Назад
Company hidden
3 часа назад

Senior Application Security Engineer (Cybersecurity)

155 000 - 175 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Application Security Engineer (Cybersecurity): Designing, coding, and deploying automated security controls, services, and frameworks to prevent vulnerabilities at scale with an accent on application security tools, threat modeling, and code reviews. Focus on building and operating security infrastructure, conducting penetration tests, and mentoring product engineers on secure coding practices.

Location: Hybrid (San Francisco, United States) preferred, Remote within the US also accepted.

Salary: $155,000.00 - $175,000.00 Annually

Company

hirify.global stops financial crime by leveraging data to deliver justice and safety in the world, offering no-code infrastructure to model, detect, and remediate suspicious activity.

What you will do

  • Design, code, and deploy automated security controls, services, and frameworks.
  • Build and operate tools and infrastructure for the application security program (SAST, DAST, SCA).
  • Perform threat modeling, security architecture reviews, and in-depth code reviews (Python/TypeScript).
  • Conduct penetration tests and vulnerability assessments against applications and APIs.
  • Develop custom tools and automation for security operations and incident response.
  • Mentor and educate product engineers on secure coding best practices.

Requirements

  • 4+ years of hands-on experience in a software engineering or application security role.
  • Expert-level proficiency in Python; professional experience with Go or TypeScript is a plus.
  • Deep, hands-on knowledge of common application vulnerabilities (OWASP Top 10) and mitigation techniques.
  • Proven experience integrating and operating security tools (SAST, DAST, SCA).
  • Experience conducting manual penetration tests and vulnerability assessments.
  • Hands-on experience securing public cloud environments (AWS or GCP).
  • Basic proficiency with Infrastructure as Code (e.g., Terraform) and containerization technologies (e.g., Docker, ECS, or Kubernetes).

Culture & Benefits

  • Competitive salary and pre-IPO stock options.
  • 100% company-paid medical, dental and vision insurance, optional HSA and FSA accounts.
  • Unlimited paid time off, generous leave programs, and 401(k).
  • Annual Learning & Development stipend and one-time Home office set-up stipend.
  • Wellness Bundle (One Medical, Headspace, Gympass, Carrot Fertility) and commuter benefits.
  • Happy hours, team-building events, fully stocked kitchen, and lunch/dinner provided in SF office.

Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →