Enable job alerts via email!

Senior Application Security Engineer

ZipRecruiter

San Francisco (CA)

Hybrid

USD 135,000 - 170,000

Full time

12 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as an Application Security Engineer, focusing on DevSecOps to enhance security practices within a dynamic development environment. You will play a crucial role in monitoring security infrastructure, leading incident responses, and collaborating with teams to implement secure solutions. This innovative firm values inclusivity and offers a hybrid work experience, allowing you to thrive while making significant contributions to community safety. With a competitive salary and comprehensive benefits, this position is ideal for those looking to make a meaningful impact in security operations.

Benefits

Comprehensive health coverage
Dental insurance
Vision insurance
OneMedical membership
Equity grants
Flexible work environment

Qualifications

  • 5+ years in security operations or vulnerability management roles.
  • Experience with cloud microservices and access management.
  • Certifications such as OSCP, CEH, or AWS Security.

Responsibilities

  • Continuously monitor security infrastructure and identify suspicious activities.
  • Lead incident response efforts and execute remediation strategies.
  • Conduct security audits and vulnerability assessments to reduce risks.

Skills

Scripting (Python, Bash)
Security Operations
Vulnerability Management
Developer Security Training
Incident Response
Communication Skills
Teamwork

Education

Bachelor's degree in Computer Science
Degree in Information Security

Tools

CI/CD tools
Automated Testing Tools (SCA, SAST, DAST, CNAPP)
macOS MDM
Cloud Environments (AWS, GCP)
Security Dashboards

Job description

Job Description #TeamNextdoor

Nextdoor (NYSE: KIND) is the essential neighborhood network. Neighbors, public agencies, and businesses use Nextdoor to connect around local information that matters in more than 340,000 neighborhoods across 11 countries. Nextdoor builds innovative technology to foster local community, share important news, and create neighborhood connections at scale. Download the app and join the neighborhood at nextdoor.com.

Meet Your Future Neighbors

As an Application Security Engineer (focusing on DevSecOps), you will be responsible for monitoring Nextdoor's enterprise and product core platforms/systems and managing security tools and capabilities. This role requires an understanding of security threats, vulnerabilities, and organizational best practices to mitigate them. The ideal candidate will have a proactive mindset, staying ahead of potential security issues, and solving security challenges with practical solutions.

At Nextdoor, we offer an inclusive work environment. We embrace a hybrid experience, enabling connectedness while providing flexibility for our valued employees.

The Impact You'll Make

In this role, you will enable developers to build secure applications and infrastructure at Nextdoor. You will collaborate with engineers to establish secure-by-default practices and application security monitoring, balancing 'shift left' and 'shift right' security approaches, and embedding security into fast-moving development processes.

Your responsibilities include providing critical application security services such as security reviews, developer security education, incident response, and leading security initiatives across the platform through new tools and processes.

Responsibilities
  1. Continuously monitor security infrastructure and identify suspicious activities.
  2. Utilize data and security tools to analyze and respond to security alerts.
  3. Lead incident response efforts, executing remediation and closure strategies.
  4. Maintain vulnerability reporting and bug bounty programs.
  5. Triage vulnerability and threat notifications for prioritization and remediation.
  6. Conduct security audits and vulnerability assessments to identify threats and reduce risks.
  7. Implement and maintain security controls across devices and cloud environments.
  8. Collaborate with IT, DevOps, and Cloud Infrastructure teams to integrate security practices and tools.
  9. Build integrations and implement technologies to support security operations.
  10. Automate security detections, reporting, and integrations through scripting.
  11. Provide security awareness training for new hires and staff.
  12. Stay informed on emerging threats and update security measures accordingly.
  13. Maintain detailed documentation of security procedures and policies.
  14. Ensure compliance with regulations such as GDPR, HIPAA, ISO 27001.
  15. Assist with security audits and participate in team-building activities.
What You'll Bring
  • Experience with scripting (Python, Bash), APIs, and automation.
  • 5+ years in security operations or vulnerability management roles.
  • Deep understanding of Nextdoor's platform, CI/CD, and security mechanisms.
  • Leadership in developing secure solutions and threat modeling.
  • Experience in developer security training and automated testing tools (SCA, SAST, DAST, CNAPP).
  • Ability to identify top threats and prioritize remediation.
  • Empathy for customers and engineers, advocating scalable solutions.
  • Security championing across teams and incident response participation.
  • Bachelor's degree in Computer Science, Information Security, or related field.
  • Excellent communication and teamwork skills.
  • Experience with macOS MDM, cloud environments (AWS, GCP).
  • Experience with cloud microservices, IaaC, IdPs, SSO, and Access Management.
  • Threat-driven or offensive security mindset with practical defense experience.
  • Building security dashboards and data analytics experience.
  • Certifications such as OSCP, CEH, GIAC, AWS Security, or relevant code projects (share GitHub links).
Rewards

The starting salary ranges from $135,000 to $170,000 USD annually, potentially higher based on proficiency. Equity grants are awarded with quarterly vesting, starting within the first 3 months. Benefits include comprehensive health coverage, dental, vision, and a OneMedical membership. Total compensation varies based on skills and experience.

We foster an inclusive environment that reflects our neighbors. We encourage all qualified applicants and do not discriminate based on any protected traits. We consider applicants with arrest and conviction records per the San Francisco Fair Chance Ordinance.

For more info on our data practices, see Nextdoor's Personnel Privacy Notice.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Sr. Application Security Engineer

Alteryx, Inc

Remote

USD 129,000 - 161,000

5 days ago
Be an early applicant

Senior Application Security Engineer (Remote US)

Experian

Costa Mesa

Remote

USD 90,000 - 150,000

5 days ago
Be an early applicant

Sr. Application Security Engineer

Prosper Marketplace

Remote

USD 100,000 - 150,000

4 days ago
Be an early applicant

Senior Application Security Engineer (Remote US)

Experian Health

Costa Mesa

Remote

USD 87,000 - 152,000

10 days ago

Senior Application Security Engineer (Remote US) @ Experian

Cyber Crime

Costa Mesa

Remote

USD 100,000 - 140,000

10 days ago

Senior Application Security Engineer

First American Financial

Remote

USD 146,000 - 183,000

11 days ago

Senior Application Security Engineer

Out in Science, Technology, Engineering, and Mathematics

San Francisco

On-site

USD 152,000 - 245,000

12 days ago

Senior Application Security Engineer

Cloudflare, Inc.

San Francisco

On-site

USD 90,000 - 150,000

8 days ago

Senior Application Security Engineer

Upstart

Columbus

Hybrid

USD 163,000 - 227,000

4 days ago
Be an early applicant