Senior Application Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Application Security Engineer (Cybersecurity): Building and maintaining robust security infrastructure and internal tooling for a high-security product platform with an accent on cloud and container hardening. Focus on automating threat detection, performing deep-dive architectural audits, and collaborating with engineering to eliminate entire classes of vulnerabilities.
Location: Remote-first (US), with an office in San Francisco.
Salary: $190,000–$235,000
Company
is a security-focused organization dedicated to protecting enterprise data through advanced application security and infrastructure defense.
What you will do
- Lead end-to-end security strategy, including threat modeling and design reviews.
- Develop automation to streamline security workflows and block abuse patterns.
- Perform deep-dive security audits and code reviews for existing and new product features.
- Partner with infrastructure teams to harden Kubernetes deployments and cloud environments.
- Secure the software supply chain and manage dependency risks directly with engineering.
Requirements
- 5+ years of experience in application security with a strong background in software development.
- Must be able to work in the US.
- Proficiency in multiple programming languages, preferably including Javascript/Typescript.
- Practical experience securing cloud environments (GCP) and Kubernetes.
- Deep understanding of identity and access management protocols (IAM, OAuth, SAML).
- Experience protecting sensitive data at rest and in transit.
Nice to have
- Experience with data analysis in BigQuery.
- Knowledge of defense mechanisms against AI-specific threats like prompt injection.
Culture & Benefits
- Remote-first workplace environment.
- Opportunity to influence and shape the internal security culture.
- High degree of autonomy and impact on core product security.
- Emphasis on pragmatic solutions that balance security and development velocity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →