Apply

Senior Application Security Engineer

Posted 2024-10-25

View full description

πŸ’Ž Seniority level: Senior, 5+ years

πŸ“ Location: New York City, California, Colorado, Washington

πŸ’Έ Salary: 160000 - 200000 USD per year

πŸ” Industry: Visual collaboration software

πŸ—£οΈ Languages: English

⏳ Experience: 5+ years

πŸͺ„ Skills: Node.jsSoftware DevelopmentMongoDBRubyStrategyAngularReactLinux

Requirements:
  • 5+ years experience in a product security focused role.
  • Experience with product security at a multi-tenant SaaS company preferred.
  • Experience with vulnerability management.
  • Deep understanding of web application and mobile application security risks.
  • Deep understanding of Linux, Networking, Cryptography, and Cloud Architecture fundamentals.
  • Software development experience with Node.JS or other frameworks like React, Angular, etc. is preferred.
  • Familiarity with MongoDB, Node.JS, Ruby, and/or Python is preferred.
  • Excellent command of English, both written and verbal.
Responsibilities:
  • Performing security reviews of Mural product features and architecture.
  • Manage and operate our bug bounty program.
  • Lead penetration testing and manage any risks to remediation.
  • Implementation and operation of SAST and DAST technologies in the CI workflow.
  • Working closely with Engineering teams to track and manage product risks to remediation.
  • Working closely with Engineering to increase coverage of security testing.
  • Communicating and nurturing relationships with security researchers, customers, and other stakeholders.
  • Producing metrics to help track the health of our product vulnerability management strategy.
  • Educating and evangelizing secure coding best practices.
Apply

Related Jobs

Apply

πŸ“ United States

🧭 Full-Time

πŸ” Dating products

  • Technical background in security with experience in writing security-adjacent code.
  • Creative approaches in performing quick and impactful work.

  • Help ensure the highest standard of security for Match Group products.
  • Work spans across applications, infrastructure, devices, vendors, and anything else potentially at risk.

PythonSoftware DevelopmentCybersecurityCommunication SkillsAnalytical SkillsCollaborationProblem SolvingAttention to detailOrganizational skillsTime ManagementWritten communicationDocumentation

Posted 2024-11-13
Apply
Apply

πŸ“ US

🧭 Full-Time

πŸ’Έ 188000 - 230000 USD per year

πŸ” Mental healthcare technology

🏒 Company: Headway

  • 5+ years experience in security and/or software engineering roles with a focus on security-related projects.
  • Strong cross-functional collaboration skills.
  • Technical experience in building secure platforms and products.
  • Ability to tackle ambiguous problems in a fast-paced environment.
  • Drive innovation in security and privacy technologies.

  • Partner with Product and Engineering teams to implement secure features and conduct security reviews.
  • Develop and improve automated tooling for application security.
  • Define and build application guardrails for secure development.
  • Assist in ongoing security operations including incident response and vulnerability management.

AWSPythonKafkaTypeScriptFastAPIPostgresProduct designRedisReactSpark

Posted 2024-11-07
Apply
Apply

πŸ“ Australia, Austria, Bangladesh, Belgium, Brazil, Canada, Colombia, Costa Rica, Croatia, Czech Republic, Denmark, Egypt, Estonia, Finland, France, Germany, Ghana, Greece, India, Indonesia, Ireland, Israel, Italy, Kenya, Mexico, Netherlands, Nigeria, Peru, Poland, Singapore, South Africa, Spain, Sweden, Switzerland, Uganda, United Arab Emirates, United Kingdom, United States of America, Uruguay

🧭 Full-Time

πŸ’Έ 109047 - 169455 USD per year

πŸ” Nonprofit, Technology, Open Source

  • Two or more years of application security experience, with knowledge of OWASP Top Ten and CWE Top 25
  • Strong understanding of modern, object-oriented PHP development
  • In-depth experience developing or auditing JavaScript
  • Demonstrated ability to exploit and mitigate application-level vulnerabilities
  • Experience conducting software security reviews using source code inspection, manual testing, and automated scanning
  • Ability to explain security issues to non-technical audiences
  • Sensitivity to security challenges in large, international projects
  • Strong understanding of cryptography in web application security
  • Experience using Linux for web application development and deployment tasks
  • Ability to maintain focus while working remotely

  • Triage and remediate reported security issues
  • Review and deploy features developed by the Foundation and community members
  • Work with other development teams to ensure safe architectural and implementation choices
  • Test and evaluate software to find bugs before attackers do
  • Provide application security concept reviews and promote application security best practices
  • Provide support for application security incidents and operations

PHPSoftware DevelopmentBashCybersecurityJavaJavascript*NixOAuthC (Programming language)Linux

Posted 2024-08-30
Apply