Назад
Company hidden
23 дня назад

Software Developer (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Software Developer (Cybersecurity): Conducting manual and automated security code reviews to identify and mitigate vulnerabilities across various codebases with an accent on secure coding practices and industry standards. Focus on detecting injection, XSS, and insecure APIs while guiding development teams on SSDLC and remediation strategies.

Location: Onsite in Orlando, FL

Company

hirify.global is a leader in endpoint protection technologies, providing enterprise-level cybersecurity tools to improve the security of servers and endpoints.

What you will do

  • Perform in-depth security-focused code reviews across various codebases and languages.
  • Identify common and advanced security vulnerabilities such as injection, XSS, and insecure deserialization.
  • Educate and guide developers in implementing secure coding practices.
  • Recommend fixes and mitigation strategies ensuring adherence to OWASP Top 10, CWE, and NIST standards.
  • Collaborate with security engineers, architects, and DevSecOps teams to enhance overall code security posture.
  • Utilize static and dynamic analysis tools to supplement manual reviews and maintain remediation tracking.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • 5+ years of experience in software development with at least 2 years in secure code review or application security.
  • Strong understanding of the Secure Software Development Lifecycle (SSDLC).
  • Experience remediating vulnerabilities in languages such as C/C++, C#, Swift, Java, JavaScript, or Python.
  • Familiarity with security tools like SonarQube, Fortify, Checkmarx, or Veracode.
  • Knowledge of OWASP Top 10, CWE/SANS 25, and CVSS scoring.

Nice to have

  • Security certifications such as OSCP, CSSLP, CEH, or GWAPT.
  • Experience working in regulated environments (finance, healthcare, defense).
  • Familiarity with threat modeling, penetration testing, or red/blue team operations.

Culture & Benefits

  • Professional environment focused on cutting-edge endpoint protection and cybersecurity.
  • Opportunity to engage in security audits and threat modeling.
  • In-office collaboration within a specialized security team.
  • Strict compliance requirements including mandatory background checks and periodic drug screenings.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →