Application Security Engineer - remote

Posted 3 years ago
Stack Overflow
Contrast Security named to Inc.'s “Best Workplaces of 2020” Contrast Security is the world’s leading provider of security technology that enables software applications to protect themselves against cyberattacks, heralding the new era of self-protecting software. Contrast's patented deep security instrumentation is the breakthrough technology that enables highly accurate assessment and always-on protection of an entire application portfolio, without disruptive scanning or expensive security experts. Only Contrast has sensors that work actively inside applications to uncover vulnerabilities, prevent data breaches, and secure the entire enterprise from development, to operations, to production. About the Position Our Application Security Engineering team is hyper-focused on continuous security enhancements in all aspects of the Software Development Lifecycle for a wide range of Contrast Security products. The team focuses on knowing our product, protecting our environments, and securing our software. The applicant will be responsible for taking ownership of security initiatives, such as defining security requirements and policies, reviewing testing and deployment standards, and asset and vulnerability management. Additionally, he or she will have the freedom to contribute their unique perspectives and ideas on our product security processes.

Responsibilities

    • Developing, building, and supporting DevSecOps tools for our SDLC processes
    • Partner with engineering department for Secure Architecture Code Reviews and defining security requirements
    • Maintain a complete internal security picture through asset and vulnerability management
    • Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks
    • Ability to perform vulnerability and penetration assessments

About You

      • Experience with application security, development, and vulnerability management reporting
      • Programming abilities in Python, C or Java (plus if you have experience with NodeJS, Ruby and/or GoLang)
      • You can take general direction and work independently to solve problems
      • You have strong communication skills
      • You ask questions, let others know when you need help, and tell others what you need
      • 1-3 years experience of industry security engineering
      • Experience with threat modeling and attack forensics
We are focused on building a diverse and inclusive workforce. If you’re excited about this role, but do not meet 100% of the qualifications listed above, we encourage you to apply.

What We Offer

    • Competitive compensation
    • Daily in-office team lunches (when offices are open)
    • Meaningful stock plans
    • Medical, dental, and vision benefits
    • Flexible paid time off
We are changing the world of software security. Do it with us. We believe in what we do and are passionate about helping our customers secure their business. If you’re looking for a challenge and want to enjoy where you work, you’ll love Contrast Security. Contrast Security is committed to a diverse and inclusive workplace. Contrast Security is an equal opportunity employer and our team is comprised of individuals from many diverse backgrounds, lifestyles, and locations. By submitting your application, you are providing Personal Information about yourself (cover letter, resume, email address, etc.) and hereby give your consent for Contrast Security, Inc. and/or our HR-related Service Providers, to use this information for the purpose of processing, evaluating and responding to your application for current and future career opportunities. Please note, all fields with an ‘*’indicator are required and will be the previously stated information used for processing your application. If you are a resident of the European Economic Area or are applying for a position in the European Economic Area, Contrast’s Privacy Statement reflects our policies around compliance with the General Data Protection Regulation (“GDPR”) and your rights respective to GDPR. If you are a California resident, you are entitled to certain rights under CCPA: The California Consumer Privacy Act of 2018 (“CCPA”) will go into effect on January 1, 2020. Under CCPA, businesses must be overtly transparent about the personal information they collect, use, and store on California residents. CCPA also gives employees, applicants, independent contractors, emergency contacts and dependents (“CA Employee”) new rights to privacy.