Docusign is a leading company in e-signature and contract lifecycle management solutions, serving over 1.5 million customers worldwide. The Senior Security Engineer will play a crucial role in protecting Docusign's products and customers through penetration testing and vulnerability research, ensuring the security of their offerings.
Responsibilities:
- Drive success of the company’s security objectives by participating in offensive security testing efforts, including penetration tests, red team exercises, and security research
- Work with PSIRT to analyze product security issues, in collaboration with engineering, and drive them to resolution
- Ensure timely, compliant, and effective incident management, from initial triage through remediation and closure
- Communicate professionally and responsively with stakeholders throughout the evaluation lifecycle
- Collaborate effectively with cross-functional teams, including Threat Intelligence and PSIRT, to strengthen overall product security posture
- Mentor other engineers on the team
Requirements:
- 8+ years experience (6+ with a Master's degree) in security research, red teaming or penetration testing experience including on web application security
- Experience in exploit development
- Experience with cybersecurity principles, incident response lifecycles, and security best practices
- Experience with CVSS (Common Vulnerability Scoring System) for rating vulnerabilities, MITRE ATTCK for adversary tactics and techniques, and CWE (Common Weakness Enumeration) for identifying and categorizing software weaknesses
- Bachelor's degree in Computer Science, Information Security, or a related field
- Industry certifications such as OSCP, GXPN, OSEP, OSWA, OSWE, OSDA
- Experience with cloud, container, or network security testing
- Experience with AI security testing
- Strong analytical and problem-solving skills, with a keen eye for detail
- Excellent written and verbal communication skills, with the ability to explain technical concepts clearly
- Ability to work effectively as part of a team and independently