Job Closed

This listing is no longer active.

Coupa Software logo
Coupa Software

Spend is the fuel to help your company deliver performance, profitability, and purpose!

Lead Application Security Engineer - 11006

Security EngineerSecurity EngineerOtherRemoteLeadTeam 1,001-5,000Since 2006H1B SponsorCompany SiteLinkedIn

Location

Massachusetts

Posted

112 days ago

Salary

$142K - $184.5K / year

Seniority

Lead

Bachelor Degree9 yrs expEnglish.NETJavaPython

Job Description

Lead Application Security Engineer - 11006

Coupa Software

Coupa makes margins multiply through its community-generated AI and industry-leading total spend management platform for businesses large and small. Coupa AI is informed by trillions of dollars of direct and indirect spend data across a global network of 10M+ buyers and suppliers. We empower you with the ability to predict, prescribe, and automate smarter, more profitable business decisions to improve operating margins. Why join Coupa? 🔹 Pioneering Technology: At Coupa, we're at the forefront of innovation, leveraging the latest technology to empower our customers with greater efficiency and visibility in their spend. 🔹 Collaborative Culture: We value collaboration and teamwork, and our culture is driven by transparency, openness, and a shared commitment to excellence. 🔹 Global Impact: Join a company where your work has a global, measurable impact on our clients, the business, and each other. Learn more on Life at Coupa blog and hear from our employees about their experiences working at Coupa. The Impact of a Lead Application Security Engineer at Coupa: We are looking for an extremely talented Lead Application Security Engineer to join our Application Security Team. You will be part of a global agile group that is responsible for building the best-in-class SaaS platform, deployment infrastructure, and services. The position will require a candidate to drive security architecture, perform design and threat modeling reviews , and design, develop, maintain, and scale Coupa’s security features and application security tooling. This role is critical in ensuring the security of our cutting-edge, highly scalable platform, including the review and guidance for new technological domains such as Artificial Intelligence (AI) and Machine Learning (ML) systems . What You'll Do: Expand the application security landscape at Coupa Being a hands-on developer is a key responsibility in this role, with strong proficiency in secure coding practices Strong software development skills in languages such as Java, .Net, and Python Ability to perform code reviews and mentor junior team members Passion for building security-focused features that perform at scale Track vulnerability reports and contribute security fixes Design and implement application changes to meet security compliance requirements

Job Requirements

  • Lead and execute Security Architecture Reviews, Threat Modeling, and Design Reviews
  • for new and existing platform components to proactively identify and mitigate security risks.
  • Conduct Security Reviews for AI/ML models and systems
  • , addressing unique risks associated with data integrity, model poisoning, privacy, and adversarial attacks.
  • Evaluate new security technologies and make recommendations to strengthen our application
  • Be a champion of Coupa’s Secure Software Development Lifecycle (
  • SSDLC
  • ) methodologies, integrating security earlier into the development pipeline.
  • Work closely with the Operations Security team to review and define our best practices
  • What You Will Bring to Coupa:
  • Leadership & Experience:
  • 2+ years as a Lead Software Engineer or Lead AppSec Engineer; able to independently drive projects from design through delivery.
  • Technical Expertise:
  • Strong in Java, .NET, or Python; experienced building secure web applications/microservices and designing complex, distributed systems.
  • Security Architecture & Threat Modeling:
  • Skilled in formal security architecture/design reviews and threat modeling methods (STRIDE, DREAD).
  • Security Foundations:
  • Deep knowledge of OWASP Top 10, SANS Top 25, identity and access management (SAML, OIDC, SSO), OAuth flows, and core cryptographic algorithms (DES, RSA, HMAC, SHA, etc.).
  • Systems & Development Practices:
  • Familiar with design patterns, scalability, high availability, concurrency, and SQL/NoSQL databases; strong communication, self-motivation, and continuous learning mindset.
  • Additional/Preferred Skills:
  • Background in AI/ML security (MLOps, adversarial robustness), compliance frameworks (HIPAA, PCI, SOX, FedRAMP), plus conference presentations or open-source contributions.
  • The starting salary for the successful candidate will be based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
  • Coupa complies with relevant laws and regulations regarding equal opportunity and offers a welcoming and inclusive work environment. Decisions related to hiring, compensation, training, or evaluating performance are made fairly, and we provide equal employment opportunities to all qualified candidates and employees.
  • Please be advised that inquiries or resumes from recruiters will not be accepted.
  • By submitting your application, you acknowledge that you have read
  • Coupa’s Privacy Policy
  • and understand that Coupa receives/collects your application, including your personal data, for the purposes of managing Coupa's ongoing recruitment and placement activities, including for employment purposes in the event of a successful application and for notification of future job opportunities if you did not succeed the first time. You will find more details about how your application is processed, the purposes of processing, and how long we retain your application in our Privacy Policy.

Related Categories

Related Job Pages

More Security Engineer Jobs

Senior Cybersecurity Project Engineer

Echelon Risk + Cyber

We are committed to creating an inclusive environment for our team with unquestioned integrity. One of our core values is "People with Personality," and we want to allow you the space to bring your full self to work. We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions shall be made without regard to age, race, creed, color, religion, gender, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status, or any other basis as protected by federal, state, or local law. Echelon Risk + Cyber is an Equal Opportunity Employer.

Security Engineer112 days ago

Role Description At Echelon Risk + Cyber, we seek a highly skilled and experienced Senior Cybersecurity Project Engineer to join our dynamic team. This role involves engaging in hands-on cyber engineering projects and serving as a primary force of execution in our CrowdStrike Falcon Platform Services practice. We are looking for talented engineers with hands-on experience with the CrowdStrike Falcon Platform, as well as Palo Alto Networks and Microsoft 365. The ideal candidate will: - Perform implementations, best practices reviews, and configuration of CrowdStrike Falcon Modules, specifically related to Falcon EDR, Cloud, and Identity. - Implement and enforce security policies and procedures based on industry standards. - Conduct regular security assessments and audits, ensuring compliance with security standards. - Serve as a senior technical escalation for internal and client technical staff. - Implement and manage core security tools and solutions (EDR, Cloud, Identity, NG SIEM, Vulnerability, CSPM, Email Security, MDM, etc.). - Deploy and maintain endpoint and managed detection and response solutions (EDR/MDR), intrusion detection systems (IDS), and intrusion prevention systems (IPS). - Design and implement secure cloud policies and controls (Azure and AWS). - Utilize Cloud Security Posture Management (CSPM) technologies. - Ensure the security of SaaS platforms, including email, file sharing, and 3rd party applications. - Configure and manage security controls for servers and endpoints. - Implement security policies for Mobile Device Management (MDM). - Implement vulnerability scanning and automated penetration tests, developing remediation plans for identified vulnerabilities. - Implement and manage IAM solutions, including single sign-on (SSO) and privileged access management (PAM). - Apply and enforce security configuration benchmarks (e.g., CIS, NIST). - Configure and manage network security policies across perimeter and internal network equipment. - Assist with the implementation and configuration of security awareness training programs and solutions. - Work closely with clients to understand their security needs and provide tailored solutions. - Collaborate with cross-functional teams to ensure security is integrated into all aspects of IT infrastructure. Qualifications - Bachelor's degree in Computer Science, Information Security, or related field. - Experience working in managed IT or Security services (MSP or MSSP), handling numerous clients and environments simultaneously. - Experience with enterprise security technologies (firewalls such as Palo Alto and FortiGate, endpoint security tools such as CrowdStrike, SentinelOne, and FortiEDR). - Strong understanding of security technologies and frameworks. - Direct experience working with the CrowdStrike Falcon Platform required. - Direct experience working with Microsoft 365 required. - Excellent problem-solving and analytical skills. - Strong communication and interpersonal skills. - Applicants must have authorization to work in Mexico. - Only resumes in English will be considered. Requirements - CrowdStrike Certified Falcon Administrator (CCFA). - CrowdStrike Certified Identity Specialist (CCIS). - CrowdStrike Certified Cloud Specialist (CCCS). - Experience with Cloud Solutions (Azure and/or AWS). - Experience participating in Security Assessments or hardening activities. - Ability to manage multiple clients, initiatives, and priorities effectively. - Skilled in gathering, assessing, and presenting technical security metrics and trends. Benefits - Access to private medical insurance through MetLife. - Life insurance policy via MetLife. - 30-day Christmas bonus and a monthly technology stipend. - Contribution of 8% of the employee's salary to a savings fund. - Flexible vacation policy that allows you to manage your schedule and rest and recharge when you need to. - Family-friendly benefits, extended parental leave, and employer-paid short-term and long-term disability. - Support for individual development through certifications, continued learning, conferences, and more. Company Description We are committed to creating an inclusive environment for our team with unquestioned integrity. One of our core values is "People with Personality," and we want to allow you the space to bring your full self to work. We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions shall be made without regard to age, race, creed, color, religion, gender, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status, or any other basis as protected by federal, state, or local law. Echelon Risk + Cyber is an Equal Opportunity Employer.

