We are on a mission to unlock the world's best food creators and bring their dishes to the doorstep of the masses.
Senior Application Security Engineer
Location
Latin America
Posted
15 days ago
Salary
0
Seniority
Senior
Job Description
Senior Application Security Engineer
CookUnity
• Lead application security efforts by performing security assessments, code reviews, and penetration testing focused on applications developed in Kotlin, Java, and TypeScript. • Identify, classify, prioritize, and track remediation of vulnerabilities such as those listed in the OWASP Top 10 and other common weaknesses. • Use and maintain application security tools such as Burp Suite for dynamic testing, SAST/DAST/IAST tools, and other automated security scanners. • Collaborate closely with software development teams to enforce secure coding standards and hold Software Engineers accountable for patching vulnerabilities within defined SLAs. • Integrate security testing and automation into CI/CD pipelines to ensure continuous security validation. • Define and maintain security requirements and best practices aligned with industry standards such as OWASP, NIST, ISO, PCI DSS, and GDPR. • Conduct threat modeling, risk assessments, and security design reviews for new and existing applications. • Promote security awareness and provide training to development teams on secure coding and vulnerability mitigation. • Respond to security incidents and support remediation efforts. • Recommend and implement new security tools and technologies to improve application security posture. • Work in Agile and DevSecOps environments to embed security throughout the software development lifecycle.
Job Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, or related field.
- 6-8+ years of experience in application security, secure coding, and vulnerability assessment.
- Strong development background with hands-on experience in Kotlin, Java, and Typescript.
- Deep understanding of OWASP Top 10, CWE, and common web and API vulnerabilities.
- Proficient with security testing tools such as Burp Suite, Fortify, Veracode, or similar.
- Experience with secure SDLC, DevSecOps practices, and integrating security into CI/CD pipelines.
- Familiarity with authentication and authorization protocols like OAuth2, OIDC, and SAML.
- Ability to work effectively with development teams, guiding and holding them accountable for timely vulnerability remediation.
- Relevant certifications such as CISSP, CSSLP, OSCP, GWAPT.
- Fluency in English.
Benefits
- 💸 Get paid in USD, Crypto, Euro, ARS. Whatever your choice! We use Rippling to make things easier for you!
- 🗺 Work remotely: design the life that you want.
- ⛱ Enjoy 15 days of vacation each year from the start date.
- 🎄 16 fully paid Argentinean holidays.
- 🩺 Healthcare Benefit: Monthly stipend to use in your preferred healthcare provider.
- 🗓️ 5- year Sabbatical: After 5 years with CookUnity, you get a 4-week paid sabbatical.
- 🐣 Paid family leave.
- 🕯 Compassionate Leave: 3-5 days each time the need arises.
- 🧘🏽♀️ Flexible benefits, your way: a prepaid card you can use on wellness, learning, food, and more.
- 🤖 AI-forward workplace: enterprise access to ChatGPT and Claude to help you work smarter and grow faster.
- 🧑🏫 Personalized English coach.
Related Guides
Related Categories
Related Job Pages
More Application Engineer Jobs
Application Engineer, Intermed
Keysight Technologies, Inc.Keysight is on the forefront of technology innovation, delivering breakthroughs and trusted insights in electronic design, simulation, prototyping, test, manufacturing, and optimization. Our ~15,000 employees create world-class solutions in communications, 5G, automotive, energy, quantum, aerospace, defense, and semiconductor markets for customers in over 100 countries. Diversity, equity & inclusion are integral parts of our culture and drivers of innovation at Keysight. We believe that when people feel a sense of belonging, they can be more creative, innovative, and thrive at all points in their careers.
