TL;DR
Application Security Research TL (Cybersecurity): Mature and scale the Application Security function across R&D with an accent on clear ownership, processes, and engagement models with engineering teams. Focus on embedding application security into CI/CD pipelines and daily development workflows, enabling secure-by-default engineering practices.
Location: Remote
Company
hirify.global converges enterprise networking and security into one centralized and global service delivered by cloud.
What you will do
- Mature and scale the Application Security function across R&D.
- Embed application security into CI/CD pipelines and daily development workflows.
- Lead the implementation, tuning, and ongoing optimization of AppSec tooling and Cato Bug bounty program.
- Define and maintain application security standards, policies, and secure development frameworks.
- Conduct threat modeling sessions, architecture risk reviews, and secure design assessments.
- Support Cato research program CATO CTRL, with dedicated research activities and focus on new vulnerabilities discovery.
Requirements
- 8+ years of hands-on experience in Application Security and Security Engineering.
- Proven track record of standing up or significantly maturing AppSec programs.
- Deep understanding of modern CI/CD pipelines and cloud-native development.
- Strong ability to influence engineering teams without direct authority.
- Experience leading small -medium teams, mentoring engineers, and acting as a technical authority.
Nice to have
- SaaS and cybersecurity domain experience.
- Work in high-growth, fast-scaling, and global engineering organizations.
Culture & Benefits
- Opportunity to join a company building a cutting-edge enterprise network and secure cloud platform.
- Be part of a fast track to becoming the worldwide market leader.
- Work in a high-growth software environment.
- Collaborate with R&D teams to deliver measurable risk reduction.
- Mentor engineers and security champions.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →