Job Description
Box is looking for a thought leader to lead the way for the expansion of the Application Security Engineering program at Box. The mission for the team is to proactively discover, to fix security vulnerabilities and to implement solutions that automate, scale and enhance objectivity. We’re looking for someone who is just as passionate about automating key areas of the Secure Software Development Lifecycle (sSDLC) as well as partnering with developers to securely build and fortify our applications. The key areas of focus for the AppSec Engineering program are: Secure Application Design, Tools/DevSecOps and Application Vulnerability Management.Â
- Propose solutions for secure application design, DevSecOps automation, tool optimization, application vulnerability management and strategies for risk reduction
- Help identify and validatebest-in-class security standards implementation
- Validate finding from security scanning tools and ideate data-driven enhancement strategies for dynamic (DAST), static (SAST), open source application security testing (SCA) and container security scanning including troubleshooting, and continuous process improvement
- Propose product feature enhancements to enhance security of our applications
- Maintain strong partnership with software engineering and product management teams
- Test, replicate and validate security vulnerabilities in applications
- You understand secure engineering best practices, can articulate problem statements and propose solutions to both technically savvy and non-technical audiences
- You are either a passionate security minded software engineer who has been part of building high quality applications and services, or you are an application security engineer who cares about secure software development
- You have a growth mindset, push yourself towards excellence and focus on continuous functional improvements
- You are a curious person who looks at problem statements and can clearly propose actionable solutions
- You have a passion for cyber security demonstrated through participation/leadership in conferences, webinars, Capture the Flag (CTF), TryHackMe, Bug Bounty, Submission of CVEs and/or personal projects
- Strong understanding of past, current, and emerging security exploits
- Visit this webpage to check out all of our exciting healthcare benefits: https://join.collectivehealth.com/box
- For all other benefits, please check out: Box Benefits + PerksÂ
Date Posted
09/21/2022
Views
6
Similar Jobs
Senior Product Designer - Org & Security - Typeform
Views in the last 30 days - 0
This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...
View DetailsSoftware Engineer Networking Software and Services - xAI
Views in the last 30 days - 0
The text describes xAIs mission to develop AI systems for understanding the universe and advancing human knowledge It outlines a role involving networ...
View DetailsAssociate Technical Support Engineer - Recharge
Views in the last 30 days - 0
Recharge is a subscription platform for innovative brands offering customer retention solutions They seek Technical Support roles with 247 coverage em...
View DetailsFull Stack Product Engineer - Jiga
Views in the last 30 days - 0
Jiga is a remotefriendly company focused on empowering engineers with trust autonomy and flexibility They emphasize simplicity ownership and impactful...
View DetailsSenior Design Manager (Infrastructure) - Canonical
Views in the last 30 days - 0
Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...
View DetailsExecutive Director Patient Advocacy - Kyverna Therapeutics
Views in the last 30 days - 0
Kyverna Therapeutics is seeking an Executive Director for Patient Advocacy to lead initiatives in autoimmune disease treatment The role involves build...
View Details