Secure SDLC Associate, Technology Risk

Goldman Sachs

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Dallas, TX
Posted
36 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $180k
$121k most similar roles pay here $226k

This listing doesn't post a salary. Most similar roles pay $144,050–$216,262.

Based on 239 similar postings.

Employer

About Goldman Sachs

Goldman Sachs is a leading global investment banking, securities, and investment management firm providing financial services to corporations, financial institutions, governments, and individuals.

Goldman Sachs currently has 134 open roles on FindRole.

Listed pay typically runs $137,000–$250,000 across 55 roles with salary data.

Most-posted roles

View all roles at Goldman Sachs

At a glance

TL;DR · Secure SDLC Associate, Technology Risk

Secure SDLC Associate joins the Technology Risk team to drive security-by-design initiatives across the firm's technology stack. You will be responsible for implementing static and dynamic analysis, managing security awareness programs, and integrating embedded application security controls throughout the software development lifecycle. Your daily work involves developing scalable solutions using internal and open-source services, performing requirements gathering, testing, and quality assurance to meet regulatory standards. The role requires expertise in infrastructure architecture, cloud security, and remediating vulnerabilities based on OWASP Top 10, OWASP LLM Top 10, and CWE. You will also evaluate AI-augmented capabilities, including agentic AI workflows and Large Language Model behaviors, to enhance security tooling. This position addresses the critical challenge of protecting firm assets by ensuring developers build secure platforms while mitigating risks from emerging technologies and potential software threat vectors.

What you'll do

  • Implement static and dynamic analysis tools across all stages of the Secure Software Development Lifecycle.
  • Evaluate and adopt AI-augmented capabilities for security tooling, including SAST, DAST, and IaC.
  • Integrate embedded application security controls within the firm's software development ecosystem.
  • Partner with business units to build secure applications and remediate issues identified by automated tools.
  • Develop, maintain, and scale high-quality technical solutions using internal and open-source services.
  • Manage full software lifecycle tasks including requirements gathering, testing, deployment, and quality assurance.
  • Design and implement robust testing suites to ensure scalable security across all business lines.
  • Monitor and integrate emerging technologies like agentic AI workflows into secure development processes.

What we're looking for

  • A Master's degree in Computer Science, Computer Engineering, Information Security, or a related field and one year of relevant experience.
  • A Bachelor's degree in Computer Science, Computer Engineering, Information Security, or a related field and three years of relevant experience.
  • Experience with application and infrastructure architecture and security for both on-premise and cloud environments.
  • Knowledge of application security best practices including OWASP Top 10, OWASP LLM Top 10, and CWE.
  • Experience in assessing and mitigating software security threat vectors, threat modeling, attack surface analysis, and source code reviews.
  • Experience working in a shift-left environment to embed security controls within system architecture during the design phase.
  • Foundational understanding of Large Language Model (LLM) behaviors, including common strengths and weaknesses.
  • General familiarity with agentic AI workflows and their role in software development and security tooling.

More like this

Similar roles

Associate Security Engineering Engineer

Goldman Sachs

Dallas, TX 31 days ago
Application Security Infrastructure Security Cloud Architecture OWASP CWE Threat Modeling Penetration Testing Vulnerability Assessment Security Design Review Shift Left Web Services Mobile Applications Risk Assessment
3+ yrs exp

Associate, Security Engineering

Goldman Sachs

Dallas, TX 31 days ago
Application Security SDLC S-SDLC OWASP CWE Source Code Review Vulnerability Assessment Cloud Infrastructure Architecture UAT Shift Left
3+ yrs exp

Associate Tech Risk DLP Engineering

Goldman Sachs

Dallas, TX 37 days ago
DLP Microsoft Purview Zscaler Proofpoint ServiceNow SOAR Python PowerShell REST APIs Regex CI/CD DevSecOps Natural Language Processing LLM MS Teams

Technology Risk Data Privacy Associate

Goldman Sachs

Dallas, TX 30 days ago
Data Security Encryption Access Controls Privacy-by-Design SDLC SQL PowerBI Alteryx Excel NIST Cybersecurity Framework ISO 27001 GDPR CCPA Operating Systems Data Masking
1+ yrs exp

Security Engineer, Tech Risk Analyst

Goldman Sachs

Dallas, TX 9 days ago
Python PowerShell Bash Linux Windows AWS Azure Digital Forensics Incident Response Detection Engineering Cybersecurity Volatility Rekall The Sleuth Kit Autopsy EnCase Cloud Architecture