Application Security - Design Reviews Threat Modelling
J
JobgetherSecurity & IT
India, Availability to work until 11:00 AM Pacific Standard Time (PST).Full-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years
- Required Skills
- AWS
Requirements
- 5+ years of experience in Application Security, Product Security, Security Engineering, or a related technical field.
- Availability to work until 11:00 AM Pacific Standard Time (PST).
- Strong knowledge of application security principles, including OWASP Top 10, API security, authentication, authorization, secrets management, and cryptography.
- Proven experience conducting security reviews, threat modeling exercises, architecture assessments, or application security evaluations.
- Strong understanding of modern application architectures, cloud environments, and secure software development practices.
- Ability to read and understand source code in one or more modern programming languages.
- Experience developing scripts, tools, or automation to improve security and engineering workflows.
- Strong technical writing skills with experience creating security documentation, guidelines, and recommendations.
- Ability to assess security risks, prioritize vulnerabilities, and provide practical recommendations aligned with business and technical objectives.
Responsibilities
- Conduct security design reviews and threat modeling exercises for new products, services, applications, and platform capabilities.
- Collaborate with engineering and product teams to identify security risks and recommend practical mitigation strategies throughout the development lifecycle.
- Review application architectures, technical designs, data flows, deployment models, and system configurations to identify vulnerabilities and recommend secure design patterns.
- Act as a security consultant for engineering teams by providing guidance on secure implementation practices, application security principles, and risk management.
- Partner with teams developing AI and machine learning features to identify emerging security risks and support secure implementation approaches.
- Maintain and improve security standards, reference architectures, documentation, and internal security guidance.
- Develop and enhance automation, tooling, and processes that improve the efficiency and scalability of threat modeling and security review activities.
View Full Description & ApplyYou'll be redirected to the employer's site