TL;DR
Senior Application Security Engineer (Cybersecurity): Ensuring security and integrity of services by embedding security principles into the SDLC, performing security code reviews, vulnerability assessments, and penetration tests. Focus on integrating security tools, threat modeling, incident response, and fostering a strong security culture.
Location: Remote - US or Canada
Salary: $140000–$170000
Company
Leader in fraud prevention and AML compliance using AI, machine learning, and device intelligence, serving over 300 banks, retailers, and fintechs worldwide.
What you will do
- Perform security code reviews, vulnerability assessments, and penetration tests on web, mobile applications, and APIs.
- Integrate and manage security tools within CI/CD pipelines including SAST, DAST, and SCA.
- Lead threat modeling exercises for new features and services.
- Validate and prioritize vulnerabilities from automated tools, manual testing, and bug bounty programs.
- Collaborate with engineering and product teams to design secure solutions and provide remediation guidance.
- Develop security standards, training, and automation scripts to enhance security operations.
Requirements
- Must have 7+ years experience in application, product, or offensive security roles.
- Deep understanding of OWASP Top 10 vulnerabilities and mitigation techniques.
- Proficiency in reading and auditing code in Python, Go, or JavaScript/TypeScript.
- Hands-on experience with SAST, DAST, IAST, and SCA security tools.
- Strong knowledge of cloud security principles (GCP & AWS) and containerized services (Docker, Kubernetes).
- Excellent communication skills to interact with technical and non-technical stakeholders.
Culture & Benefits
- Remote-first culture with flexibility to work from anywhere in US or Canada.
- Generous cash compensation and equity with early exercise options.
- Health, dental, and vision insurance coverage for employees and dependents (US and Canada specific).
- 401k / RRSP matching (4%) and various stipends for home office, meals, social meet-ups, health, and learning.
- MacBook Pro delivered to your door.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →