GrepJob
PandaDoc

Application Security Engineer

PandaDoc
Apply
about 3 hours ago
Remote, WorldwideMid Level / Senior
H1B Sponsor

Responsibilities

  • Review, test, and monitor applications to identify security weaknesses.
  • Manage vulnerabilities from discovery through remediation.
  • Respond to infrastructure security alerts and perform hardening.
  • Participate in incident response and root cause analysis.
  • Analyze and monitor security threats and prevention measures.
  • Partner with teams to embed security requirements into development.
  • Integrate and operate automated security testing across the development lifecycle.
  • Develop security automation and tooling to scale security.
  • Drive threat modeling and secure-by-design practices.
  • Assess overall security posture and provide recommendations.
  • Assist in addressing emergent threats in AI security.

Requirements

  • 3+ years of experience with application security tools such as SAST/SCA, DAST, WAF, CI/CD security, and penetration testing.
  • 2+ years of cloud security experience in AWS, GCP, or Microsoft Azure.
  • Strong background in web application security and common vulnerability classes.
  • Good understanding of access control and identity management principles.
  • Practical skills in building security automation with Python, Bash, or equivalent languages.
  • Experience implementing DevSecOps practices across the SDLC.
  • Familiarity with containerized, Kubernetes-based environments.
  • Solid interpersonal, written, and verbal communication skills.
  • Upper-Intermediate English level (B2+).

Benefits

  • Multisport Card for fitness and wellness activities.
  • LuxMed healthcare coverage for individuals or families.
  • UNUM life insurance protection for individuals or families.
  • Onboarding benefit allowance for work equipment and setup.
  • 6 self-care days beyond standard vacation entitlements.
  • Wellness, learning, and development budgets.
  • Opportunities to purchase company stock or receive annual bonuses.