717,054open jobs
42,670companies
101,691added this week
Browse all
Location
In office
Seniority
Middle · 3+ years exp

Confirmed on the employer's own hiring board on Sep 23, 2026. First seen by Alion on Sep 23, 2026.

Overview
Company
Impact
Profile match
Headquartered in New York City, New York, Bloomberg is a global leader in financial technology, data, and business media. The company is best known for its proprietary Bloomberg Terminal, which provides financial professionals with real-time market analytics, trading tools, and execution capabilities. Through its multi-platform news division, it delivers economic reporting, research, and analysis across television, digital, print, and audio outlets worldwide.

Our Team:

Bloomberg is building the world’s most trusted information network for financial professionals. We protect Bloomberg. We partner with internal departments to ensure the confidentiality, integrity, and availability of Bloomberg systems and the data we process. We aim to ensure that our clients see us as a trusted partner.

Our Chief Information Security Office (CISO) owns the technical aspects of this mission by ensuring Bloomberg products, systems, networks and commercial applications are built and maintained with security in mind.

What's the role?

We are seeking a Security Engineer to help ensure that Bloomberg software is built securely. You will be responsible for building and maintaining automated security capabilities across the software development lifecycle. You will also engage with engineering partners to provide remediation guidance and enhance security testing to deliver high-fidelity, actionable results.

As a member of the Security Enablement team, you will help provide automated security testing solutions for Bloomberg, including SAST, DAST, SCA, Secret searching and LLM-based assessments. Our team’s goal is to create preventative security capabilities that integrate into development pipelines and help detect issues early in the software development lifecycle.

An engineering skillset is required for this role. You will be responsible for prototyping new tools, integrating security testing tools and capabilities into the software development lifecycle, and developing custom security capabilities to deliver scalable testing solutions to our engineering teams. This role will routinely challenge your technical background and critical thinking. You will be expected to collaborate with different stakeholders in a fast-paced environment across many technology stacks and services.

We'll trust you to:

  • Partner with engineering stakeholders to understand Bloomberg’s development landscape and security needs. Develop automated security solutions that integrate into development pipelines.
  • Maintain and enhance existing security automation processes and security capabilities.
  • Understand and research technical details of core technology stacks and develop or enhance custom code analysis queries.
  • Communicate vulnerability landscape and work on mitigations with stakeholders across the business.
  • Actively monitor the latest news and trends in automated security capabilities, secure development, and AI-assisted security workflows.
  • Develop and enhance operational run books
  • Perform ad-hoc vulnerability discovery, including code review and static analysis for key engineering teams, applications and services.
  • Build or adopt new security capabilities to address issues at scale, such as Software Composition Analysis, Secret searching, and other automated security testing techniques.
  • Use LLMs and AI-assisted workflows as part of security assessments, vulnerability research, secure code review, developer enablement, and security automation.
  • Explore, evaluate, and build automation using modern LLM tooling and integration patterns, including custom skills, MCP servers, agentic workflows, retrieval-augmented workflows, and integrations with development and security tooling.
You'll need to have:
  • A strong core engineering background with a proven track record.
  • 3+ years of experience in software development.
  • Strong programming experience, with working knowledge of at least one of: C/C++, Python, JavaScript/TypeScript.
  • Knowledge and experience with DevOps and software used in development pipelines (e.g. Github, Jenkins).
  • Working knowledge of build systems, package managers, and development tooling (such as cmake, npm, maven, gradle etc).
  • A core understanding of common security vulnerabilities, such as OWASP Top 10 issues and language-specific vulnerabilities.
  • Experience using, evaluating, or building with LLMs or AI-assisted tooling in technical workflows.
  • Ability to combine technical knowledge with an understanding of core aspects of an information security program.
  • Motivation to keep up with latest trends and techniques in the information security community.
  • Excellent written and verbal communication skills.

We'd love to see (not required, but nice to have!):

  • Experience or familiarity with running, maintaining, and customizing static analysis security testing tools such as CodeQL and Semgrep.
  • Broad familiarity with programming language ecosystems and frameworks, particularly C++, JavaScript/TypeScript, Python, Java as well as well as modern systems and infrastructure languages such as Go and Rust
  • Experience using LLMs or AI-assisted tools for security assessments, vulnerability research, secure code review, developer enablement, or security automation.
  • Familiarity with LLM automation concepts and tooling, such as custom skills, MCP servers, agentic workflows, retrieval-augmented workflows, or integrations with development and security tooling.
  • Knowledge of open source software component management, Software Composition Analysis, and related security tools.
  • Knowledge of core concepts in public cloud providers such as AWS, GCP, and Azure. Familiarity with container orchestration technologies such as Kubernetes and Docker, and cloud deployment orchestration.
  • Technical information security certifications, such as CISSP, CSSLP, or SANS certifications.
  • Prior experience integrating security testing into DevOps pipelines.
If indicated, please note that years of experience are a guide; we will consider applications from all candidates who can demonstrate the skills necessary for the role.

Discover what makes Bloomberg unique - watch our podcast series for an inside look at our culture, values, and the people behind our success.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
717,054 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$25k – $53k per year (Estimated) • In office • Full-Time • 5+ years exp • India
JavaScript
TypeScript
SQL
C#
C++
C#
.NET
Frontend
Angular
DevOps
Rest API
Windows
Management
Agile
QA
Selenium
Apply
$53k – $127k per year (Estimated) • Remote • Full-Time • 7+ years exp • Bachelor's Degree • Spain
JavaScript
TypeScript
C#
DevOps
Rest API
Azure
Management
Agile
Apply
Senior Data Engineer 4 hours ago
$29k – $61k per year (Estimated) • In office • Full-Time • Bengaluru
Python
Java
SQL
C++
Scala
AI/ML
Hadoop
Spark
DevOps
CI/CD
Kubernetes
Analytics
ETL/ELT
Management
Agile
Apply
$21k – $32k per year (gross) • In office • Full-Time • Perm
Python
PHP
SQL
1C
PHP
Bitrix
AI/ML
Machine Learning
Analytics
Tableau
Power BI
QlikSense
ETL/ELT
Apply
$34k – $44k per year • Remote • Moscow
Python
SQL
Databases
Redis
OpenSearch
AI/ML
Hadoop
Spark
Machine Learning
DevOps
CI/CD
Kubernetes
Management
Confluence
Jira
Agile
Apply
$215k – $290k per year • In office
Python
SQL
Cybersecurity
DLP
Apply
$190k – $240k per year • In office • 10+ years exp • Bachelor's Degree
Apply
In office • 8+ years exp
Management
Agile
Apply
$110k – $190k per year • In office • 3+ years exp • Bachelor's Degree
Python
SQL
AI/ML
AI Agents
NLP
DevOps
Platform Engineering
Analytics
Tableau
Power BI
QlikSense
ETL/ELT
Apply
In office • 7+ years exp
Python
JavaScript
TypeScript
SQL
Databases
Redis
RabbitMQ
Frontend
Vue.js
Redux
React.js
DevOps
CI/CD
Linux
Analytics
ETL/ELT
Apply
See all jobs
This is one of many
717,054 more open roles from verified company boards, updated every day.