Назад
Company hidden
5 часов назад

Application Security Architect

160 000 - 180 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
principal
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Application Security Architect: Establishing and evolving an application security program for cutting-edge applications with an accent on integrating security best practices throughout the SDLC, secure code review, and penetration testing. Focus on continuous program improvement, collaborating with engineering teams on secure design, and mentoring junior team members.

Location: Remote (United States)

Salary: $160,000 - $180,000 USD per year

Company

hirify.global enhances Azure Virtual Desktop, Windows 365, and Microsoft Intune with features that simplify management, optimize operations, and reduce Azure costs through automation.

What you will do

  • Establish and continuously improve the AppSec program's strategy, processes, and tooling.
  • Collaborate with engineers to integrate security best practices into design reviews, threat modeling, and code reviews.
  • Participate in secure code review and penetration testing efforts.
  • Contribute to deep-dive security reviews of web, mobile, and API products for secure design adherence.
  • Participate in security training and foster a culture of security awareness within the engineering team.
  • Assist in incident response and gain exposure to SAST/DAST tools and risk assessment.

Requirements

  • 10+ years of experience in application security or a related field.
  • Proven experience leading the initial inception of an Application Security program from the ground up.
  • Solid understanding of security fundamentals and common vulnerabilities (e.g., XSS, CSRF, SQL Injection).
  • Ability to identify potential risks and collaborate with engineers on effective solutions.
  • Effective communication of security concepts to technical and non-technical audiences.
  • Must be eligible to work remotely from the United States.

Nice to have

  • Familiarity with C#, React, JavaScript, and REST APIs for code review and vulnerability analysis.
  • Active engagement in the security community (e.g., B-sides, OWASP chapter activities).

Culture & Benefits

  • Competitive Base and Incentive Plan with Stock Options.
  • Health and Welfare, Life and Disability, and Retirement Plans available (US specific plans).
  • Unlimited Flexible Paid Time Off, including your birthday off.
  • Collaborative Team Culture.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник - загрузка...