Implement security throughout the software development lifecycle. You'll conduct threat modeling, security assessments, and build security tooling to protect our applications and infrastructure.
Responsibilities
- Conduct threat modeling and security architecture reviews
- Implement SAST/DAST tools and security scanning pipelines
- Design and maintain secure coding standards and practices
- Perform security assessments and penetration testing
- Build security tooling and automation for development teams
- Respond to security incidents and conduct forensic analysis
- Train development teams on security best practices
Requirements
- 4+ years of application security experience
- Strong knowledge of OWASP Top 10 and security frameworks
- Experience with security testing tools (Burp Suite, OWASP ZAP)
- Proficiency in at least one programming language
- Understanding of cloud security (AWS, Azure, GCP)
- Knowledge of cryptography and secure communication protocols
- Experience with compliance frameworks (SOC 2, ISO 27001)
Nice to have
- Security certifications (CISSP, OSCP, CEH)
- Experience with container and Kubernetes security
- Knowledge of threat intelligence and incident response
- Familiarity with DevSecOps practices
Benefits
- Flexible working hours
- Remote-friendly culture
- Learning & development budget
- High-ownership projects
- Pragmatic engineering culture
- Work with cutting-edge tech
Additional details
- Ready to Apply?
- Join our team of builders who love shipping quality software.
- Questions about this role?
- contact@stackbinary.io