Fiserv logo
FiservPosted 1 month ago

Lead Software Engineer

On-siteAlpharetta, Georgia, United States

Full TimeSenior LevelLarge

Job Summary

Lead backend development for Digital Onboarding applications, APIs, and customer workflows using Java, Spring Boot, REST APIs, and microservices on AWS. Design, develop, test, and maintain scalable services while ensuring code is secure, maintainable, and aligned with enterprise standards. Proactively identify and remediate vulnerabilities related to OWASP Top 10, HackerOne, WAF, and penetration testing findings through code changes, dependency upgrades, and platform actions. Participate across the full software development lifecycle, including requirements analysis, solution design, code reviews, deployment, and production support. Troubleshoot complex defects, performance issues, and integration failures while implementing automated tests to reduce regression risk. Mentor engineers, drive technical direction, and collaborate with cross-functional teams to resolve security findings and improve delivery execution.

Required Qualifications

  • 7+ years of experience designing, developing, and supporting enterprise software applications
  • Strong hands-on experience with Java, Spring Boot, REST APIs, microservices, and backend application development
  • Strong experience building secure backend applications with a focus on vulnerability-free code, secure coding practices, and application security remediation
  • Experience remediating findings related to OWASP Top 10, HackerOne, penetration testing, static application security testing, dynamic application security testing, dependency vulnerabilities, and secure configuration issues
  • Experience with AWS services and cloud-native application development
  • Experience with AWS capabilities such as ECS/EKS, Lambda, S3, API Gateway, CloudWatch, IAM, Secrets Manager, or related services
  • Strong understanding of API design, distributed systems, service integration, authorization, authentication, secrets handling, input validation, error handling, logging, observability, and production support
  • Experience with relational databases, SQL, persistence frameworks such as JPA/Hibernate, and application-level data modeling
  • Experience with Git-based workflows, Maven or Gradle, CI/CD pipelines, automated builds, release processes, and deployment automation
  • Experience writing unit tests and integration tests using JUnit, Mockito, or similar frameworks
  • Practical understanding of secure software delivery, including code reviews, dependency management, vulnerability scanning, remediation tracking, and retesting
  • Strong debugging, troubleshooting, and problem-solving skills in complex application environments
  • Experience working in Agile teams and collaborating with product owners, QA, architecture, DevOps, AppSec, and business stakeholders
  • Ability to mentor engineers, influence technical direction, and communicate technical concepts clearly to both technical and non-technical stakeholders
  • Bachelor's degree in Computer Science, Information Technology, Information Systems, or a related field (or equivalent industry experience)
  • Valid and unrestricted U.S. work authorization
  • On-site Monday through Friday availability
  • Experience supporting Digital Onboarding, account opening, customer acquisition, merchant onboarding, or similar customer-facing digital platforms
  • Hands-on experience with Python for automation, scripting, API development, data processing, or platform utilities
  • Exposure to front-end development using React, Next.js, JavaScript, TypeScript, HTML, and CSS
  • Experience contributing to full-stack delivery across backend APIs and front-end application experiences
  • Experience with AWS Glue, event-driven processing, asynchronous service communication, or data integration patterns
  • Experience with containerized applications, Docker, Kubernetes, infrastructure-as-code, or cloud deployment automation
  • Experience with observability tools, centralized logging, distributed tracing, dashboards, alerting, and production monitoring
  • Experience with Fortify, SonarQube, Snyk, Black Duck, Checkmarx, WebInspect, Apiiro, or comparable security and code quality tooling
  • Experience working through vulnerability remediation processes involving ServiceNow VITs, WAF teams, AppSec, Cyber Risk, or penetration testing teams
  • Experience with Agentic SDLC, AI-assisted coding tools, automated testing support, or developer productivity improvements
  • Experience in financial services, fintech, payments, merchant services, or regulated enterprise technology environments

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce