Application Security Engineer
PandaDoc
před 8 dny
- Zveřejněno
- Typ úvazku
- Plný úvazek
Platové rozmezí
Získej přístup k AI odhadu mzdy
Odemkni odhad mzdy a zjisti, jak si stojí tato pozice na trhu.
Aplikační bezpečnostSeniorSAST/SCA/DAST/WAFAWS / cloud securityPython / BashKomunikační dovednostiAngličtina B2+Remote
Získej víc odpovědí od zaměstnavatelů
Pošli zaměstnavateli životopis na míru během pár minut.
Koho hledáme
- 3+ years of experience with application security tools such as SAST/SCA, DAST, WAF, CI/CD security, and penetration testing
- 2+ years of cloud security experience implementing security controls and best practices in AWS, GCP, or Microsoft Azure
- Strong background in web application security, including common vulnerability classes (OWASP Top 10, CWE Top 25), attack vectors, and mitigations
- Good understanding of access control and identity management principles (SAML 2.0, OAuth, OIDC, JWT, etc.)
- Practical skills building security automation and tooling with Python, Bash, or equivalent languages
- Experience implementing DevSecOps practices across the SDLC
- Familiarity with containerized, Kubernetes-based environments and their security
- Solid interpersonal, written, and verbal communication skills
- Upper-Intermediate English level (B2+)
Co budeš dělat
- Review, test, and monitor our applications to identify security weaknesses
- Manage vulnerabilities from discovery through remediation, working directly with engineering teams to resolve them
- Respond to infrastructure security alerts and perform hardening, including reviewing roles and permissions across services and APIs
- Participate in incident response and root cause analysis
- Analyze and monitor relevant security threats and prevention measures based on industry trends and standards
- Partner with product, development, and infrastructure teams to embed security requirements into how they build
- Integrate and operate automated security testing across the development lifecycle, including SAST, DAST, SCA, secrets detection, container, and supply chain security
- Develop security automation and tooling to scale security across engineering
- Drive threat modeling and secure-by-design practices across our services
- Assess our overall security posture and identify risks, providing recommendations to strengthen it
- Assist in addressing emergent threats in AI security as PandaDoc deploys AI in its product and for internal use
O pozici
As PandaDoc continues to scale, we’re expanding our security team and looking for an Application Security Engineer to help shape and strengthen our security foundations. In this role, you’ll take ownership of key security initiatives across our application, working closely with engineering to embed security into every stage of development. You’ll contribute to building a proactive, automation-driven security culture while addressing both current risks and emerging challenges, including AI security.
Benefity
- A competitive salary. If you are located in Poland, the salary range is 222000 to 334000 PLN annually.
- An honest, open culture that emphasizes feedback and promotes professional and personal development
- An opportunity to work from anywhere — our team is distributed worldwide, from Lisbon to Manila, from Florida to California
- 6 self care days
- And much more!
