Senior Security Engineer
New
J
JobgetherTechnology
Based in United StatesFull-TimeSenior
Salary160,000 - 188,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 7+ years
- Required Skills
- CI/CDSoftware Engineering
Requirements
- 7+ years of hands-on software engineering experience with a strong technical foundation.
- Proven experience in application security, including threat modeling, secure code reviews, and integrating security into software development processes.
- Experience securing cloud environments such as AWS, GCP, or Azure, including identity management, networking, and infrastructure security.
- Ability to operate at both strategic and tactical levels by defining security direction while actively building and implementing solutions.
- Strong understanding of secure software development practices, vulnerability management, and security architecture principles.
- Experience implementing security tooling such as SAST, DAST, SCA, SIEM, or vulnerability management platforms.
- Strong communication skills with the ability to translate technical security concepts into clear recommendations for different audiences.
- Experience working collaboratively with engineering, product, legal, and operational teams.
- Familiarity with compliance frameworks such as SOC 2 or ISO 27001.
- Experience building security programs within startup, scale-up, or high-growth environments is preferred.
- Relevant security certifications such as CISSP, CCSP, CSSLP, or OSCP are a plus.
Responsibilities
- Define and execute the security strategy, roadmap, and initiatives to continuously improve overall security posture.
- Act as a security subject matter expert, advising engineering, product, IT, and legal teams on best practices and risk management.
- Lead application security efforts, including threat modeling, secure architecture reviews, code reviews, and secure software development lifecycle improvements.
- Establish and improve secure coding standards, vulnerability management processes, and security engineering practices.
- Implement and maintain security tooling such as SAST, DAST, SCA, vulnerability scanning, and related security automation solutions.
- Build and maintain security tools, automation workflows, and infrastructure-as-code solutions to improve operational security.
- Implement security controls across applications, APIs, and infrastructure environments.
- Partner with engineers to improve authentication, authorization, encryption, and data protection capabilities.
- Strengthen cloud security practices, including identity and access management, networking, secrets management, logging, and monitoring.
- Integrate security controls into CI/CD pipelines and help create automated security checks throughout the development process.
View Full Description & ApplyYou'll be redirected to the employer's site