
Qualification
Required
Minimum of 10 years of experience in application security or a related field
Proficiency in cloud, security tools and technologies, such as static and dynamic analysis tools, vulnerability scanners, and penetration testing frameworks
Strong understanding of secure coding practices, OWASP Top Ten, and common security vulnerabilities
Strong analytical and problem-solving skills, with a proactive approach to identifying and addressing security issues
Excellent communication skills, with the ability to convey complex security concepts to technical and non-technical audiences
Ability to adapt to rapidly changing technology, processes, business models and user behaviors
Expertise in application security practices and delivering comprehensive support to meet complex enterprise application security needs
Bachelor's degree in Computer Science, Information Security, or a related discipline
Preferred
Relevant certifications (e.g., CISSP, CEH, OSCP) are a plus
Benefits
Comprehensive health care plans
Retirement savings plan with company match
Discounted Employee Stock Purchase Program
Tuition assistance and reimbursement programs
20 days of paid time off
Company
Selective Insurance
At Selective, we maintain a commitment to provide unique insurance solutions that help keep the families and businesses of our communities protected.
H1B Sponsorship
Selective Insurance has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (45)
2024 (32)
2023 (43)
2022 (30)
2021 (29)
2020 (25)
Funding
Current Stage
Public CompanyTotal Funding
$400M2025-02-25Post Ipo Debt· $400M
1978-01-13IPO
Recent News
2025-12-09
2025-11-11
Company data provided by crunchbase