Job Closed

This listing is no longer active.

Application Security Engineer

Location

United States

Posted

184 days ago

Salary

0

Seniority

Mid Level

Job Description

Application Security Engineer

Valence

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a seasoned Application Security Engineer to help us secure our products and platform that serve our Fortune 500 customers. In this pivotal role, you will be working in close partnership with our engineering teams, ensuring that everything they build holds up to our security standards. While your primary focus will be application security, you are joining a small, elite team, and as such you will also work cross-domain, including working with MDM, or talking with customers directly. What You'll Do - Stay ahead of engineering: review code, architecture, design, anything that’s being considered for release - Guide features and designs toward security - Provide hands-on manual pentesting on relevant code changes - Build and maintain security tooling to ensure security scales with organization - Advise the DevOps team on infrastructure security best practices - Help out with client-facing security needs, such as client calls Qualifications - Proven experience securing products & platforms, collaborating with development teams - Strong expertise in application security: OWASP Top 10, threat modeling, code reviews, architecture design - Proficiency with AI tooling, as part of your day-to-day activities - Solid understanding of AI itself, including AI threats, adversarial testing - Familiarity with AWS and infrastructure security overall - Be comfortable writing and reviewing Python and TypeScript, with other coding experience a plus - Experience with incident response and SOC processes - Knowledge of compliance frameworks: SOC 2, ISO 27001, NIST - Experience with enterprise security processes, such as security questionnaires and client calls - We don’t expect candidates to have deep expertise in every area; strength in application security with curiosity and adaptability across adjacent domains is key What You'll Get - Ownership & Rapid Growth - Outsized missions from day one, with direct responsibility for company-defining projects - Work alongside the executive team with transparency into strategy and decision-making - Influence on direction through real-time customer feedback and market insights - AI-First Operator - Work directly with cutting-edge AI models and next-generation platforms - Build expertise in enterprise AI implementation across Fortune 500 companies and multiple industries - Establish yourself as a recognized leader among peers in shaping how AI transforms work at a global scale Compensation - Competitive salary including base + bonuses - Comprehensive health coverage (medical, dental, vision) from day one - Generous PTO, company-wide R&R shutdowns, and paid parental leave - Retirement plan support for US and global employees - A WFH stipend, phone stipend and support to work in a We Work or other space as preferred. Equity - Meaningful ownership in a venture-backed company at a growth inflection point - Financial upside that comes from scaling fast - Top-up grants as we scale and you deliver exceptional performance — your compensation grows alongside your impact Location and Work Environment - We’re looking for a candidate that can fully support our team in ET time zone (e.g. Toronto, NYC). - While we’re open to candidates from other areas, they need to be generally available during Eastern Time working hours. - Have valid travel documents without work authorization restrictions in the US. Diversity and Inclusion We are dedicated to creating a diverse and inclusive environment where everyone feels valued and supported. We encourage applications from candidates of all backgrounds and offer accommodations upon request throughout the hiring process. Employment Verification & Commitment We use third-party services to verify employment history, education, and other information relevant to your candidacy. Employment is contingent upon the successful completion of these verification checks. This is a full-time role that requires a high level of focus, availability, and commitment. Employees may not hold concurrent full-time employment with another organization while employed at Valence.

Job Requirements

  • Proven experience securing products & platforms, collaborating with development teams
  • Strong expertise in application security: OWASP Top 10, threat modeling, code reviews, architecture design
  • Proficiency with AI tooling, as part of your day-to-day activities
  • Solid understanding of AI itself, including AI threats, adversarial testing
  • Familiarity with AWS and infrastructure security overall
  • Be comfortable writing and reviewing Python and TypeScript, with other coding experience a plus
  • Experience with incident response and SOC processes
  • Knowledge of compliance frameworks: SOC 2, ISO 27001, NIST
  • Experience with enterprise security processes, such as security questionnaires and client calls
  • We don’t expect candidates to have deep expertise in every area; strength in application security with curiosity and adaptability across adjacent domains is key
  • What You'll Get
  • Ownership & Rapid Growth
  • Outsized missions from day one, with direct responsibility for company-defining projects
  • Work alongside the executive team with transparency into strategy and decision-making
  • Influence on direction through real-time customer feedback and market insights
  • AI-First Operator
  • Work directly with cutting-edge AI models and next-generation platforms
  • Build expertise in enterprise AI implementation across Fortune 500 companies and multiple industries
  • Establish yourself as a recognized leader among peers in shaping how AI transforms work at a global scale
  • Compensation
  • Competitive salary including base + bonuses
  • Comprehensive health coverage (medical, dental, vision) from day one
  • Generous PTO, company-wide R&R shutdowns, and paid parental leave
  • Retirement plan support for US and global employees
  • A WFH stipend, phone stipend and support to work in a We Work or other space as preferred.
  • Equity
  • Meaningful ownership in a venture-backed company at a growth inflection point
  • Financial upside that comes from scaling fast
  • Top-up grants as we scale and you deliver exceptional performance — your compensation grows alongside your impact
  • Location and Work Environment
  • We’re looking for a candidate that can fully support our team in ET time zone (e.g. Toronto, NYC).
  • While we’re open to candidates from other areas, they need to be generally available during Eastern Time working hours.
  • Have valid travel documents without work authorization restrictions in the US.
  • Diversity and Inclusion
  • We are dedicated to creating a diverse and inclusive environment where everyone feels valued and supported. We encourage applications from candidates of all backgrounds and offer accommodations upon request throughout the hiring process.
  • Employment Verification & Commitment
  • We use third-party services to verify employment history, education, and other information relevant to your candidacy. Employment is contingent upon the successful completion of these verification checks. This is a full-time role that requires a high level of focus, availability, and commitment. Employees may not hold concurrent full-time employment with another organization while employed at Valence.

Related Categories

Related Job Pages

More Security Engineer Jobs

Sangoma logo

Endpoint Security Engineer

Sangoma

Sangoma Technologies is a trusted world leader in value-based Unified Communications & UCaaS solutions.

Security Engineer184 days ago
OtherRemoteTeam 201-500Since 1984H1B Sponsor

• Serve as an escalation point for SOC/EDR/XDR alerts and suspected security incidents. • Automate and optimize Incident Response procedures with PowerShell, Python, and scripted API calls. • Write custom detection rules in EDR platforms such as CrowdStrike, SentinelOne, and Microsoft Defender. • Test and deploy EDR agent updates. • Evaluate and implement endpoint and endpoint adjacent security solutions. • Document Incident Response procedures and cross-train technical personnel on those procedures. • Participate in penetration testing and tabletop Incident Response exercises. • Produce and improve security dashboards and reports. • Maintain solution and procedure documentation. • Collaborate with IT, Infrastructure, and Cloud teams to implement secure endpoint configurations and controls. • Identify gaps in endpoint security coverage and recommend remediation or enhancements. • Support vulnerability remediation and endpoint hardening initiatives. • Participate in an on-call rotation, being reachable 24/7 during assigned on-call periods, one week per month. • Coordinate with SOC and IT teams to investigate and resolve high-priority endpoint security incidents during on-call periods.

Florida
$100K - $110K / year
Job Closed
Komodo Health logo

Senior IAM Engineer

Komodo Health

In our mission to reduce the burden of disease, our Healthcare Map™ answers healthcare's most complicated questions.

