Назад
21 час назад

Security Engineer

120 000 - 200 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Страна
US
vacancy_detail.hirify_telegram_tooltipВакансия из Telegram канала -

Мэтч & Сопровод

Покажет вашу совместимость и напишет письмо

Описание вакансии

Security Engineer.

Location:
#New_York.
Salary: $120K – $200K.
Employer: Rain.

Responsibilities:
• Lead application security assessments, including vulnerability scanning, code reviews, and threat modeling with engineering teams
• Partner closely with product and development squads to drive remediation and help teams understand and resolve security findings efficiently
• Integrate and scale automated security tooling across CI/CD pipelines (SAST, DAST, SCA, IaC) to shift security left
• Develop and maintain application security standards, patterns, and guardrails that reduce risk and support rapid delivery
• Drive threat modeling and risk assessments for new features, APIs, and services
• Collaborate with Cloud & Infrastructure Security to align security controls across layers and support cloud-native security requirements
• Support incident response for application-level security events and contribute to root-cause analysis and future mitigation strategies
• Help build internal training and awareness programs to elevate secure coding and developer security literacy
• Track and surface key security metrics, trends, and continuous improvement insights to leadership

Requirements:
• 4–8+ years of experience in security engineering, application security, offensive security, or secure software development; strong track record of securing modern applications
• Hands-on experience with security tools such as Semgrep, Burp Suite, Snyk, Trivy, or similar for static, dynamic, and dependency security analysis
• Solid understanding of web, API, and mobile security vulnerabilities (e.g., OWASP Top 10, API Top 10)
• Experience driving or participating in threat modeling and secure design reviews
• Familiarity with cloud concepts and securing cloud workloads
• Collaborative mindset — you enjoy working closely with engineers to co-create practical security solutions
• Practical understanding of SDLC and integrating security into development workflows
• Ability to independently identify, prioritize, and drive remediation on critical findings
• Experience balancing security risk with business and technical constraints



#Гибрид #ИБ

Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник -