OpenAI03.10.2024
Security Engineer, Application Security
Зарплата не указана
Полная занятостьУдалёнка
Обязанности
- 01Perform Security Assessments: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software
- 02Develop and Implement Security Tools: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats
- 03Collaborate with Development Teams: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines
- 04Threat Modeling and Risk Assessment: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies
- 05Vulnerability Management: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts
- 06Incident Response Support: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents
- 07Stay Current on Security Trends: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications
Требования
- 01Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles
- 02Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response
- 03Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks
- 04Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods
- 05Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences
Условия
- 01The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work
- 02We use a hybrid work model of 3 days in the office per week
- 03Offer relocation assistance to new employees