Apply

Application Security Engineer

Posted 11 days agoViewed

View full description

💎 Seniority level: Senior, 3+ years

📍 Location: United States

💸 Salary: 110400.0 - 138000.0 USD per year

🔍 Industry: SaaS (Software as a Service)

🏢 Company: G-P

🗣️ Languages: English

⏳ Experience: 3+ years

🪄 Skills: AWSDockerPythonGoREST APITerraformScripting

Requirements:
  • Education: BS (or higher) in Computer Science or related field, or equivalent work experience.
  • Experience: 3+ years in application security.
  • Excellent communication skills and business acumen.
  • Proficiency in coding/scripting languages (e.g., Python, Go).
  • Web application penetration testing experience.
  • AWS security and engineering knowledge.
  • Experience with developing or testing web application technologies.
  • Nice to have: security certifications, experience with Linux, Docker, Terraform.
Responsibilities:
  • Support the implementation of G-P’s established application security program.
  • Assess the company's web technologies using enterprise-grade tools.
  • Coordinate remediation efforts with engineering teams.
  • Participate in threat modeling exercises with engineering team members.
  • Triage SCA/SAST/DAST/CSPM findings.
  • Support vulnerability management efforts for networks and infrastructure.
  • Perform security assessments, reviews, and internal penetration tests.
  • Develop scripts and tools to automate repetitive security tasks.
Apply

Related Jobs

Apply

📍 US, Europe

🧭 Full-Time

💸 175000.0 - 210000.0 USD per year

🔍 Cloud computing, AI

🏢 Company: CoreWeave💰 $642,000,000 Secondary Market about 1 year agoCloud ComputingMachine LearningInformation TechnologyCloud Infrastructure

  • Bachelor’s degree in Computer Science or a related field or equivalent experience.
  • 5 years of experience in Application Security engineering and vulnerability testing.
  • Strong knowledge of authorization, authentication, and encryption protocols.
  • Experience with development teams delivering commercial software.
  • Familiarity with threat modeling and system security vulnerabilities.
  • Scripting skills in languages such as Perl or Python.
  • Proficiency in security engineering methodologies including static and dynamic code analysis.

  • Provide security consultations with engineering peers.
  • Conduct architecture reviews of new and existing code changes.
  • Perform full and complete threat models as part of the permit process.
  • Configure and manage automated and manual code reviews.
  • Lead ongoing security testing, audits, and risk analysis.
  • Engage in security incident response, risk documentation, and remediation verification.

PythonSQLCybersecurityKubernetesCommunication SkillsCollaborationCI/CDLinuxWritten communicationDocumentation

Posted about 1 month ago
Apply
Apply
🔥 Application Security Engineer
Posted about 2 months ago

📍 US

🧭 Full-Time

💸 150000.0 - 190000.0 USD per year

🔍 Healthcare

🏢 Company: Aya Healthcare👥 5001-10000HospitalityHealth CareTravel

  • Bachelor’s degree preferred, and/or equivalent experience.
  • 5+ years’ experience in software, product, or application security.
  • Familiarity with programming languages like C#, PHP, Python, and Java.
  • Experience with Agile Development Methodologies.
  • Understanding of OWASP Top 10 Risks and secure software development lifecycle processes.
  • Experience in software threat modeling, such as STRIDE.
  • Self-starter needing minimal supervision.
  • Ability to work in a fast-paced environment.
  • Experience in Azure Environment preferred.
  • Industry certifications like Security+, GWAPT, OSCP, CISSP preferred.

  • Maintain relationships with software engineers, scrum masters, architects, and security teams to incorporate security into the SDLC.
  • Participate in architecture design reviews.
  • Conduct vulnerability assessments and software composition analysis.
  • Collaborate with teams to fix vulnerabilities.
  • Develop and maintain security assessment procedures and guidelines.
  • Create security best practices as standards.
  • Stay informed on emerging threats.
  • Assist with training of Security Champions, when required.

PHPPythonAgileJavaC#Azure

Posted about 2 months ago
Apply