Job Description
WHAT IS BOX?Â
Box is the market leader for Cloud Content Management. Our mission is to power how the world works together. Box is partnering with enterprise organizations to accelerate their digital transformation by creating a single platform for secure content management, collaboration and workflow. We have an amazing opportunity to further establish ourselves as leaders in the space, and we need strong advocates to help us achieve that goal.Â
By joining Box, you will have the unique opportunity to help capture a majority of this developing market and define what content management looks like for the digital enterprise. Today, Box powers over 100,000 businesses, including 69% of the Fortune 500 who trust Box to manage their content in the cloud.Â
WHY BOX NEEDS YOU
Box is looking for a thought leader to build secure software development practices that can be automated and are scalable.
The ideal candidate is passionate to roll up their sleeves to proactively design software securely within the Secure Software Development Lifecycle (SDLC) and has a strong people leadership mindset.
WHAT YOU'LL DOÂ
- Drive technical excellence and implementation of secure engineering practices such as design & code reviews, threat modeling, penetration testing, continuous integration, and security focused behavior-driven development.
- Enhance program strategy for API security, mergers and acquisitions evaluations, and open source security
- Define strategy and drive implementation of integrated secure practices within software development paved path
- Lead and develop a highly skilled team of security engineers to deliver measurable outcomes
- Develop metrics and analysis that identifies the key performance drivers, strategies, and opportunities for enhancements
- Provide guidance and training on secure coding practices
- Define and own OKRs that support secure application design strategy
- Partner with software engineering and product management leaders to define and implement secure development practices and controls
WHO YOU AREÂ
- You understand secure engineering best practices, can articulate problem statements and propose solutions to both technically savvy and non-technical audiences
- You are either a passionate security minded software engineer who has been part of building high quality applications and services, or you are an application security engineer who cares about secure software development
- You have a growth mindset, push yourself towards excellence and focus on continuous functional improvements
- You are a curious person who looks at problem statements and can clearly propose actionable solutions
- You have a passion for cyber security demonstrated through participation/leadership in conferences, webinars, Capture the Flag (CTF), TryHackMe, Bug Bounty, Submission of CVEs and/or personal projects
- Strong understanding of past, current, and emerging security exploits
- Remote friendly
Requirements
- 5+ years of experience with application security, software development, defining security architecture, and implementing software security solutions
- 5+ years of experience with triaging vulnerabilities, security testing tools, defining security controls and software penetration testing
- 3+ years of experience with leading technical teams in an application security function
- Experience working with complex and diverse applications tech stacks
- Knowledge of OWASP Top 10, Dynamic Application Security Testing (DAST), Static Application Security Testing (SAST), and Threat Modeling tools
- Experience with multiple languages such as Java, React, Node JS, PHP, Scala, C and/or Python
- Understand how to detect and prioritize vulnerabilities in Front End, API's, Microservices, Mobile and Containers
- Familiar with common build/automation tooling: ex. Jenkins, GIT
Visit this webpage to check out all of our exciting healthcare benefits: https://join.collectivehealth.com/box
For all other benefits, please check out: Box Benefits + PerksÂ
Date Posted
01/05/2023
Views
1
Similar Jobs
Senior Design Manager (Infrastructure) - Canonical
Views in the last 30 days - 0
Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...
View DetailsSenior Product Designer - Org & Security - Typeform
Views in the last 30 days - 0
This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...
View DetailsProduct Manager Wallet SDKs - Startale
Views in the last 30 days - 0
The text describes a job alert system where applicants must mention UNSELFISH and use a specific tag to demonstrate they read the post It explains the...
View DetailsExecutive Director Patient Advocacy - Kyverna Therapeutics
Views in the last 30 days - 0
Kyverna Therapeutics is seeking an Executive Director for Patient Advocacy to lead initiatives in autoimmune disease treatment The role involves build...
View DetailsMedical Affairs Writer Contract - Kyverna Therapeutics
Views in the last 30 days - 0
Kyverna Therapeutics seeks a Medical Affairs Writer to develop scientific publications and communications for cell therapy innovations The role requir...
View DetailsRecovery Analyst Underpayments - Trend Health Partners
Views in the last 30 days - 0
TREND Health Partners seeks an Underpayment Recovery Analyst to optimize client reimbursement through collaboration and detailed claim analysis The ro...
View Details