Lead Security Engineer
GartnerAbout the role
Hiring near our Irving, TX and Stamford, CT Centers of Excellence with a flexible environment.
About Gartner IT:
Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting-edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome-driven approach to success, and the notion that great ideas can come from anyone on the team.
About the Role:
The Lead Security Engineer will be responsible for supporting Gartner’s AppSec function. This individual will play an integral role in, executing daily vulnerability Assessments functions; working closely with Information Security partners, and technology stakeholders to identify risks/vulnerabilities and collaborate with key stakeholders on remediation, developing and tracking risk/vulnerability remediation and prioritize effort across our various business units, partnering to implement security tools, technologies and controls with an appropriate balance of security, business, and user experience, while providing education and training; and engineer automation solutions and/or security tool integrations to assist with day-to-day AppSec responsibilities.
What you’ll do:
Collaborate with business stakeholders to design secure applications, test applications for security weakness, and partner on remediation of identified issues.
Mentor engineers and security champions on practical threat modeling techniques
Triage and prioritize security risks, vulnerabilities, and exceptions in alignment with business impact and risk tolerance.
Coordinate the orchestration, automation, and management of security technologies and platforms.
Own day-to-day life cycle management, including identification, threat assessment, threat modeling and risk avoidance.
Create reasonable and actionable reports showing direct impact to the security posture.
Define and implement meaningful metrics to measure the effectiveness of security controls through KRIs and security scorecards.
Serve as a subject-matter-expert for Application Security; act as a first point of contact for critical issues, security risk assessments and triaging CI/CD issues with Partners and stakeholders.
Evaluate business and technical requirements to identify and implement tools, processes, and technologies to improve our security posture in our environments.
Use data to drive prioritization, highlight systemic issues, and influence roadmap decisions
What you’ll need:
Ideal candidates will have 6-8 years of experience in a Security Engineering role with proven experience in DevSecOps, Cloud Security, and Application Security. Candidates should have strong independent critical thinking, problem-solving skills, and the ability to consistently ev
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s