Skip to main content
close

Search Jobs

Senior Software Security Analyst

Southlake, TX ; Omaha, NE ; Phoenix, AZ ; Austin, TX ; Ann Arbor, MI
Requisition ID 2025-112800 Category Engineering & Software Development Position type Regular Pay range USD $145,000.00 - $180,000.00 / Year Application deadline 2025-08-09
Apply

Your opportunity


At Schwab, you’re empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry together.

We believe in the importance of in-office collaboration and fully intend for the selected candidate for this role to work on site in the specified location(s).

Schwab Technology Services enables the future of how clients manage their money by providing innovative and reliable technology products and services as a part of our ongoing commitment to democratize access to investing and financial planning.

•          Serve as a trusted partner to developers, product owners, and stakeholders, translating company security policies into actionable, non-functional application security controls.
•          Be thought leader – drive secure code reviews, identify context-specific vulnerabilities, align teams with security objectives, and eliminate process inefficiencies.
•          Communicate emerging application security weaknesses, exploit patterns, and risk scenarios in clear, business-relevant terms.
•          Assist teams in mitigation and remediation efforts while operating within agile delivery environments.
•          Apply insight and initiative to raise the standard of secure development and streamline the path from policy to implementation.



What you have


RequiredQualifications

o          Bachelor’s degree in computer engineering OR related engineering degree and/or practical experience
o          Ability to demonstrate knowledge of OWASP Top 10 and CWE Top 25
o          Knowledge of application-layer security controls, including authentication and authorization methods, input/output validation and sanitization, and defenses against injection attacks such as SQL or command injection
o          Understanding of secure cryptographic practices, including appropriate use of encryption algorithms, hashing functions, and protection of data at rest and in motion
o          Secure coding in Java or .NET web and service development, backed by 7+ years of practical, hands-on programming and IT experience
o          Experience participating as a member of a team in an agile environment
o          Experience with the Secure Development Lifecycle
o          Experience with security tools including SAST, DAST, IDE plugins, decompilers, and threat modeling platforms

Advanced people skills:
o          Ability to conceptualize an application security finding and the best tactical approach for a team to remediate
o          Excellent communication skills and proven ability to communicate threats and facilitate progress towards long-term remediation
o          Ability to effectively communicate complex security findings to both technical and non-technical audiences
o          Ability to demonstrate proven analytical and problem-solving skills, as well as desire to assist others
o          Effective relationship builder: ability to partner cross-functionally, cross-enterprise and work effectively with various levels of the organization

Preferred Qualifications

  • Experience with enterprise platforms such as Struts, Spring, J2EE/Jakarta EE (Java) or .NET, with awareness of how their structure impact authentication, authorization, and secure service design
  • Intermediate understanding of web technologies and data formats, including XML, JSON, AJAX, with attention to the security implications of JavaScript-driven UIs and asynchronous communication
  • Familiarity with service protocols and architectures such as SOAP and REST, with working knowledge of secure data handling and integration patterns
  • Experience with source code repository tools such as BitBucket and GitHub
  • Master’s degree in Cybersecurity a plus
  • Web application penetration testing, ethical hacking, red/blue teaming, or capture-the-flag experience a plus

In addition to the salary range, this role is also eligible for bonus or incentive opportunities.


What’s in it for you

At Schwab, we’re committed to empowering our employees’ personal and professional success. Our purpose-driven, supportive culture, and focus on your development means you’ll get the tools you need to make a positive difference in the finance industry. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.

We offer a competitive benefits package that takes care of the whole you – both today and in the future:

  • 401(k) with company match and Employee stock purchase plan
  • Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
  • Paid parental leave and family building benefits
  • Tuition reimbursement
  • Health, dental, and vision insurance
Apply

Eligible Schwabbies receive

  • Medical, dental and vision benefits

  • 401(k) and employee stock purchase plans

  • Tuition reimbursement to keep developing your career

  • Paid parental leave and adoption/family building benefits

  • Sabbatical leave available after five years of employment