OpenAI10/03/2024

Инженер по безопасности, безопасность приложений

Salary not specified
MARKET
15,000median for this role
CISO · 13 jobs with disclosed pay
7,333half of the offers: 9,600–17,69433,750
The employer didn't disclose pay — compare with the market yourself.
Полная занятостьУдалёнка

Responsibilities

  • 01Perform Security Assessments: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software
  • 02Develop and Implement Security Tools: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats
  • 03Collaborate with Development Teams: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines
  • 04Threat Modeling and Risk Assessment: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies
  • 05Vulnerability Management: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts
  • 06Incident Response Support: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents
  • 07Stay Current on Security Trends: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications

Requirements

  • 01Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles
  • 02Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response
  • 03Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks
  • 04Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods
  • 05Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences

What we offer

  • 01The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work
  • 02We use a hybrid work model of 3 days in the office per week
  • 03Offer relocation assistance to new employees