Core Responsibilities:
- Manage and grow our dynamic team of Application Security professionals
- Continuously improve and expand the application security landscape at Coupa
- Maintain, support and extend our application security tooling, standards, and processes, including but not limited to SAST, DAST, SCA
- Participate in development and operational design reviews with a focus on application security
- Escalation point for incident response from SecOps and managing cross-team actions
- Represent Engineering within the company on security-focus discussions
- Evaluate new security technologies and make recommendations to strengthen the overall security posture across Coupa’s suite of applications
- Maintain, improve, and be a champion of Coupa’s Secure Software Development Lifecycle (SSDLC) methodologies, processes and standards
- Drive threat modeling practices into our product design life cycle
- Work closely with the Operations Security team to review and define best practices
- Support compliance audits through evidence gathering and interviews
- Work closely with the Product Management team and different stakeholders to define and influence the Application Security roadmap
- Produce metrics reporting the state of application security programs and performance of development teams against requirements
- Track vulnerability issues to ensure remediation based on our defined SLA
Requirements:
- Must have leadership experience managing at least 3 direct reports
- Should have 10+ years of experience and 3+ years in managing a team
- Must have a strong background in Application Security
- Must have a great understanding of OWASP Top10, CWE/SANS 25
- Knowledge of identity management tools, SAML, OIDC, and SSO
- Knowledge of OAuth 2, client-server authentication, server-server authentication
- Good understanding of one or more of the following programming languages: Ruby, Go, Java, TypeScript/JavaScript, Python, or C/C++
- Knowledge of SSL/TLS and how it helps secure transmission of data
- Past experience developing secure web applications or microservices
- Being able to influence others through collaboration and thought leadership
- Experience designing, estimating, and leading the implementation of complex systems
- Proven ability to work independently and take projects from design to delivery
- Self-motivated, passion for learning, strong communication skills
- Bachelor's or Master's degree in Computer Science (or equivalent), or equivalent experience
Extra Consideration:
- Knowledge of compliance requirements: HIPAA, PCI, SOX, FedRAMP, SOC, etc
- Knowledge of current cryptography algorithms, such as AES, BCrypt, Argon2
- Presented security-related topics at conferences or meet-ups
- Demonstrated knowledge of security/access control, scalability, high availability
- Open source project contributions
Other Jobs from Coupa Software
Lead Software Engineer
Sr. Software Engineer in Test
Software Engineer in Test
Sr. Software Engineer in Test
Similar Jobs
Senior Software Engineer
Senior Software Engineer with Leadership responsibility (m/f/x)
R&D Infrastructure Software Engineering Co-op January- June 2025
Technology Intern - San Francisco, CA
Staff Engineer - C++ (AUTOSAR)
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say