7 дней назад
Senior Application Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Application Security Engineer (Cybersecurity): Securing the applications and infrastructure powering Tripadvisor Experiences with an accent on encryption, secure APIs, identity management, threat modelling, and cloud security. Focus on designing application security controls, conducting code reviews and risk assessments, integrating SAST and DAST into development pipelines, and responding to security breaches.
Location: Oxford, United Kingdom; remote-friendly collaboration with the option to work onsite as often as required by the team.
Company
connects travelers with experiences, accommodations, restaurants, and other travel services through content, technology, and two-sided marketplaces.
What you will do
- Design and implement application security measures covering encryption, secure APIs, identity management, and secure software design.
- Conduct threat modelling, risk assessments, manual security assessments, and code reviews.
- Investigate security breaches, perform root cause analysis, and create corrective actions for vulnerabilities.
- Develop and enforce scalable application security policies across multiple engineering teams.
- Integrate security requirements into software development lifecycles and advise on security architecture for new features and systems.
- Mentor junior engineers and collaborate with engineering and product teams to improve security posture.
Requirements
- Extensive experience in application security, including secure coding, threat modelling, vulnerability assessments, and incident response.
- Hands-on experience with SAST and DAST tools and their integration into development pipelines.
- Strong knowledge of encryption, secure software design, identity management, and API security.
- Experience with cloud security, including AWS or Azure, and securing microservices architectures.
- Leadership, mentoring, communication, and cross-functional collaboration skills.
- 4+ years of experience as a Security Engineer or Application Security Analyst.
Nice to have
- Experience with GDPR, PCI-DSS, SOC 2, or similar regulatory frameworks.
- Security certifications such as OSCP, OSCE, or similar.
- Familiarity with current security tools and frameworks for identifying and mitigating vulnerabilities.
Culture & Benefits
- Flexible schedule and a remote-friendly approach to collaboration across a worldwide team.
- Health benefits, employee assistance programs, and donation matching.
- Tuition assistance, lifestyle benefits, travel perks, and employee referral awards.
- Culture focused on travelers, fast execution, experimentation, collaboration, and shared ownership.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Writer
12 дней назад
Security Engineer, Applications (AI Security)
8 дней назад
Application Security Engineer
70 - 90GBP
Samsara
11 дней назад
Staff Offensive Security Engineer
12 дней назад
Senior Application Security Engineer (AI)
Samsara
8 дней назад
Staff Application Security Engineer
Samsara
8 дней назад