Maintain and evolve threat models for critical applications and microservices architectures.
Partner with the engineering team to embed security controls into CI/CD pipelines and development practices.
Design/deliver security training programs tailored to development teams and business stakeholders.
Lead incident response for application security events and drive root-cause analysis.
Requirements
5+ years in application security, including 2+ years in a senior/lead role.
Expertise in threat modeling (e.g., STRIDE, PASTA), penetration testing, and secure SDLC implementation.Proficiency in code review for Java/Python/JavaScript and cloud platforms (AWS/Azure/GCP).
Hands-on experience building security tools (e.g., scanners, CI plugins) with Python/Go.
Proven track record in security architecture design and risk-based decision-making.
Tech Stack
AWS
Azure
Cloud
Google Cloud Platform
Java
JavaScript
Microservices
Python
SDLC
Go
Benefits
Culture -We put our people first and prioritize the well-being of every team member. We’ve built a company where all opinions carry weight and where all voices are heard. We value and respect each other and always look out for one another. Above all, we are human.
Learning
We have a learning and development-focused environment with an emphasis on knowledge sharing, training, and regular internal technical talks.
Compensation
You’ll receive an attractive salary, pension, health insurance,, Employee Stock Options, annual bonus, plus other benefits.