> Markdown version of [/jobs/ext/1405335-intermediate-cyber-security-engineer](https://www.wearedevelopers.com/jobs/ext/1405335-intermediate-cyber-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Intermediate Cyber Security Engineer - **Company:** Transamerica Corporation - **Location:** Cedar Rapids, IA, United States - **Experience:** Starter - **Salary:** $70,000.0 - $84,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Data Analysis, Application Firewall, JIRA, Cloud Computing, CompTIA Security+, Cyber Security, Data Governance, Information Leak Prevention, Digital Forensics, Internet Hosting Service, Intrusion Detection and Prevention, Systems Development Life Cycle, Application Data, Secure Coding, Security Information and Event Management, Software Engineering, Syslog, Software Vulnerability Management, Enterprise Software Applications, Software Security, Cyber Threat Analysis, Firewalls (Computer Science), Information Technology, Data Analytics, Network Server, Servicenow, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** July 23, 2026 - **Apply:** https://transamerica.wd5.myworkdayjobs.com/US/job/Cedar-Rapids-Iowa/Intermediate-Cyber-Security-Engineer_R20062233 ## About the Role Security is foundational to Transamerica, and we are growing our Information Security Team. We are looking for a multi-talented Intermediate Cyber Security Engineer. We are a fast-paced energetic team dedicated to making our enterprise more secure. So, if you have at least 1-3 years cyber experience, are an exceptional team player, willing to learn, and have knowledge in the application security space; come join our industry leading, global organization., * Bachelor's degree with emphasis in Computer Science, MIS, Auditing, Finance, or Business or equivalent education and experience required. 1 to 3 years of cyber security engineering work experience required. * Experience with one or more application security domain areas, including secure coding, security within the SDLC, application threat modeling, static and dynamic application security testing, software composition analysis, API security, web application firewalls (WAF), container security, vulnerability validation and remediation, application data protection, and alignment with applicable security standards and control frameworks. * Knowledge of applicable control frameworks such as: NIST CSF * Certifications desirable - OSCP, CISSP, CEH and/or CompTIA Security+/CySA/CASP+. * Strong foundation in core security technologies and advanced persistent threat (APT) controls, including SIEM, endpoint security platforms, firewalls, intrusion detection and prevention systems, data loss prevention, syslog servers, vulnerability scanners, web application firewalls, threat intelligence feeds, digital forensics, and application allowlisting. * Security in Software Development Life Cycle (SDLC) * 2-3 years of related work experience with application security * Working knowledge of one or more vulnerability management systems including Rapid7, ServiceNow Vulnerability Response (VR), Synk, CrowdStrike, etc. * Hands-on experience with application security, dynamic scanning, static scanning, and container security * Experience with systems such as ServiceNow, JIRA or equivalent * Ability to fluently read, write and speak English * Strong background in creating and automating vulnerability reports and dashboards including trending and graphing data, * Certifications desirable - OSCP, CISSP, CEH and/or CompTIA Security+/CySA/CASP+. * Experience in Insurance, Financial Services or other Fin-Tech Industries * Preference given to candidates with Transamerica products, systems and/or domain knowledge, Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time. ## Description Enterprise Technology is a global organization within Transamerica. We provide dedicated application support to Transamerica, and we bring all of Aegon's business units together through the use of technology. We provide the backbone - the infrastructure - for how everything works. We're creating the company's AI environment, building a flexible 'cloud experience' for internal hosting services, designing frameworks for data governance and management, and ensuring the security and stability of the company's technology. In short, we enable the business units to move more quickly and deliver to our clients in the best possible way. Whether customers are interested in insurance products or annuities or financial services, we're here to ensure they don't have to worry whether their information is safe. The people we employ are incredibly diverse, both in terms of backgrounds and skill sets. There are over 1000 of us representing a dozen or so nationalities and located in the UK, the US, the Netherlands, Hungary, Spain, and Hong Kong. Our global teams are comprised of experts in areas such as application development, information security, infrastructure services, data & analytics, risk & controls, procurement, program management, and architecture. With the breadth of functions within Enterprise Technology, individuals can pursue a wide variety of careers, and we have a focus on supporting employees' development. The most important quality in the people who join us is curiosity. A lot of what we do is problem solving, requiring colleagues to take what they know and apply it to new situations. We have many mature processes, but we're always looking for opportunities to improve, so we want people who are naturally inquisitive and confident enough to challenge the way we do things. Technology is constantly, rapidly changing - we need you to help us continue to change with it., * Identify weaknesses and vulnerabilities in relation to industry best practices and provide support to the application of security frameworks and regulatory standards such as NIST CFS * Gather and analyze data, draft reports, and create departmental, project, key indicator, and dashboard materials. Build strong working relationships with peers and key stakeholders, including business partners, legal, internal audit, risk, and technology specialists. * Review security vulnerabilities across diverse technologies and rapid changing environments including on premise and cloud infrastructure. Supports the analysis, implementation, and management of administrative, technical and physical safeguards to ensure the privacy and protection of company information and supporting technology and services * Support application security activities by assisting with secure SDLC practices, static and dynamic application security testing, vulnerability validation, remediation tracking, and coordination with development and technology teams to reduce application risk. * Assist in the research, development and implementation of information security initiatives, such as policy, program, process, procedural and technology improvements and solutions * Enhance and automate the vulnerability management lifecycle, including intake, prioritization, remediation tracking, reporting, and continuous process improvement. * Serve as an application security ambassador by promoting secure coding practices, helping employees and contractors understand their role in reducing application risk, and providing practical guidance on secure SDLC requirements, vulnerability identification, testing expectations, remediation activities, and safe handling of application data. ## Related Videos - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)