Apply

Staff Security Engineer

Posted 2024-11-14

View full description

💎 Seniority level: Staff, 5+ years

📍 Location: U.S., PT, MT, CT, ET

🔍 Industry: Blockchain-enabled investment products and services

🗣️ Languages: Technical and non-technical, verbal and written

⏳ Experience: 5+ years

🪄 Skills: BlockchainCybersecurityGoRustCommunication SkillsCI/CDCompliance

Requirements:
  • Based in PT, MT, CT, or ET time zones.
  • Excellent technical and non-technical communication skills, verbal and written.
  • Proven experience in risk assessments, vulnerability assessments, and penetration testing.
  • 5+ years of securing modern software systems with a focus on blockchain technology.
  • Deep expertise in securing blockchain-based applications and infrastructure.
Responsibilities:
  • Product Security: Partner with product and engineering teams to integrate security reviews, develop tooling, monitor for threats, and manage bug bounty programs.
  • Organization Level Security: Ensure compliance with regulations, safeguard data, and enhance fraud detection.
  • Product Risk Management: Lead the product risk program, implementing and testing incident response protocols.
  • Security Monitoring And Reporting: Oversee monitoring for risks and report security incidents.
Apply

Related Jobs

Apply

📍 United States

  • Technical expertise in application security.
  • Ability to collaborate effectively with different teams.

  • Designing, implementing, and maintaining security services that support the business.
  • Employing data and automation at scale to enhance security.
  • Partnering cross-functionally across various teams to drive impactful outcomes.

LeadershipCross-functional Team Leadership

Posted 2024-11-07
Apply
Apply

📍 United States

🧭 Full-Time

💸 $140,000 - $210,000 per year

🔍 Open Source Software Security

🏢 Company: Chainguard

  • Bachelor’s of Science degree in Computer Science, Engineering, Computer Security, or Information Systems.
  • 5+ years of experience in software development, security, or a relevant field.
  • Experience securing Cloud-native environments.
  • Experience with endpoint detection and response.
  • Familiarity with macOS or Linux security controls.
  • Familiarity with security frameworks such as SOC 2, ISO 27001, and NIST.
  • Ability to craft automation with languages such as Go, Python, or Shell.
  • Experience with red-teaming or open-source software development.
  • Strong interpersonal and communication skills.
  • Ability to work independently across multiple simultaneous work streams.

  • Design and deploy innovative technical controls to detect and prevent security incidents.
  • Collaborate across teams to integrate security best practices into products and processes.
  • Keep Chainguard compliant across multiple security frameworks.
  • Fill out security questionnaires for prospective customers.
  • Lead incident response efforts, including tabletop exercises.
  • Conduct security assessments and penetration tests.
  • Maintain detection and response automation.
  • Research the latest security threats.

Software DevelopmentCommunication SkillsCollaboration

Posted 2024-10-16
Apply
Apply

🧭 Full-Time

💸 137000 - 270000 USD per year

🔍 Database and Developer Tools

🏢 Company: MongoDB👥 1001-5000💰 $ Post-IPO Equity on 2018-03-06DatabaseOpen SourceCloud ComputingSaaSSoftware

  • 8+ years of experience with application security testing and analysis tools.
  • Relevant software development experience to understand how software is designed and built.
  • Expertise in the software development lifecycle and supply chain.
  • Experience with threat modeling, risk analysis, and control design.
  • Advanced understanding of vulnerability exploitation and remediation.
  • Familiarity with programming languages such as C++, C, Rust, Go, Python, Java.
  • Experience with cloud native development pipelines and tools like Docker and Kubernetes.
  • Ability to work independently and identify solutions.
  • Demonstrated collaborative skills with senior engineering leaders.

  • Collaborate with MongoDB Infosec and application security teams to create a threat matrix focused on SDLC processes.
  • Provide architectural guidance and implement security tooling and controls across developer pipelines.
  • Drive SDLC compliance through implementation and automation of controls.
  • Work with engineering teams to build scalable security solutions.
  • Engage in security investigations and analyze emerging threats.
  • Develop strategies to enhance SDLC security posture.
  • Serve as a technical authority and manage large-scale security projects.
  • Stay updated on software security trends and compliance requirements.
  • Collaborate with Legal, Privacy, and Internal Audit for compliance.

DockerPythonSoftware DevelopmentCybersecurityJavaKubernetesC (Programming language)Product DevelopmentGoRust

Posted 2024-07-11
Apply