Application Product Security Engineer
New
J
JobgetherSoftware Security
Based in the United StatesFull-TimeMiddle
Salary$130,000–$170,000, depending on experience and location
Apply NowOpens the employer's application page
Job Details
- Experience
- 2–4 years
- Required Skills
- PythonJavascriptTypeScriptGoCI/CD
Requirements
- 2–4 years of experience in application security, product security, software engineering with security responsibilities, or a related role.
- Strong understanding of common application vulnerabilities, including OWASP Top 10, authentication/authorization issues, and injection vulnerabilities.
- Experience with threat modeling and secure architecture reviews.
- Hands-on experience supporting security incidents, including detection, investigation, and remediation.
- Ability to read and write code in languages such as Python, TypeScript/JavaScript, or Go.
- Experience reviewing application code and identifying security weaknesses.
- Familiarity with application security tooling such as SAST, dependency scanners, and CI/CD security integrations.
- Strong communication and collaboration skills for building relationships with engineering teams.
- Ability to work independently and manage changing priorities.
- Strong problem-solving skills and a proactive approach to security.
Responsibilities
- Partner with product and engineering teams throughout the product lifecycle to identify security risks and implement secure solutions.
- Lead threat modeling activities and secure design reviews for new features, products, and architectural changes.
- Conduct security-focused code reviews and support engineers in remediating vulnerabilities.
- Build, maintain, and improve application security tooling, including static analysis, dependency scanning, and secrets detection.
- Participate in security incident response activities, including investigation, containment, and remediation.
- Review and prioritize findings from vulnerability assessments, penetration tests, and security scans.
- Develop security guidelines, reusable patterns, and training materials for engineering teams.
- Support broader security initiatives, including cloud security, customer security assessments, and internal enhancements.
- Evaluate emerging security risks and technologies to improve application protection strategies.
- Collaborate with cross-functional teams to balance security requirements with product goals and velocity.
View Full Description & ApplyYou'll be redirected to the employer's site