Job Search and Career Advice Platform

¡Activa las notificaciones laborales por email!

Lead Application Security Engineer / DevSecOps Engineer (worldwide remote)

Cloudlinux

A distancia

EUR 60.000 - 80.000

Jornada completa

Hoy
Sé de los primeros/as/es en solicitar esta vacante

Genera un currículum adaptado en cuestión de minutos

Consigue la entrevista y gana más. Más información

Descripción de la vacante

A global remote-first tech company is seeking a Lead Application Security Engineer to enhance the security of their products and promote best practices in the development lifecycle. The role involves conducting security reviews, designing security hardening measures, and engaging throughout the software development lifecycle. Candidates should have a strong understanding of web application security, experience in security assessments, and proficiency in related technologies. This position allows for fully remote work, offering a flexible schedule and various benefits.

Servicios

Paid 24 days of vacation
Flexible working hours
Compensation for private medical insurance
Budget for education

Formación

  • At least 3 years of experience in assessing web and binary application security.
  • Deep understanding of modern web technologies such as OAuth and JWT.
  • Upper-intermediate English proficiency.

Responsabilidades

  • Perform security reviews of external services.
  • Design and implement security recommendations.
  • Participate in all SDLC stages as a security engineer.

Conocimientos

Web applications security
Penetration testing
Security mechanisms
Scripting in general-purpose languages
Linux architecture
Application security

Educación

Relevant education in information security

Herramientas

Docker
Kubernetes
Descripción del empleo

CloudLinux is a global remote-first company. We are driven by our principles : do the right thing, employees first, we are remote first, and we deliver high-volume, low-cost Linux infrastructure and security products that help companies to increase the efficiency of their operations. Every person on our team supports each other and does what we can to ensure we are all successful. We are truly a great place to work.

Check out our website for more information https : / / cloudlinux.com /

We are looking for a skilled Lead Application Security Engineer / DevSecOps Engineer who will play a key role in improving the security of our software products and driving best practices across the development lifecycle.

Responsibilities
  • Perform a security review of the company's external services.
  • Design and implement recommendations for security hardening.
  • Participate in all steps of SDLC as a security engineer.
  • Design and review new features to implement the Security by Design principle.
  • Call attention to risks and drive actions to address those risks to protect users.
Qualifications
  • Good technical knowledge and deep understanding of security, including but not limited to : web applications security(both backend and frontend),penetration testing, and modern security mechanisms.
  • Experience in assessing the security ofWeb applications(at least 3 years) and Binary applications.
  • Deep understanding of modern web technologies (OAuth, JWT, CORS, CSP, SOP, SameSite, etc.) and architectures.
  • Relevant education or a good understanding of information security and information technologies basics.
  • Experience coding / scripting in one or more general-purpose languages.
  • Deep understanding ofLinuxarchitecture and security stack.
  • Experience inbinary vulnerabilities and exploitation.
  • At least an upper-intermediate level of English proficiency.
Preferred Qualifications
  • Experience in exploiting vulnerabilities found in the code.
  • Experience with code audits, code audit automation.
  • Experience in architecting, developing, or maintaining secure cloud solutions.
  • Experience in review of Docker / Kubernetes architectures.
  • Successful CTF or Bug Bountyparticipation will be a major plus.
  • Relevant certificates (OSCP, AWAE, CREST, GPEN) will be a major plus.
Benefits
  • A focus on professional development.
  • Interesting and challenging projects.
  • Fully remote work with flexible working hours, which allows you to schedule your day and work from any location worldwide.
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves.
  • Compensation for private medical insurance.
  • Co-working and gym / sports reimbursement.
  • Budget for education.
  • The opportunity to receive a reward for the most innovative idea that the company can patent.

By applying for this position, you agree withCloudLinux Privacy Policy ( https : / / cloudlinux.com / legal / privacy-policies-hub / )and give us your consent to maintain and process your personal data with this respect. Please read our Privacy Policy for more information.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.