Base Salary
$130k - $170k/yr
Responsibilities
- Integrate application security best practices and automated security checks into the software development lifecycle.
- Support and maintain SAST, DAST, SCA, secrets-scanning, and other application security tooling.
- Conduct secure code reviews, threat modeling sessions, and application architecture assessments.
- Develop and maintain security automation, guardrails, reusable components, tools, pipelines, and workflows.
- Define and improve secure coding standards and application hardening practices.
- Improve application-level logging, telemetry, monitoring, detection, and alerting.
- Support incident response for application vulnerabilities through verification, triage, and remediation.
- Research emerging threats, vulnerabilities, and application and product security practices.
- Create security requirements, guidelines, and remediation playbooks.
- Participate in security reviews, compliance-driven assessments, and architectural walkthroughs.
- Collaborate with engineering and product teams on secure deployment and continuous improvement.
Requirements
- Bachelor’s degree in Computer Science, Engineering, MIS, or equivalent practical experience.
- 2–5 years of experience in application security, product security, security-focused software engineering, or a related technical role.
- Strong understanding of application vulnerabilities and mitigation strategies, including OWASP Top 10 and CWE.
- Experience with Git-based workflows and modern development practices.
- Familiarity with cloud security and hands-on experience with AWS, Azure, or GCP.
- Experience with Python, Go, Java, JavaScript/TypeScript, or Ruby; Java and Python are preferred.
- Experience with application security tools such as OWASP ZAP, Burp Suite, SAST/DAST tools, SCA, or dependency-scanning tools.
- Knowledge of secure coding, API security, authentication, authorization, and secrets management.
- Ability to communicate technical issues clearly to developers and cross-functional stakeholders.
- Understanding of agile development processes and experience working within engineering teams.
- Ability to travel approximately 25% for onboarding, offsites, customer engagements, and company events.
Benefits
- Hybrid work based in the Boston office with an expectation of being onsite 1–2 days per week.
- 25% in-person travel may be required for onboarding, offsites, customer engagements, and company events.
- Equity packages in the form of ISOs.
- Comprehensive benefits including flexible paid time off and stock grants.
Categories
About Starburst
Starburst was founded by the inventors of OS Trino so that data-driven companies could have a full-featured open data lakehouse platform powered by the #1 SQL analytics engine. Our end-to-end analytics platform includes the capabilities needed to discover, organize, consume, and share data with industry-leading price-performance for cloud and on-premises workloads. We believe the lakehouse should be the center of gravity, but support accessing data outside the lake when needed. With Starburst, teams can access more complete data, run scalable analytics, lower the cost of infrastructure, use tools best suited to their needs, and avoid vendor lock-in. Trusted by companies like Apache Corporation, Comcast, Doordash, DBS Bank, and VMware, Starburst helps you make better decisions faster on all data. Join us! -- Our company was founded in an unusual way; with customers and revenue from the beginning! Our growth is already ahead of some of the most successful software start-ups, and we don’t plan on slowing down. We believe our opportunity is huge. Every large company in the world suffers from a data silo problem. Traditional data warehouse products approach the problem with old solutions that breed inefficiency and ultimately can’t help business analysts run fast analytics on all their data. This prevents the business from making better decisions to improve their company’s performance. Starburst provides a modern solution that addresses these data silo & speed of access problems. Starburst helps enterprises harness the value of Trino, the fastest distributed query engine available today, by adding the tools and 24x7 support that meet the needs for big data access at scale. Ultimately, Starburst helps organizations run analytics anywhere to make better business decisions. We’re building a team of all-stars: engineers, customer success, sales, and marketing pros who are at the top of their game. If this sounds like you, check out our open roles: starburst.io/careers
