Назад
Company hidden
3 дня назад

Secure Software Engineer (Application Security)

100 000 - 150 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Secure Software Engineer (Application Security): Embedding security throughout the software development lifecycle by designing secure systems, reviewing code, identifying vulnerabilities, and integrating security tooling with an accent on application security, cloud controls, and secure software engineering. Focus on reducing production risk, performing offensive and defensive security work, and automating security improvements across engineering teams.

Location: 100% remote within the United States; the posting lists Plymouth, MN.

Salary: $100,000–$150,000 annually.

Company

hirify.global is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States.

What you will do

  • Embed application security throughout the software development lifecycle.
  • Partner with engineering teams to design secure systems and reduce production risk.
  • Identify vulnerabilities through code review and offensive and defensive security practices.
  • Integrate SAST, DAST, SCA, and other security tooling into CI/CD pipelines.
  • Improve authentication, authorization, cryptographic controls, and cloud security.
  • Communicate security risks and solutions to technical and non-technical stakeholders.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • At least 5 years of application security or security engineering experience; the posting also specifies 6+ years of experience.
  • Strong knowledge of OWASP Top 10, common vulnerability classes, exploit patterns, authentication, authorization, and cryptographic primitives.
  • Hands-on code review experience across at least two major programming languages.
  • Experience with SAST, DAST, SCA, CI/CD-integrated security tooling, cloud security, and infrastructure controls.
  • Strong communication skills, programming experience for tooling and automation, and experience working with Agile engineering teams.

Nice to have

  • OSCP, OSCE, GWAPT, CISSP, or similar industry certification.
  • Offensive security tooling, red-team operations, bug bounty, public CVE, or open-source security experience.
  • Familiarity with AI/LLM application security.
  • Experience in regulated industries with strict compliance requirements.

Culture & Benefits

  • Full-time direct W2 employment.
  • Fully remote work within the United States.
  • Career growth within an established technology consulting and software development organization.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →