Enable job alerts via email!
A technology company is seeking a Software Security Engineer to enhance security practices in software development. The role requires over 8 years of experience, including maintaining a secure software supply chain and code reviews. The company offers a remote-first environment with occasional on-site summits and competitive annual reviews.
Introduction
We working on a project that tackles the problem of managing large-scale IT networks. We are seeking talented and highly motivated engineers to join us in bringing this project to a larger audience. You would be responsible for helping to create, evolve, document, and implement security development and deployment practices for a product that’s delivered both on-premises as well as to the cloud. This work would include evaluating and disseminating information and recommendations from resources such as NIST, OWASP, MITRE, and other sources of security information and best practices. This work would also include—with the assistance of the rest of the development team—implementing these security controls and practices as part of the software development process, supplying guidance and requirements for deploying our product on-premises, and creating a secure environment for our upcoming cloud offering.
Our product is a .NET Core application (with some TypeScript and Python components) backed primarily by PostgreSQL, that serves both a web frontend and REST API. The application source is hosted in GitLab, and we use merge requests and GitLab CI to manage our code contribution workflows.
Things we really need
Things we want too
Things that are extra cool
Our end of the bargain