Overview
Are you the kind of engineer who sees an API vulnerability and thinks: "Not on my watch"? Do you secretly enjoy reading the OWASP Top 10 like it's bedtime stories? If so, we've got the role for you. We're on the hunt for an API Security Engineer who's passionate about protecting APIs, building secure solutions, and outsmarting threats before they even show up to the party.
Responsibilities
- Lead the end-to-end deployment of API Security Solutions that keep our infrastructure ironclad.
- Team up with developers, operations, and security pros to integrate smoothly into applications.
- Stay one step ahead of threats, from runtime nasties to traffic monitoring mayhem.
- Build, script, automate, and document like the engineering legend you are.
- Help bake security straight into CI/CD pipelines.
- Share your wisdom, mentor teammates, and spread your passion for secure coding practices.
Qualifications
- 5+ years of software engineering experience (bonus points if focused on Application or API Security).
- Mastery of API protocols & frameworks (REST, SOAP, GraphQL, gRPC - you know them all).
- Jedi-level understanding of OAuth2/OIDC/JWT and OWASP API Security Top 10.
- Familiarity with API vulnerabilities, runtime security, and cool tech like eBPF.
- Experience with API testing tools (DAST, AST, Runtime Protection) - extra kudos if you've dabbled in pen testing, SCA, SAST, or WAFs.
- Strong analytical mind, collaboration chops, and the ability to make smart calls in tricky situations.
- A genuine passion for learning, teaching, and making security fun.
Benefits
- The chance to shape the future of API Security in a fast-moving environment.
- A team that values curiosity, creativity, and coffee.
- The satisfaction of knowing your work keeps systems (and people) safe every single day.