Application Security Engineer (Automotive)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Application Security Engineer (Automotive): Enhancing and maintaining the secure software development lifecycle (SSDLC) with an accent on vulnerability remediation and security tooling integration. Focus on guiding development teams, optimizing CI/CD pipelines, and performing architectural security reviews to ensure secure-by-design development.
Location: Must be based in Georgia, USA
Salary: $88,300–$110,400
Company
is an electric vehicle manufacturer dedicated to building sustainable transportation and protecting the outdoors.
What you will do
- Assess and prioritize security scanner findings (SAST, DAST) within source code.
- Integrate and optimize security tooling within Gitlab CI/CD and DevOps workflows.
- Review source code and application architectures to identify security vulnerabilities.
- Collaborate with penetration testing teams to remediate identified security gaps.
- Coordinate the ingestion and prioritization of vulnerabilities from Bug Bounty programs.
Requirements
- 2+ years of application security experience.
- Proven technical proficiency in software development or scripting (Go, Python).
- Hands-on experience with reviewing and remediating common software vulnerabilities.
- Experience with Gitlab CI/CD or popular DevOps technologies.
- Strong problem-solving and decision-making capabilities.
Nice to have
- Experience in the automotive, manufacturing, or technology industries.
- Experience with cloud-native (AWS) and Kubernetes-hosted applications.
- Experience performing threat modeling and security reviews.
Culture & Benefits
- Comprehensive insurance portfolio including medical, dental, and vision.
- Paid vacation and sick leave.
- Participation in 401(k) Plan and Employee Stock Purchase Program.
- Eligibility for annual performance bonus and equity awards.
- Commitment to an inclusive and accessible hiring process.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →