Назад
Company hidden
обновлено 14 часов назад

Application Security Engineer

88 300 - 110 400$
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Engineer (SAST/DAST and DevSecOps): Enhancing Rivian’s secure software development lifecycle by assessing scanner findings, reviewing source code and architectures, and guiding teams in vulnerability remediation with an accent on secure-by-design development and automated security workflows. Focus on integrating GitLab CI/CD security tooling, performing threat modeling and security reviews, and coordinating penetration testing and bug bounty remediations.

Location: Salary range applies to Georgia-based applicants; work format is not specified.

Salary: $88,300–$110,400 annually for Georgia-based applicants, with potential annual performance bonus and equity awards.

Company

hirify.global develops emissions-free electric adventure vehicles and related automotive technology.

What you will do

  • Assess SAST and DAST findings and help application teams prioritize and remediate vulnerabilities.
  • Integrate and optimize security tooling in GitLab CI/CD and other DevOps technologies to support secure-by-design development.
  • Review source code and application architectures to identify and communicate security risks in proposed designs.
  • Work with the penetration testing team to define remediations for identified vulnerabilities.
  • Coordinate the ingestion and prioritization of vulnerabilities reported through bug bounty initiatives.

Requirements

  • At least 2 years of application security experience.
  • Hands-on experience reviewing and remediating common software vulnerabilities.
  • Technical proficiency in software development or scripting, such as Go or Python, for building security tools and automated workflows.
  • Experience with GitLab CI/CD or other popular DevOps technologies.
  • Strong problem-solving and decision-making skills.
  • Passion for cybersecurity and commitment to staying current with industry practices and tools.

Nice to have

  • Experience in the automotive, manufacturing, or technology industries.
  • Experience with cloud-native applications, preferably AWS, and Kubernetes-hosted applications.
  • Experience performing threat modeling and security reviews.

Culture & Benefits

  • Benefits are available to eligible full-time and part-time employees and their dependents.
  • Benefits may include paid vacation, paid sick leave, life, medical, dental, vision, and disability insurance.
  • Eligible employees may participate in hirify.global’s 401(k) Plan and Employee Stock Purchase Program.
  • Full-time employee coverage begins on the first day of employment; part-time coverage begins the first of the month after 90 days.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →