Назад
Company hidden
1 час назад

Secure Software Engineer (Application Security)

100 000 - 150 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Secure Software Engineer (Application Security): Embedding security throughout the software development lifecycle and reducing risk across an application portfolio with an accent on vulnerability discovery, secure system design, and security automation. Focus on performing code reviews, integrating SAST, DAST, and SCA into CI/CD pipelines, and strengthening authentication, authorization, cryptography, and cloud controls.

Location: 100% remote within the U.S.

Salary: $100,000–$150,000 annually

Company

hirify.global is a technology consulting and software development company delivering cloud, AI, data, and enterprise solutions across the United States.

What you will do

  • Embed security practices throughout the software development lifecycle.
  • Partner with engineering teams to design secure systems and reduce application risk.
  • Identify vulnerabilities and apply hands-on offensive and defensive security techniques.
  • Perform code reviews across at least two major programming languages.
  • Integrate SAST, DAST, SCA, and other security tooling into CI/CD pipelines.
  • Communicate security risks and improvements to technical and non-technical audiences.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • At least five years of application security or security engineering experience; the posting also specifies 6+ years of experience.
  • Strong knowledge of OWASP Top 10, vulnerability classes, exploit patterns, authentication, authorization, and cryptographic primitives.
  • Experience with cloud security, modern infrastructure controls, and Agile engineering teams.
  • Proficiency in at least one programming language for tooling and automation.
  • Must be authorized to work in the U.S.; new H-1B visa petitions cannot be sponsored.

Nice to have

  • OSCP, OSCE, GWAPT, CISSP, or similar industry certification.
  • Experience with offensive security tooling and red-team operations.
  • Bug bounty experience, public CVEs, or open-source security contributions.
  • Familiarity with AI/LLM application security.
  • Experience in regulated industries with strict compliance requirements.

Culture & Benefits

  • Full-time direct W2 employment.
  • Career growth opportunities within an established organization.
  • Remote work arrangement within the United States.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →