Senior Application Security Engineer

Gordon Food Service
Wyoming, MI

Welcome to Gordon Food Service! We are excited that you are thinking about opportunities with us, and we have an amazing story to share. See below for a quick glance of who we are and the impact you could have on the food service industry. There's a seat at our table for you...

Position Summary

The Senior Application Security Engineer develops and maintains the application security environment for all Gordon Food Service Information Technology.

What You Will Do

  • Establish strategic direction for software security standards, practices, tools, and lifecycle processes at Gordon Food Service.
  • Oversee design-time threat modeling and risk assessment activities for deployed software solutions; mentor project teams in the practice of threat modeling.
  • Conduct initial high-level risk assessments of SaaS (cloud) and COTS (commercial package) software solutions.
  • Maintain secure coding standards and best practices for custom software development at Gordon Food Service.
  • Work closely with Application Services teams and with the Gordon Food Service quality architect and QA/QC team to ensure that security controls are in place for Gordon Food Service custom software and it is security tested.
  • Provide secure software development mentoring and guidance to Gordon Food Service software engineers.
  • Perform internal penetration testing against new or modified software solutions.
  • Coordinate external security assessments (e.g., “grey-box” web application penetration tests).
  • Serve as the Enterprise Information Security (EIS) team resource to represent EIS concerns on the Gordon Food Service Application Engineering Council (AEC) and Application Architecture Council (AAC).
  • Research and keep abreast of the dynamic threat landscape associated with software security, adapting Gordon Food Service protection strategies to proactively cope with emerging threats.
  • Other duties and responsibilities as assigned.

When You Will Work

  • Monday to Friday, 8am to 5pm
  • Hybrid schedule, 4 days in office in Wyoming, MI with 1 day remote

What You'll Bring To The Table

  • Bachelor's Degree in Computer Science, Information Technology or a related field preferred.
  • Five or more years previous related experience or an equivalent combination of education, training, and experience.
  • Solid grasp of standard web application development technologies such as: Java, Python, JavaScript, Maven, HTML5, frontend tools (NPM, Grunt, Gulp, etc.), current frameworks (Angular, Backbone, Ember, ReactJS, Kotlin, Spring etc.).
  • Experience in DevOps and containerized cloud environments a plus, including Docker, Google Cloud Platform (GCP) and Kubernetes.
  • Familiarity with automated analysis / security testing technologies such as: Static Application Security (SAST), Dynamic Application Security Testing (DAST), Interactive Application Security Testing (IAST) and Runtime Application Self-Protection (RASP).
  • Thorough understanding of web application security and vulnerability / attack patterns such as those enumerated in the OWASP Top 10.
  • Thorough understanding of the software development lifecycle and the ways in which security disciplines are incorporated into it and throughout its stages.
  • Proficiency with web application penetration testing tools such as Burp Suite or OWASP ZAP.
  • Familiarity with software security maturity models such as OSAMM or BSIMM.
  • Familiarity with threat modeling and security risk analysis tools and processes.
  • Familiarity with secure software design and coding practices.
  • Thorough knowledge of security testing practices and supporting methodologies such as OWASP ASVS (Application Security Verification Standard).
  • Ability to mentor less-experienced development staff and clearly communicate the goals of software security, the risks of insufficient security controls to the organization, the nature of common vulnerabilities, and the best practices for mitigating them.
  • Ability to advocate for security, identity, and compliance imperatives in council discussions with senior domain engineers and application architects.
  • Ability to assess security risks within the context of real-world software solutions and develop common-sense, pragmatic mitigation strategies in collaboration with project teams and business stakeholders

BE PART OF AN AMAZING CULTURE WHERE WHAT MATTERS TO YOU, MATTERS TO US!

Gordon Food Service values our customers and understands that their success is largely dependent upon their workforce. To demonstrate our commitment to our partnership, we will require any candidate who works for a Gordon Food Service customer to provide a letter of support from their management if they are selected for the interview process.

Equal Employment Opportunity is a matter of policy at Gordon Food Service, Inc. and we are committed to a work environment in which all individuals are treated with respect and dignity.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, status as a protected veteran, or status as a qualified individual with disability. If you require reasonable accommodation for any part of the application or hiring process due to a disability, please submit your request to [email protected] and use the words “Accommodation Request” in your subject line.

All Gordon Food Service locations are tobacco-free.

Gordon Food Service is a drug-free workplace and conducts pre-employment drug tests.
Posted 2026-03-03

Recommended Jobs

Bench Hand, Additive Manufacturing (1st Shift)

Williams International
Pontiac, MI

Who We Are Williams International is a privately-owned company that develops and manufactures jet engines for both military and commercial aircraft applications. We are a company of creators who d…

View Details
Posted 2026-02-14

Onsite Talent Acquisition Recruiter

G.Z.Q.S.O.
Sterling Heights, MI

Job Title: Onsite Trainee Recruiter Job Overview: We are actively seeking a motivated and trainable individual to join our team as an Onsite Trainee Recruiter. This role provides a fantastic op…

View Details
Posted 2025-08-09

Property Management Internship - Multifamily Housing Summer 2026

Monarch Investment
Kentwood, MI

Description Summer 2026 Paid Internship Opportunities! (May-August / Flexible)  Why be part of any internship when you can be part of a group that fosters real career growth. At Monarch, opportu…

View Details
Posted 2026-01-28

Surface Mount Operator

United Safety and Survivability Corporation
Walker, MI

United Safety and Survivability Corporation is committed to delivering the most innovative and reliable safety and survivability solutions our customers can trust to protect life and property. As the…

View Details
Posted 2026-02-06

Personal Injury Litigation Attorney

Morgan & Morgan, P.A.
Detroit, MI

At Morgan & Morgan, the work we do matters. For millions of Americans, we’re their last line of defense against insurance companies, large corporations or defective goods. From attorneys in all 50 st…

View Details
Posted 2025-08-13

Inside Sales Representative

Ecorse, MI

We're looking for bold, entrepreneurial talent ready to help build something extraordinary - and reshape the future of building products distribution. QXO is a publicly traded company founded by…

View Details
Posted 2026-03-02

Sharkee's Team Member - Sharkee's Bar & Grill, Holland

Suburban Inns
Holland, MI

Sharkee's is a fast-paced, high-energy workplace, with endless opportunities for skill development and advancement. Come join the best team in the Food and Beverage and the Hospitality Industries!  …

View Details
Posted 2026-02-04

Sr Manufacturing Robotics Engineer

Mason, MI

Our client, a leading manufacturer of disposable food packaging products, is seeking a Sr. Manufacturing Robotics Engineer to join their team in Mason, MI to help reshape manufacturing and warehouse …

View Details
Posted 2026-01-21

Store Manager Unassigned

WALGREENS
Clare, MI

: Responsible for learning Walgreens' operations and ways of working to lead “one-box” (full store operations across front-end and pharmacy). Responsible for completing accelerated development track…

View Details
Posted 2026-02-25

Executive Assistant

NB Target Metal Blanking
New Boston, MI

Job Description – Executive Assistant   Job Classification: Full-time/Hourly Manager: President and/or Vice President Job Responsibility Summary: Assist the President/Vice President to meet a…

View Details
Posted 2026-02-28