Mexico
Job Closed
CDW logo

Principal Solutions Executive II – Security

CDW

CDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.

Security Engineer113 days ago
OtherRemoteTeam 10,001+Since 1984H1B Sponsor

• Develop and execute successful strategies that expand CDW Security’s customer base and achieve bookings, revenue, and gross profit targets. • Establish a detailed, comprehensive understanding of all capabilities, service offerings, value proposition, market positioning, selling strategy and process, as well as key differentiators. • Cultivate productive relationships with key personnel in current and targeted accounts. • Identify, engage, qualify, develop, and earn new clients. • Manage, support, and grow relationships as part of the extended sales team with prospects and clients as a consultative seller. • Network with a broad range of client organizations and leadership in key fields, including Information Technology, Information Security, Finance, Internal Audit, Data Privacy, Compliance, and Legal, Enterprise Risk Management, Procurement / Supply Chain Management. • Proactively coordinate with other CDW Security resources to drive sales cycles, meet company objectives, and exceed client expectations.

Missouri
Job Closed
CDW logo

Senior Solutions Executive – Security

CDW

CDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.

Security Engineer113 days ago
OtherRemoteTeam 10,001+Since 1984H1B Sponsor

• Develop and execute successful strategies that expand CDW Security’s customer base and achieve bookings, revenue, and gross profit targets • Establish a detailed, comprehensive understanding of all capabilities, service offerings, value proposition, market positioning, selling strategy and process, as well as key differentiators • Cultivate productive relationships with key personnel in current and targeted accounts • Identify, engage, qualify, develop, and earn new clients • Manage, support, and grow relationships as part of the extended sales team with prospects and clients as a consultative seller • Network with a broad range of client organizations and leadership in key fields, including: Information Technology, Information Security, Finance, Internal Audit, Data Privacy, Compliance, and Legal, Enterprise Risk Management, Procurement / Supply Chain Management • Proactively coordinate with other CDW Security resources to drive sales cycles, meet company objectives, and exceed client expectations • Provide accurate sales pipeline updates and forecasts • Proactively populate and maintain all information in Salesforce • Provide onboarding support and mentorship to entry level Security Solutions Executives • Enhance CDW Security’s and your personal brand through participation at industry events, speaking engagements, blogging and other forms of acceptable public communication • Proactively work with marketing to develop regional events that attract senior leadership from key accounts and prospects

District Of Columbia
$60K - $84K / year
Job Closed
CDW logo

Senior Security Engineer II – Cybersecurity Data Protection Engineer

CDW

CDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.

Security Engineer113 days ago
OtherRemoteTeam 10,001+Since 1984H1B Sponsor

• Serve as a hands‑on senior engineer responsible for executing, scaling, and operationalizing CDW’s data security capabilities in partnership with architecture and leadership teams. • Own the engineering implementation and day‑to‑day operation of CDW’s data protection platforms, with a primary focus on Microsoft Purview. • Design, deploy, and continuously improve Information Protection, Data Loss Prevention (DLP), and data access controls across cloud, SaaS, endpoint, and hybrid environments. • Engineer and operationalize data classification and labeling by defining sensitivity schemas, classification taxonomies, and enforcement patterns. • Build, tune, and maintain detection logic including Regular Expressions, EDM classifiers, and custom pattern‑matching to identify and protect sensitive data. • Lead data discovery and inventory efforts across structured and unstructured data sources to identify exposure and risk. • Own the engineering execution and operation of CDW’s Data Security Posture Management (DSPM) capabilities, translating findings into actionable remediation. • Analyze data exposure trends, leakage paths, and emerging threats, and produce metrics and insights that inform security priorities and decisions. • Design and implement data protection architectures that scale across enterprise environments, focusing on secure implementation and practical delivery. • Validate and enforce encryption, access controls, and data movement restrictions aligned to Zero Trust principles. • Integrate data security controls with identity, endpoint, network, cloud, and SIEM platforms to improve visibility and reduce risk. • Support data‑related security incidents and investigations, contributing to containment, remediation, and control improvements. • Improve detection and response by correlating signals across Purview, DSPM, DLP, SIEM, and endpoint platforms. • Drive operational excellence through automation, process improvement, and repeatable security engineering workflows. • Act as a technical mentor and subject‑matter expert for data protection engineering, providing actionable guidance to Legal, Privacy, Cloud, Identity, and Architecture partners.

United States
$132K - $190.6K / year
Job Closed