Senior Application Security Engineer
Job Description
Your Role & Mission
The Senior Application Security Engineer will work with product and engineering to create a secure SDLC design security features and implement tools education and processes to reduce risk of security issues in the tech stack.
Responsibilities
-
Select or build tooling to help developers build secure code
-
Provide overall security architectural advice to Engineering and IT
-
Manage issues sourced from penetration tests and bug bounty programs
-
Participate in the security champions program
-
Help Product Engineering and IT incorporate security requirements into new products from inception
-
Assist in the creation and maintenance of Security Risk Models for new projects and existing systems
Skills & Competencies
-
5+ Years of Web Application Security experience
-
Strong experience with vulnerability management or penetration testing is required.
-
Extensive experience in conducting Architectural Reviews and Threat Models frequently is required.
-
Strong knowledge of common AppSec issues and tooling (e.g. SCA SAST DAST)
-
Strong Linux knowledge is a plus.
-
Experience with cloud services ideally GCP is plus.
-
Strong software development skills ideally in Ruby Node Secondary
-
Strong Communication and Influencing skills
-
Should have worked in SaaS environment.
-
Should have extensive knowledge of Open Redirect OAuth and CSRF.
-
Certifications: OSCP/OSWE/CEH: At least 1 Certification is a plus.
#LI-JM1
Date Posted
03/19/2024
Views
0
Similar Jobs
Senior Security Software Engineer (L5) - Security Platforms Engineering - Netflix
Views in the last 30 days - 0
Netflixs Security Platforms Engineering team is expanding in Poland seeking Security Software Engineers to build scalable security systems The role em...
View DetailsSecurity Engineer L4 - Application Security - Netflix
Views in the last 30 days - 0
Netflix seeks a Security Engineer L4 to enhance application security collaborate with teams and integrate security into development The role offers re...
View DetailsSenior Fullstack Engineer (FE-heavy) - Apollo.io
Views in the last 30 days - 0
This job description outlines a Senior Fullstack Engineer role at Apollo emphasizing work with large datasets building scalable systems and collaborat...
View DetailsSenior DevOps Engineer - InPost
Views in the last 30 days - 0
InPost is a leading European outofhome delivery company with a 5 billion market cap and 30000 employees seeking a Senior DevOps Engineer to optimize d...
View DetailsSolutions Support Engineer (L5) - Security, Privacy and Assurance - Netflix
Views in the last 30 days - 0
Netflixs Engineering Enablement Team focuses on improving developer workflows and platform efficiency The role requires expertise in security automati...
View DetailsSenior Data Engineer (Python/ML) - Finalsite
Views in the last 30 days - 0
Finalsite a global education tech company seeks a Senior Data Engineer with expertise in data pipelines and cloud infrastructure The role requires rem...
View Details