What You'll Do
- Embed with the product teams and attend regular stand-ups and planning meetings and build positive relationships with key partners
- Serve as the security authority on your product, ensuring the corporate security controls are working as designed, that security requirements are provided to the team before coding begins, and that vulnerabilities are being fixed within their SLAs
- Ensure s-SDLC controls are embedded in your product and serve as control owner for a subset of these controls, mentoring other team members
- Engage in application and domain-specific threat modeling, and attack surface analysis and reduction
- Work alongside engineers, performing peer review and mentoring as needed
- Assist in continuous improvement efforts and serve as a resource for more junior members
What You'll Bring
- At least 5 years experience in securing enterprise-grade web applications and services with demonstrated expertise in threat modeling and attack surface analysis.
- Solid understanding of common languages such as Ruby, Javascript, Go, etc.
- Strong experience in web application security issues and standards (ex. OWASP Top 10, SANS Top 25, etc.)
- Understanding and experience with securing public cloud deployments, including AWS and/or Azure, and serverless architecture
- Familiarity with CI/CD tools and processes, such as GitHub, Travis CI, CircleCI, Docker, and Kubernetes
- Strong foundation in core information security principles and concepts (encryption, authentication, etc.)
- Experience with automated application security tools and technologies (SAST, DAST, SCA etc.)
- Excellent communication skills and the ability to explain sophisticated security topics in simple terms
Other Jobs from Red Canary
Senior Sales Engineer
Similar Jobs
Senior QA Prompting Engineer
Senior Software Engineer, Media Platform
Senior Software Engineer, Fraud Prevention
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say