Secure SDLC Associate - Dallas - Technology Risk

The Goldman Sachs Group Inc
  • Dallas, TX
    7 days ago

    Job Description

    Job Duties

    • Lead and support the implementation of static and dynamic analysis, as well as security awareness initiatives across all stages of the Secure Software Development Lifecycle (Secure SDLC).

    • Support the evaluation and adoption of AI-augmented capabilities within Secure SDLC services, including static and dynamic analysis tooling (SAST, DAST, IaC, Control Gating, etc.).

    • Drive the integration and adoption of embedded application security controls within SDLC ecosystem.

    • Interface with Business Units to help build secure applications and remediate issues identified by automated tools.

    • Develop, enhance, support and maintain the Firm''s Secure SDLC solutions in support of its global businesses.

    • Design and implement high-quality, scalable and thoughtful technology solutions leveraging both internal and open-source services.

    • Assist in requirements gathering, user experience refinement, development, testing (unit, integration and regression), User Acceptance Testing (UAT), Deployment, and Quality Assurance (QA).

    • Work with internal teams to help develop secure solution designs.

    • Identify new external technologies that can be used to transform our financial businesses and internal platforms in innovative and disruptive ways.

    • Work in all phases of the Secure SDLC to meet internal and regulatory requirements.

    • Design, implement and maintain robust testing suites to enable secure, complete, and scalable solutions across our business lines.

    • Maintain awareness of emerging technologies (including but not limited to) agentic AI workflows and their potential application to Secure SDLC processes.

    Minimum Education Requirements

    • Master''s degree (U.S. or foreign equivalent) in Computer Science, Computer Engineering, Information Security, or a related field and one (1) year of experience in the job offered or a related role.

    OR

    • Bachelor''s degree (U.S. or foreign equivalent) in Computer Science, Computer Engineering, Information Security, or a related field and three (3) years of experience in the job offered or a related role.

    Special Skills and/or Licenses Required to Perform the Job

    Prior experience should include one (1) year (with a Master''s degree) or three (3) years (with a Bachelor''s degree) with:

    • Application and infrastructure architecture and security (on premise and Cloud).

    • Application security best practices including OWASP Top 10, OWASP LLM Top 10, and CWE.

    • Application security vulnerabilities and controls to remediate risks.

    • Assessing and mitigating software security threat vectors, threat modeling, attack surface analysis, security design reviews, source code reviews, penetration testing or vulnerability assessments.

    • Working in shift left environment to help embed security in Design phase to implement security controls within system architecture.

    • Conducting infrastructure or application security risk assessments.

    • Foundational understanding of Large Language Model (LLM) behaviors, including common strengths and weaknesses (e.g., hallucination, behavior inconsistency, context limitations, reproducibility and verification, etc.).

    • General familiarity with agentic AI workflows and their role in software development and security tooling.

    Numbers & Facts

    LocationDallas, TX

    Skills

    • Acceptance Testingunmatched
    • Analysis Skillsunmatched
    • Applications Securityunmatched
    • Artificial Intelligence (AI)unmatched
    • Code Reviewsunmatched
    • Computer Engineeringunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Customer/Client Researchunmatched
    • Dynamic Analysisunmatched
    • Ecosystemsunmatched
    • Embedded Systemsunmatched
    • Emerging Technologyunmatched
    • Identify Issuesunmatched
    • Information/Data Security (InfoSec)unmatched
    • Integration Testingunmatched
    • Machine Toolunmatched
    • Modeling Languagesunmatched
    • Open Sourceunmatched
    • Penetration Testingunmatched
    • Quality Assuranceunmatched
    • Regression Testingunmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • Security Attacksunmatched
    • Security Designunmatched
    • Security Softwareunmatched
    • Software Developmentunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Static Analysisunmatched
    • Surface Modelingunmatched
    • System Architectureunmatched
    • Team Playerunmatched
    • Test Plan/Scheduleunmatched
    • Test Suiteunmatched
    • Threat Modelingunmatched
    • Unit Testunmatched
    • User Interface/Experience (UI/UX)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder