TL;DR
Application Security Engineer: Safeguarding the organization's applications and data from cyber threats by conducting security assessments, identifying vulnerabilities, and implementing security controls. Focus on integrating security into the software development lifecycle and providing guidance on secure coding practices.
Location: Remote employees throughout the United States and England. Offices in Boston, United States and Zagreb, Croatia
Salary: A competitive compensation package, including base pay, bonuses, and equity
Company
hirify.global offers threat detection solutions and is used by large organizations globally.
What you will do
- Conduct security assessments and vulnerability scans of applications and APIs.
- Identify, analyze, and report security vulnerabilities and risks.
- Develop and implement security controls and countermeasures to mitigate identified risks.
- Collaborate with development teams to integrate security into the SDLC.
- Provide guidance and training to development teams on secure coding practices.
- Stay up-to-date on emerging security threats and trends.
Requirements
- 5+ years of experience in application security.
- Strong understanding of application security principles, including OWASP Top 10.
- Experience with security tools and technologies like vulnerability scanners and penetration testing tools.
- Knowledge of programming languages (e.g., C++, Python).
- Excellent problem-solving, analytical, and communication skills.
- Ability to work independently and as part of a team.
Nice to have
- Experience with cloud security and DevOps practices is desirable
Culture & Benefits
- Generous paid vacation days and all public holidays off as required by German law.
- Health insurance contributions and social security coverage.
- Quarterly Wellness Weekends—three extra days off every quarter.
- A €100 monthly phone allowance.
- Free membership to the Calm app.
- Volunteer Time—8 hours a year to give back to a non-profit cause.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →