Lead Software Engineer
Wells FargoAbout the role
About this role:
Wells Fargo is seeking a Lead Software Engineer – Application Security Champion (ASC) to embed security into the software development lifecycle across enterprise applications. The ASC will work directly with development teams to ensure secure design, identify and remediate vulnerabilities, and integrate security practices into CI/CD pipelines.
This role combines secure software engineering, vulnerability remediation, and security automation, enabling development teams to resolve security issues efficiently while maintaining delivery velocity.
The candidate will collaborate with platform engineering, DevOps, and enterprise security teams to improve application security posture through automation, tooling integration, and emerging AI-driven remediation approaches including agentic AI frameworks.
In this role, you will:
- Serve as an Application Security Champion supporting development teams across multiple applications.
- Guide teams in implementing secure coding practices and secure architecture principles.
- Provide technical remediation guidance for vulnerabilities identified through security scanning tools.
- Analyze vulnerabilities discovered through SAST, SCA, DAST, and penetration testing.
- Assist development teams with remediation strategies that minimize impact on application functionality.
- Support vulnerability lifecycle management within enterprise defect management systems.
- Contribute to initiatives that leverage automation and AI-driven remediation workflows.
- Support the development of automation frameworks that reduce manual security review workloads.
- Assist with integrating security insights into development workflows using AI-assisted development tools and emerging agentic AI approaches.
- Lead complex technology initiatives including those that are companywide with broad impact
- Act as a key participant in developing standards and companywide best practices for engineering complex and large scale technology solutions for technology engineering disciplines
- Design, code, test, debug, and document for projects and programs
- Review and analyze complex, large-scale technology solutions for tactical and strategic business objectives, enterprise technological environment, and technical challenges that require in-depth evaluation of multiple factors, including intangibles or unprecedented technical factors
- Make decisions in developing standard and companywide best practices for engineering and technology solutions requiring understanding of industry best practices and new technologies, influencing and leading technology team to meet deliverables and drive new initiatives
- Collaborate and consult with key technical experts, senior technology team, and external industry groups to resolve complex technical issues and achieve goals
- Lead projects, teams, or serve as a peer mentor
Required Qualifications:
- 5+ years of Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 5+ years of experience in software engineering, DevSecOps, or application security.
- 5+ years experience with enterprise application development, including Java
- 3+ years experience with enterprise application development, including Python, JavaScript, or C#
- 1+ year experience working with application security testing tools such as: SAST tools (Checkmarx, Veracode), SCA tools (Black Duck, Snyk, and DAST tools (Invicti, Burp Suite).
- 1+ year experience in secure coding principles and OWASP Top 10 vulnerabilities.
- 1+ year experience integrating tools into CI/CD pipelines (Jenkins, GitHub, GitLab, Azure DevOps).
Desired Qualifications:
- Experience implementing security automation or developer security tooling.
- Exposure to AI-assisted development tools or agentic AI frameworks used for code analysis or remediation.
- Experience working in cloud-native environments (AWS, Azure, GCP).
- Familiarity with threat modeling and secure architecture practices.
- Experience working with enterprise vulnerability management platforms.
Job Expectations:
- Must be based in one of the above locations or willing to relocate at your own expense.
- Relocation
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s