Назад
14 часов назад

Application Security Engineer

185 000 - 260 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Engineer (Vulnerability Management): Securing Glean’s technology stack by managing CVEs, hardened base OS images, open-source dependencies, and security tooling in CI/CD with an accent on application security, software supply chain protection, and cloud-native infrastructure. Focus on leading vulnerability management, integrating SAST, DAST, and dependency scanning, and developing automated validation tests for secure deployments.

Location: Remote within the United States

Salary: $185,000–$260,000 annually

Company

Glean provides a Work AI platform with enterprise search, an AI Assistant, AI agents, SaaS connectors, and APIs on a secure, open platform.

What you will do

  • Own and lead the vulnerability management lifecycle across the technology stack, ensuring known CVEs are identified and remediated.
  • Implement and maintain hardened base operating system images.
  • Scan, monitor, and patch open-source dependencies to reduce software supply chain risks.
  • Integrate SAST, DAST, and dependency scanning tools into CI/CD pipelines with engineering teams.
  • Define secure coding practices, develop automated security validation tests, and build custom security solutions where needed.
  • Provide security guidance, training, and mentorship to engineering teams.

Requirements

  • 5+ years of experience in application security and vulnerability management.
  • Deep knowledge of CVEs, OWASP Top 10, software supply chain risks, and dependency security.
  • Experience with SAST, DAST, dependency scanning, and vulnerability management tools such as Snyk, Dependabot, Trivy, Clair, Burp Suite, or OWASP ZAP.
  • Familiarity with npm, pip, Maven, Go modules, and coding in Go, Python, Java, or C++.
  • Hands-on knowledge of cloud-native, container, Kubernetes, and microservices security across AWS, GCP, or Azure.
  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent industry experience; ability to lead cross-functional security initiatives.

Culture & Benefits

  • Medical, vision, and dental coverage.
  • Generous time-off policy and access to a 401(k) plan.
  • Home office improvement, annual education, and wellness stipends.
  • Regular company events and daily healthy lunches.
  • Collaborative environment where security is treated as a shared responsibility.

Hiring process

  • Complete a brief AI-focused exercise or discussion during the interview process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →