Verizon logo
Verizon
Posted 6 days agoVerified live 4h ago

Security Engineer

Brief overview

Remote
UndergradOr in progress
$72k–$129k/yrStated range
2+ yrsMinimum
969 H-1B approvalsDept. of Labor
288 green cardsCertified filings
Application SecurityPenetration TestingOWASP Top 10Burp Suite ProfessionalOWASP ZAPJenkinsGitLab CI/CDPythonBashDockerAWSWeb Application Security

About the company

Global telecommunications company delivering innovative services.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
969H-1B approved
99%approval rate
36new H-1B hires
288PERM certified
$198,656median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
2023262
2024263
2025391
202653
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
202350
202490
202582
202644
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
202393
202466
2025122
20267
Top sponsored roles
Sr Engr Cslt-Data ScienceSr Engr Cslt-Systems EngrgPrinc Engr-Systems EngrgAssoc Dir-Business StrategyPrinc Engr-Full Stack
Sponsored employees from
IndiaCanadaChinaAustraliaColombia

Job description

Summary

Verizon is a telecommunications company that connects people and enables how they live, work, and play. The Security Engineer will support the Dynamic Application Security Testing team by automating security testing, integrating tools into CI/CD pipelines, and identifying and remediating application vulnerabilities. The role also supports ethical hacking, bug bounty triage, and critical incident response across web applications, mobile applications, and APIs.

Responsibilities

  • Integrating dynamic analysis tools (OWASP ZAP, Burp Suite) directly into Jenkins and GitLab CI/CD pipelines to ensure continuous security testing
  • Writing and maintaining custom automation scripts using Python, Java, and Bash to scale our security efforts and eliminate manual bottlenecks
  • Utilizing AI to build new testing capabilities, streamline the triage of bug bounty submissions, and troubleshoot code across our tech stack
  • Deploying, hosting, and maintaining containerized security testing environments using Docker and AWS
  • Partnering with engineering teams to guide them through identifying and remediating OWASP Top 10 vulnerabilities
  • Leveraging your offensive expertise to triage incoming bug bounty submissions and support Verizon’s critical incident response efforts
  • Performing ethical hacking and penetration testing against web applications, mobile apps, and APIs to uncover vulnerabilities before malicious actors do

Skills

  • Bachelor's degree or one or more years of work experience
  • 2+ years of hands-on experience in Application Security, Penetration Testing, or a DevSecOps engineering role
  • Deep understanding of web application architecture, APIs (REST/GraphQL), and mobile application security
  • Comprehensive knowledge of the OWASP Top 10, CWEs, CVSS scoring, and how to manually validate and exploit these vulnerabilities
  • Proficiency operating and configuring industry-standard dynamic analysis tools, specifically Burp Suite Professional and OWASP ZAP
  • Proven experience integrating security tools into modern CI/CD pipelines using Jenkins and GitLab CI
  • Strong ability to read, write, and maintain automation scripts in Python and Bash
  • Hands-on experience working with Docker containers and deploying/managing applications in AWS (experience with EC2s/Linux is a plus)
  • Ability to clearly explain complex security vulnerabilities (and why remediating them is important) to software engineers who may not have a security background
  • Experience using AI assistants (ideally Gemini or Claude Code) for scripting, debugging code, or day to day productivity improvements

Qualifications

Must Haves

  • Bachelor's degree or one or more years of work experience

Nice to Haves

  • 2+ years of hands-on experience in Application Security, Penetration Testing, or a DevSecOps engineering role
  • Deep understanding of web application architecture, APIs (REST/GraphQL), and mobile application security
  • Comprehensive knowledge of the OWASP Top 10, CWEs, CVSS scoring, and how to manually validate and exploit these vulnerabilities
  • Proficiency operating and configuring industry-standard dynamic analysis tools, specifically Burp Suite Professional and OWASP ZAP
  • Proven experience integrating security tools into modern CI/CD pipelines using Jenkins and GitLab CI
  • Strong ability to read, write, and maintain automation scripts in Python and Bash
  • Hands-on experience working with Docker containers and deploying/managing applications in AWS (experience with EC2s/Linux is a plus)
  • Ability to clearly explain complex security vulnerabilities (and why remediating them is important) to software engineers who may not have a security background
  • Experience using AI assistants (ideally Gemini or Claude Code) for scripting, debugging code, or day to day productivity improvements

Benefits

  • Remote work from home with occasional in-person trainings and meetings
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Short-term disability insurance
  • Long-term disability insurance
  • Basic life insurance
  • Supplemental life insurance
  • AD&D insurance
  • Identity theft protection
  • Pet insurance
  • Group home and auto insurance
  • Matched 401(k) savings plan
  • Up to 8 company-paid holidays per year
  • Up to 6 personal days per year
  • Paid parental leave
  • Adoption assistance
  • Tuition assistance
  • Premium pay such as overtime, shift differential, holiday pay, and allowances, depending on the role
  • Newly hired employees receive up to 15 days of vacation per year, which grows with additional service

More jobs like this