Role Description PowerArtist is a leading RTL power analysis and optimization platform widely adopted across top semiconductor and SoC companies for early power estimation and debug. With increasing industry focus on low-power design and faster tape-outs, PowerArtist plays a critical role in enabling early power closure and design efficiency. This position offers strong customer visibility, exposure to advanced SoC programs, and the opportunity to work closely with leading semiconductor customers to drive power optimization/estimation success. Responsibilities - Act as primary technical interface for customers using PowerArtist. - Perform rapid installation, deployment, and configuration in customer environments. - Set up and debug RTL power analysis flows (libraries, VCD/FSDB, scripts). - Provide fast response and resolution to customer technical issues. - Analyze power reports, identify hotspots, and recommend optimization techniques. - Support integration with simulation and synthesis flows. - Conduct technical discussions, demos, and customer training sessions. - Escalate complex issues to R&D with clear technical documentation. - Ensure adherence to defined SLAs and maintain high customer satisfaction. Qualifications - 3+ years experience in RTL design / power analysis domain. - Strong hands-on experience with PowerArtist / RTL power estimation tool. - Solid understanding of RTL (Verilog/SystemVerilog) and switching activity concepts. - Knowledge of dynamic and clock power analysis methodologies. - Experience handling VCD/FSDB waveform-based power estimation. - Familiarity with synthesis tools (Design Compiler/Genus preferred). - Strong debugging and log analysis capability. - Scripting knowledge (TCL/Shell/Python) for automation. - Excellent communication and customer interaction skills. Company Description Keysight is at the forefront of technology innovation, delivering breakthroughs and trusted insights in electronic design, simulation, prototyping, test, manufacturing, and optimization. Our ~15,000 employees create world-class solutions in communications, 5G, automotive, energy, quantum, aerospace, defense, and semiconductor markets for customers in over 100 countries. Our award-winning culture embraces a bold vision of where technology can take us and a passion for tackling challenging problems with industry-first solutions. We believe that when people feel a sense of belonging, they can be more creative, innovative, and thrive at all points in their careers.
Senior Application Security Engineer
TripadvisorTripadvisor, founded in 2000, is an award-winning network for travel information that features real advice from global travelers. The world’s largest travel s
Role Description We are looking for an experienced Senior Application Security Engineer to join our growing team at Viator. In this role, you will take a lead position in securing the applications that power our platform. As a Senior Engineer, you will design and implement advanced security measures, mentor junior engineers, and play a key role in ensuring the security of our products and infrastructure. This is a fantastic opportunity to influence our security practices and help shape the future of application security within the organisation. We are a remote-first company. This role is based remotely in Portugal. What You’ll Do: - Demonstrated ability to use AI tools to improve efficiency, quality, and decision-making in day-to-day work. - Proven ability to operate effectively with a global-first mindset. - Lead the design and implementation of advanced application security measures, including encryption, secure APIs, and identity management. - Conduct in-depth threat modelling and risk assessments to identify and mitigate potential security risks. - Perform manual security assessments including code reviews. - Act as a Subject Matter Expert (SME) for security breaches, including performing root cause analysis and creating corrective actions related to security vulnerabilities. - Develop and enforce application security policies across multiple engineering teams, ensuring consistency and scalability. - Mentor and train junior engineers, helping them improve their security knowledge and practices. - Provide expert advice on security architecture and design for new features and systems. - Collaborate with engineering and product teams to integrate security requirements into software development lifecycles. - Champion security initiatives by advocating for prioritisation of security issues and resolution of technical debt. - Stay up to date with the latest security threats and industry best practices, ensuring that the team remains proactive in its approach to security. Qualifications - Extensive experience in application security, including expertise in secure coding practices, threat modelling, vulnerability assessments, and incident response. - Hands-on experience with security testing tools (SAST, DAST) and their integration into development pipelines. - Strong understanding of advanced security concepts such as encryption, secure software design, identity management, and API security. - Experience with cloud security (AWS, Azure, etc.) and securing microservices architectures. - Proven leadership skills, with the ability to guide and mentor other engineers and influence security practices across teams. - Excellent communication and collaboration skills, with a track record of working closely with cross-functional teams to improve security posture. - 4+ years experience working as a Security Engineer / Application Security Analyst. Preferred Qualifications - Experience with regulatory frameworks (e.g., GDPR, PCI-DSS, SOC 2) and their integration into security processes. - Industry-recognised security certifications (e.g., OSCP, OSCE, or similar). - Familiarity with the latest security tools and frameworks to proactively identify vulnerabilities and mitigate threats. - A passion for mentoring and developing others, with a commitment to continuous learning and improvement. Benefits - Competitive compensation packages (routinely benchmarked against the latest industry data), including base salary and annual bonuses. - “Work your way” with flexibility to suit your lifestyle. Tripadvisor Group takes a remote-friendly approach to collaboration across a worldwide team, with the option to join on-site as often as you’d like or as required by your team. - Flexible schedule. Work-life balance is ingrained in our culture by design. Trust and accountability make it work. - Donation matching. Give back? Give more! We match qualifying charitable donations annually. - Tuition assistance. Want to level up your career? We love to hear it! Receive annual support for qualified programs. - Lifestyle benefit. An annual benefit to spend on yourself. Use it on travel, wellness, or whatever suits you. - Travel perks. We believe that travel is employee development, so we provide discounts and more. - Employee assistance program. We’re here for you with resources and programs to help you through life’s challenges. - Health benefits. We offer great coverage and competitive premiums.
