1 day ago
Responsibilities
- Conduct security architecture reviews and threat modeling for new features and services.
- Perform vulnerability assessments of software and systems to identify security weaknesses.
- Triage and investigate vulnerabilities from the bug bounty program and automated security tools.
- Influence engineering initiatives by communicating security constraints and assisting teams.
- Investigate product security incidents and assess scope, impact, and root cause.
- Develop and deliver training on secure coding best practices and emerging threats.
- Collaborate with stakeholders to develop strategies for risk management and security maturity.
Requirements
- 5+ years of experience in application security, product security, or software engineering with a security focus.
- Strong software engineering background with experience in Python, JavaScript/TypeScript, or Scala.
- Deep knowledge of the OWASP Top 10 and common web application vulnerabilities.
- Experience with security tools for static/dynamic analysis and vulnerability management.
- Proven experience in security design reviews and threat modeling for complex applications.
- Excellent communication skills for collaborating with technical and non-technical partners.
- A pragmatic and collaborative mindset with a passion for secure software development.
Benefits
- Generous and transparent compensation system including base salary and RSUs.
- Health insurance with dental and travel coverage.
- Breakfast and lunch catering on in-office workdays.
- Career growth budget and home office setup budget.
- Gym/Fitness card and mental health support.
- Group life insurance and fertility healthcare support.