Principal Security Architect

Unqork · Remote

Company

Unqork

Location

Remote

Type

Full Time

Job Description

Unqork is a new way to build enterprise software: it's a purely visual, drag-and-drop no-code platform designed to support the scale, complexity and security that enterprise applications require. Our customers are leaders in insurance, financial services, healthcare and the public sector, and they use Unqork to build custom software faster, with higher quality and at lower costs than code-based approaches. Founded in 2017, Unqork reached unicorn status in 2020, with a valuation of $2B. Unqork has been named one of the Best Startup Employers by Forbes, Best Places to Work by Built In and one of LinkedIn's Top Startups.

What you'll do:

  • You will report to Head of Product Security.
  • Commit to your team's Diversity, Equity and Inclusion goals created in our DEI Unqork Application
  • Integrate with engineering camps and help Unqork engineers by developing secure architecture patterns, best practices, and guard rails.
  • You will assess the architecture of the Unqork platform and supporting components and infrastructure by evaluating business strategies and requirements while evaluating security considerations of risks and mitigating controls.
  • You will build and document platform and component security documentation (security UML sequence diagrams, threat models, component knowledge bases) to build the 'state of security' for the Unqork platform.
  • Influence the direction of the landscape of product security through development and collaboration with engineering and security leadership.
  • You will mentor others in security concepts and practices and provide expertise and stewardship to foster security champions within the engineering teams to grow the culture of security.

What you'll bring:

  • Solid foundation of secure and modern SDLC practices (architecture review, attack surface analysis and threat modeling, vulnerability analysis).
  • Knowledge of microservice architecture, APIs, and cloud services (AWS, Azure, GCP).
  • Understanding of MEAN/MERN stacks (MongoDB, Express, Angular/React, and NodeJS) and their security implications as it relates to the Unqork platform.
  • Knowledge of Infrastructure as Code (IaC) practices (terraform, cloudformation).
  • Solid, real-world experience of container-based orchestration through Kubernetes.
  • Experience with web application security threats, exploits, prevention (NoSQL Injection, XSS, CSRF, SSRF, platform hardening, etc).
  • Knowledge of common security tools and practices; including static code analysis, dynamic application scanning, software composition analysis (SAST, DAST, SCA, or IAST).
  • Practical knowledge of cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc).
  • Working knowledge of data security and data privacy regulations of financial, health, governmental and international data. Experience operating in agile environments.

Benefits:

  • Work from home with a remote-first community
  • Unlimited PTO (and the encouragement to use it)
  • Student loan payback program
  • 100% employer-covered medical, dental, and vision options available to you and your dependents
  • Flexible Spending Account (FSA)
  • Monthly stipend toward your WFH setup, vacation, development and more
  • Employer-sponsored 401(k) with contribution match
  • Free Peloton membership through UHC
  • 16 weeks of Paid Parental Leave for all new parents

Unqork is an equal opportunity employer, and proud to be committed to diversity and inclusiveness. We will consider all qualified applicants without regard to race, color, nationality, gender, gender identity or expression, sexual orientation, religion, disability or age.

Apply Now

Date Posted

09/27/2022

Views

7

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Principal Cloud Architect: Pre-Sales - Myriad360

Views in the last 30 days - 0

This job description outlines a senior cloud architect role requiring Azure and GCP expertise focusing on secure cloud solutions The company emphasize...

View Details

Senior Product Designer - Org & Security - Typeform

Views in the last 30 days - 0

This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...

View Details

Senior Design Manager (Infrastructure) - Canonical

Views in the last 30 days - 0

Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...

View Details

Executive Director Patient Advocacy - Kyverna Therapeutics

Views in the last 30 days - 0

Kyverna Therapeutics is seeking an Executive Director for Patient Advocacy to lead initiatives in autoimmune disease treatment The role involves build...

View Details

Medical Affairs Writer Contract - Kyverna Therapeutics

Views in the last 30 days - 0

Kyverna Therapeutics seeks a Medical Affairs Writer to develop scientific publications and communications for cell therapy innovations The role requir...

View Details

Product Manager Wallet SDKs - Startale

Views in the last 30 days - 0

The text describes a job alert system where applicants must mention UNSELFISH and use a specific tag to demonstrate they read the post It explains the...

View Details