- Review customer applications and propose technical solutions to ensure product performance - Provide technical support to Sales and Product Management teams on spherical plain bearing design and applications - Support cost analysis, customer support, quality assurance, production support, and new application reviews - Work with customers to resolve technical issues and application-related challenges - Prepare and deliver technical presentations together with Sales Engineers for target accounts - Act as a technical consultant on product design, application issues, service problems, quality deviations, and material or component substitutions - Ensure drawings and process documentation comply with technical specifications and customer requirements - Define bearing testing requirements, test plans, and validation processes - Analyze and report test results to customers to support product approval - Approve new product designs and release them to manufacturing - Coordinate projects internally and externally, acting as a technical interface between customers, engineering teams, and management - Travel occasionally for customer visits, approximately 10–20% of the time
Application Security Engineer
Booz Allen HamiltonBooz Allen Hamilton is an award-winning provider of strategic innovation, management consulting, technology, and engineering services. Founded in 1914, the comp
Locations: Fort Meade, MD Pensacola, FL Mechanicsburg, PA Columbus, OH San Antonio, TX Ford Island, HI Scott AFB, IL Tinker AFB, OK Hill AFB, UT Work Type: Hybrid, Full Time Job ID:R0239465 Job Description: Everyone is trying to "harness the cloud," but not everyone knows how. As a cloud computing infrastructure architect, you know how to take advantage of cloud capabilities. On our team of experienced professionals, you'll use cutting-edge enterprise cloud platforms to support your clients as they modernize their IT infrastructure and meet their most challenging missions. We're looking for someone like you to help support national security. Whether modernizing legacy computing platforms and applications or creating new ones from scratch, you'll have the latest tech and brightest teammates at your fingertips. Join us. The world can't wait. You Have: - 4+ years of experience with supporting DoD enterprise architecture - 4+ years of experience with designing, implementing, and administering F5 BIG-IP - 4+ years of experience with In-Line Break and Inspect solutions, such as reverse web proxy and forward web proxy - Experience with configuring and troubleshooting TLS and Mutual TLS on a proxy - Experience working with DoD clients and stakeholders troubleshooting issues in an enterprise architecture - Knowledge of cryptography protocols and standards, including TLS, mTLS, hashing algorithms, and Public Key Infrastructure (PKI) - Ability to travel to CONUS and OCONUS locations up to 25% of the time - Secret clearance - HS diploma or GED Nice If You Have: - Experience with using Office 365 applications, including collaborating with Teams - Experience working in DoD Cloud and on-premises cloud environments - Experience interacting with tools through RDP, web-based UI, SSH, and CLI - Knowledge of federal compliance standards, including NIST 800-53, FIPS, DoD STIG, and FedRAMP - Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic OS issues - Knowledge of networking protocols Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,900.00 to $198,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. Identity Statement As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Candidate AI Usage Policy AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work Model Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings. - Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility. - Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility. - Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.



