Software Security Engineer (SaaS)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Software Security Engineer (SaaS): Leading application security efforts for a RegTech SaaS platform with an accent on secure code reviews, threat modeling, and vulnerability remediation. Focus on securing JavaScript and TypeScript applications, automating SAST/DAST in CI/CD pipelines, and partnering with developers to implement practical security solutions.
Location: Remote (Continental United States only; excluding California, Hawaii, and Alaska)
Salary: $145,000–$160,000 per year
Company
is a fast-growing RegTech SaaS company helping organizations strengthen compliance, security, and operational efficiency through cloud-based software.
What you will do
- Lead day-to-day application security efforts, including secure code reviews, threat modeling, and penetration testing.
- Identify and remediate vulnerabilities in JavaScript, TypeScript, React, Node.js, and APIs.
- Automate SAST and DAST capabilities within CI/CD pipelines using tools such as Snyk, Checkmarx, or Burp Suite.
- Develop security policies, document controls, and deliver secure coding training.
- Partner directly with the Development team to design secure, scalable, and practical technical solutions.
- Support incident response for application-related security events.
Requirements
- 5–7+ years of experience in application security, software development, or a related security engineering role.
- Proficiency in TypeScript, JavaScript, or Python, with familiarity with React and Node.js.
- Experience securing APIs, relational databases, and cloud infrastructure across AWS, Azure, or GCP.
- Hands-on experience configuring and managing SAST/DAST tools.
- Must be authorized to work in the US without sponsorship.
- Must reside in the Continental US (excluding CA, HI, AK).
Culture & Benefits
- 401(k) with 5% match (1:1).
- 100% company-paid medical, dental, and vision insurance for employee and family.
- HSA contribution for qualifying plans.
- Unlimited Paid Time Off and 11 observed holidays.
- Company-provided laptop and necessary hardware.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →