We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Information Security Sr Mgr

Juniper Networks, Inc
parental leave, sick time, 401(k)
United States, California, Sunnyvale
Jun 16, 2025

Senior Manager, Information Systems

Location: Sunnyvale, CA

Juniper Networks' Cyber Fusion (Trust Office) is seeking a certified cybersecurity professional to join our highly collaborative and diverse team. We are looking for a proven Application Security Engineer to help ensure that our products are designed, developed, and maintained with security at their core.
In this role, you will be responsible for driving secure development practices across the product lifecycle-from design and architecture to implementation and deployment. You will work closely with engineering teams to identify and remediate security vulnerabilities, conduct threat modeling and code reviews, and support the integration of security tools and automation into CI/CD pipelines

Responsibilities

In this role, you will:



  • Responsible for providing technical expertise on secure software development and support of all associated activities, processes, and tools for protecting technology-based information
  • Responsible for security controls automation in the CI/CD pipeline
  • Provides consulting services and security support through Product Security Center of Excellence to internal product team
  • Reviews, develops, tests, and implements security plans, products, and control techniques
  • Assists with the development of secure coding standards
  • Documents security policies and procedures where/when needed
  • Evaluates new and proposed security systems, products, and technologies
  • Define and improve application security in the SDLC, ensuring security is prioritized from inception to deployment.
  • Conduct regular security architecture risk assessments and threat modelling to implement effective risk mitigation strategies.
  • Maintain awareness on latest DevSecOps approaches and how they fit into large enterprise organization's AppSec program.
  • Collaborate with software engineers and leadership teams as well and cybersecurity teams to integrate security controls throughout the software development lifecycle.
  • Be comfortable interfacing and providing guidance to senior and technical leadership on application security issues/approaches, to achieve the deployment of effective security solutions.



Qualifications



  • Bachelor's degree in computer science, Information Security, or related field
  • 10+ years of experience in AppSec, Software/Systems Engineering, and/or Architecture.
  • Expert level understanding of SDLC tool automation (e.g., automating SAST, SCA, DAST, IAST, Secret Scanning and compliance checks within CI/CD pipeline)
  • Expert level understanding of NodeJS, Java, modern web development frameworks and Service Oriented Architecture (SOA).
  • Proficiency in scripting language (e.g., Python, Bash or PowerShell)
  • In depth understanding of API-based integration, enabling seamless orchestration of security controls within CI/CD pipelines.
  • Expert level understanding of AppSec scanning tools across SAST/SCA/DAST/IAST/Container Security/API Security/Secret Scanning/Fuzzing in large enterprise environments.
  • In depth knowledge of SDLC, and CI/CD pipelines best practices.
  • Good understanding of SLSA and supply chain security.
  • Expert level understanding of containerized platforms and security best practices.
  • In depth understanding of cybersecurity principles, including cryptography, authentication, web security, vulnerability assessments and threat detection.
  • Understanding of security by design principles and architecture-level security concepts.
  • Knowledge of web, mobile, API, Microservices, network and security architectures and design patterns.
  • Knowledge of security best practices, principles, and common security frameworks, such as NIST, ISO, Common Criteria, TCSEC, OWASP, etc.
  • Experience with data architecture, modelling and integration.
  • Perform threat modelling, conduct reviews of security architecture and platform/service designs, and audit source code and API configurations.
  • Experience with IAM (identity and access management) patterns, practices, policies and architectures, and common security technologies like JWT, OAuth, and SAML.
  • Desired expertise in various security testing activities, including penetration testing, vulnerability scanning, and code reviews.
  • Working knowledge of major cloud platforms such as AWS, Azure, Google Cloud.
  • Industry certifications (e.g., CISSP, CISM, CCSP, or equivalent) are a plus.



#LI-AHUYNH
#LI-PRIORITY

Minimum Salary: $168,800.00

Maximum Salary:$242,650.00

The pay range for this position is expected to be between $168,800.00 and $242,650.00/year; however, the base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. The total compensation package for this position also includes medical benefits, 401(k) eligibility, vacation, sick time, and parental leave. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment.

If hired, employee will be in an "at-will position" and the Company reserves the right to modify base salary (as well as any other payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors.

Juniper's pay range data is provided in accordance with local state pay transparency regulations. Juniper may post different minimum wage ranges for permanent residency petitions pursuant to US Department of Labor requirements.

Applied = 0

(web-7b8899978f-csr8p)