Enable job alerts via email!

Senior Application Security Engineer

Loop

Chicago (IL)

Remote

USD 141,000 - 213,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking a Senior Application Security Engineer to ensure the security and integrity of systems and data. This role involves collaborating on security projects, monitoring vulnerabilities, and mentoring team members. The ideal candidate will have extensive experience in application security and a strong understanding of cloud security best practices. Join a flexible work environment that values innovation and security awareness.

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
Flexible PTO
401k
Wellness Benefits
Home Workstation Stipend
Phone/Internet Support
Parental Leave
Equity

Qualifications

  • Minimum of 7 years' experience in application development, DevOps, and security engineering.
  • Solid knowledge of OWASP Top 10 vulnerabilities and their prevention.

Responsibilities

  • Participate in security projects and support SOC2 compliance.
  • Utilize monitoring tools to identify security concerns in production.

Skills

Application Security
Risk Management
Cloud Security
Vulnerability Assessment
Communication

Tools

AWS
Python
Bash
SIEM
WAF

Job description

About the Engineering Organization:

The Engineering Team at Loop thrives on a balance of agility, consistency, and performance. These pillars empower us to consistently deliver impactful value to our customers. This deep customer understanding fuels our engineering teams to be leaders in our space, bringing innovative ideas to the market.

About the Role:

As a Senior Application Security Engineer at Loop, your primary responsibility will be to ensure the security and integrity of our systems and data. This involves actively collaborating on security projects, identifying and communicating potential risks, and implementing effective security measures.

You will play a key role in maintaining a secure environment by proactively monitoring and remediating vulnerabilities, responding to security incidents, and conducting regular security audits. Additionally, you will participate in engineering team activities, share your expertise, and mentor other team members on security best practices.

Furthermore, you will be a strong advocate for security within the organization, promoting a culture of security awareness and continuously seeking opportunities to improve our security posture.

Our Blended Work Environment:

At Loop, we offer flexibility and choice through our Blended Working Environment. You can work from our HQ in Columbus, Ohio, join a Hub with 4+ team members, or work fully remotely. Our team spans the United States, select Canadian provinces (Ontario & British Columbia), and the United Kingdom, allowing you to create a work environment that suits your preferences and lifestyle.

Our Tech Stack:

While Loop utilizes core technologies, the specific tech stack varies across teams. You might encounter technologies such as Vue.js, Node.js, PHP/Laravel, MySQL, DynamoDB, Docker, Kubernetes, AWS Cloud, Gitlab, and Serverless Framework. The security stack includes Vanta, Sysdig, Cloudflare, and other vulnerability and scanning solutions.

What you’ll do:
  • Participate in security projects, delivering secure and well-documented work. Support SOC2 compliance and Pen Testing initiatives.
  • Deeply understand how to secure networks, applications, infrastructure, and data. Hands-on expertise in some secure software development lifecycle areas with organizational support needed for others. Provide technical guidance and identify automation opportunities.
  • Utilize monitoring and vulnerability scanning tools to identify security concerns within the production environment and systems, remediating findings or communicating them to the relevant team for triage.
  • Quickly learn the team's tech stack, security tools, and environment. Manage security projects independently, escalating when needed. Meet project deadlines and explore automation opportunities.
  • Build relationships with engineers. Provide actionable security feedback to developers. Lead security discussions.
  • Prioritize security issues based on risk assessments.
  • Own and drive security incident response.

Your experience:

  • Minimum of 7 years' combined experience in application development or DevOps, and security engineering.
  • Solid knowledge of common application security vulnerabilities and their prevention (e.g., OWASP Top 10, SANS Top 25).
  • Experience in security testing, including code review, SAST, DAST, and vulnerability scanning.
  • Familiarity with integrating security measures into all phases of software development, from initial concept to launch, including “Shift Left” security.
  • Experience with SIEM, WAF, Risk Management Platforms, SAST/DAST or similar tools.
  • Deep understanding of cloud security best practices, especially AWS security services and architectures.
  • Proficiency in at least one scripting language (e.g., Python, Bash) for automating security tasks and integrating tools.
  • Skilled in identifying, evaluating, prioritizing, and monitoring security vulnerabilities.
  • Proven experience in handling security incidents, including identification, containment, and remediation.
  • Ability to communicate technical security concepts clearly to both technical and non-technical audiences and collaborate effectively across teams.
  • Ability to analyze security issues, identify root causes, and recommend effective solutions.
We offer a competitive salary range of $141,600 - $212,400 annually, based on experience, location, and other factors. Benefits include medical, dental, vision insurance, flexible PTO, holidays, sick leave, parental leave, 401k, wellness benefits, home workstation stipend, phone/internet support, and equity.

#LI-ST1

Loop Story:

In an ideal world, Loop wouldn't exist. We aim to create a world where consumption is mindful, products are loved, and shared values connect us. Currently, commerce has its flaws, and Loop creates second chances.

We're revolutionizing the post-purchase experience, starting with returns, turning them into positive interactions that deepen connections between consumers, brands, and products.

We prioritize a work environment that values empathy and wellbeing, allowing you to grow quickly and meaningfully. Learn more about us at: https://loopreturns.com/careers. You can review our privacy notice here.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Application Security Engineer (Remote - USA)

Lensa

Annapolis

Remote

USD 192,000 - 226,000

Today
Be an early applicant

Senior Application Security Engineer (Remote - USA)

Lensa

Atlanta

Remote

USD 192,000 - 226,000

Today
Be an early applicant

Senior Application Security Engineer (Remote - USA)

Lensa

Springfield

Remote

USD 192,000 - 226,000

Today
Be an early applicant

Senior Application Security Engineer

Loop

Los Angeles

Remote

USD 141,000 - 213,000

Today
Be an early applicant

Senior Application Security Engineer

Loop

Austin

Remote

USD 141,000 - 213,000

Today
Be an early applicant

Sr. Application Security Engineer

Prosper Marketplace

Remote

USD 100,000 - 150,000

7 days ago
Be an early applicant

Sr. Application Security Engineer

Alteryx, Inc

Remote

USD 129,000 - 161,000

8 days ago

Senior Application Security Engineer (Remote US)

Experian Health

Costa Mesa

Remote

USD 87,000 - 152,000

13 days ago

Senior Application Security Engineer (Remote US)

Experian

Costa Mesa

Remote

USD 90,000 - 150,000

8 days ago