Security Engineer185 days ago
OtherRemoteTeam 501-1,000Since 2014H1B Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are looking for a hybrid IAM Engineer and Integration Specialist who understands that identity is the foundation of business operations. In this role, you won't just manage logins; you will build the Integration/Orchestration Infrastructure that powers our most critical revenue cycles. As an IAM Engineer, you will play a critical role in securing our systems and data. You will have the opportunity to work with cutting-edge IAM technologies, collaborate with cross-functional teams, and influence the development of our IAM strategy. Your work will directly impact the security and efficiency of our operations. You will be responsible for ensuring that our AI Infrastructure and Data Infrastructure are securely accessible and perfectly synced with our business logic, primarily focusing on the Revenue automation pipeline. Our team is responsible for overseeing all aspects of automation & security at Komodo Health. We implement and maintain security solutions to protect our systems and data, manage identity and access controls, and handle incident response. We also conduct security assessments, monitor for potential threats, and collaborate with other teams to ensure compliance with security policies and regulations. Our goal is to create a secure and resilient environment that supports the company's growth and innovation. Looking back on your first 12 months at Komodo Health, you will have accomplished: - Identity Lifecycle Management: Design and maintain automated onboarding, offboarding, and departmental transfer processes across our ecosystem (WorkDay, Okta, Google Workspace, etc.). - Integration & Orchestration: Build and optimize complex, multi-step automation flows. Assist with maintaining and growing our iPaaS (Workato) environment, treating "Integrations as a Product." Build resilient, scalable "recipes" that move data across the enterprise while maintaining strict IAM governance utilizing Okta Workflows. - Access Governance: Implement and enforce Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) models. - Security & Compliance: Manage SSO (SAML/OIDC) and MFA configurations. Ensure all access remains compliant with [SOC2/HIPAA/GDPR] standards through regular access reviews and audit logging. - Custom Tooling: Develop custom scripts (Python, Perl, Ruby, etc.) and API integrations to bridge gaps where out-of-the-box connectors are unavailable. - Data & AI Infrastructure Support: Secure the "Data Perimeter." Ensure that data scientists and AI models have the correct, least-privileged access to our Data Infrastructure (Data Lakes/Warehouses). Manage the identity lifecycle for AI Agents and Service Accounts, ensuring that automated "non-human" workers are governed with the same rigor as employees. - Business Process Optimization: Collaborate with HR, Finance, Sales Ops and other teams to identify bottlenecks in the lead-to-revenue lifecycle and solve them through identity-driven automation. You will accomplish these outcomes through the following responsibilities: - Collaborate with cross-functional teams. - Improve provisioning/deprovisioning processes. - Integrate and manage IdPs within the IAM system. - Handle and streamline access requests. - Develop and implement IAM policies and procedures. - Respond to ad-hoc requests. Qualifications - Scripting: Proficiency in Python, Ruby or other languages for automating repetitive tasks and handling large-scale data imports/exports. - Automation Mindset: Leveraging technology with a proven ability to build event-driven flows, use custom API connectors, and handle error logic. - APIs: Comfortable working with RESTful APIs, JSON, and Webhooks. - Infrastructure as Code: Experience using Terraform or Github to manage identity providers. - Security Mindset: Understanding of Zero Trust architecture and Privileged Access Management (PAM) tools like CyberArk, BeyondTrust, etc. - 5–8+ years of experience in Identity and Access Management, including significant hands-on expertise with Okta (including OIE & OIG). - Strong understanding of identity lifecycle management, directory services, SSO, MFA, SCIM provisioning, and federation (SAML, OIDC, OAuth). - Proven experience partnering with HR, Finance, Compliance, and other cross-functional teams to design and implement IAM & Enterprise solutions. - Demonstrated ability to streamline and automate processes using automation. - Experience with auditing, governance, and access certification processes. - Excellent problem-solving, communication, and stakeholder management skills. Requirements - Experience with Workato or similar Integration Orchestrator tools such as Zapier, Snaplogic or Merge. - Experience with Okta Workflows. - Certifications: Workato or Okta Certified Professional/Administrator/Consultant. - Experience integrating IAM with HR systems (e.g., Workday). - Knowledge of compliance requirements related to IAM. - Background in cloud platforms (AWS, GCP, Azure) and IAM integrations. - Experience with IAM tools such as Auth0, or Azure AD. Company Description At Komodo Health, our mission is to reduce the global burden of disease. And we believe that smarter use of data is essential to this mission. That’s why we built the Healthcare Map — the industry’s largest, most complete, precise view of the U.S. healthcare system — by combining de-identified, real-world patient data with innovative algorithms and decades of clinical experience. As we pursue these goals, it remains essential to us that we stay grounded in our values: be awesome, seek growth, deliver “wow,” and enjoy the ride. At Komodo, you will be joining a team of ambitious, supportive Dragons with diverse backgrounds but a shared passion to deliver on our mission to reduce the burden of disease — and enjoy the journey along the way.

United States
Job Closed
AireSpring logo

IT Security Systems Administrator – Telecom

AireSpring

Global provider of Managed SD-WAN, UCaaS, Managed Security, and Business Internet to Multi-location enterprises.

Security Engineer185 days ago
Full TimeRemoteTeam 201-500Since 2001H1B No Sponsor

• Manage enterprise firewalls, including Cisco Meraki, SonicWall, and Fortinet. • Monitor and respond to security alerts using XDR, RMM, and SIEM platforms. • Lead incident response, breach remediation, and root-cause analysis. • Administer Bitdefender Endpoint Protection and similar endpoint security tools. • Secure the Microsoft 365 tenant, including Defender, identity protection, and conditional access policies. • Support SOC 2 and ISO 27002 compliance activities. • Collaborate with internal teams to support telecom-specific applications and integrations. • Monitor system performance, troubleshoot issues, and provide timely resolutions to minimize downtime. • Ensure compliance with telecom industry standards, data protection regulations, and company policies. • Create and maintain documentation for system configurations, processes, and troubleshooting guides. • Perform Windows Server and Linux administration. • Manage user accounts, access permissions, and IT resources across enterprise systems. • Support and maintain virtualization platforms (VMware and Hyper-V). • Perform networking fundamentals and troubleshooting. • Provide technical support to end users, ensuring effective communication and timely resolution of IT-related concerns. • Research and recommend technology upgrades or enhancements to optimize IT operations. • Stay current with the latest IT trends and best practices relevant to the telecom sector.

Brazil
Job Closed
LocalStack logo

Head of Security

LocalStack

Run your cloud & serverless apps locally to reduce development time and increase product velocity with LocalStack!

Security Engineer185 days ago
Full TimeRemoteTeam 51-200

• Ensure robust security posture of our product across various components • Lead initiatives for incident monitoring, intrusion detection, and vulnerability management • Define and implement regular security auditing procedures across systems and access controls • Deliver a sustainable process for vendor risk assessments and other security-related initiatives • Ensure secure configurations and permission models while collaborating with engineering teams • Identify gaps between claimed and actual compliance and propose/lead corrective actions • Own documentation of security controls, configurations, and policies • Engage with internal stakeholders to evaluate different security threats and attack vectors • Generate and distribute internal audit and compliance reports at regular intervals

Spain
Job Closed