Remote Application Security Engineer - Remote

at PayNearMe

Posted 2 days ago 2 applied

Description:

  • PayNearMe is seeking a talented and experienced Application Security Engineer to join their team remotely.
  • The role involves conducting thorough security code reviews for all software releases, including in-house developed software and third-party contributions.
  • The engineer will identify and assess potential vulnerabilities in code written in GO and provide actionable recommendations for mitigation.
  • Collaboration with development teams is essential to integrate security best practices into the software development lifecycle.
  • The position requires the development and maintenance of documentation related to security processes, standards, and guidelines.
  • The engineer will utilize SAST and DAST scanning within the CI pipeline and confirm findings to enhance application security.
  • Management and implementation of security architecture for API solutions is also a key responsibility.

Requirements:

  • A Bachelor's degree in Computer Science, Information Security, or a related field is required.
  • Candidates must have 5 years of experience as an application analyst and/or conducting security code reviews and vulnerability assessments.
  • A minimum of 2 years of experience with QA software testing processes and methodologies is necessary.
  • A solid understanding of application security principles, focusing on identifying and mitigating common vulnerabilities, is essential.
  • Proficiency in GO is required, along with some experience in a current framework such as Rails or React; Ruby language experience is a plus.
  • Familiarity with APIs and their security implications is necessary.
  • Excellent communication and collaboration skills are required to work effectively in a cross-functional team environment.
  • The ability to work independently and as part of a team is essential.
  • Strong analytical and problem-solving skills are necessary for this role.
  • Experience with specific security standards and regulations, such as PCI, NYDFS, CCPA, ISO, NIST, and/or SoX, is required.

Benefits:

  • The position offers a base salary paid semi-monthly, with a salary range of $160,000 - $175,000 per year.
  • Employees will enjoy a fast-paced and professional work culture.
  • Stock options are available with standard startup vesting, including a 1-year cliff and a total of 4 years.
  • A $50 monthly communication expense stipend is provided to assist with phone/internet bills.
  • A $250 stipend is available to enhance the work-from-home setup.
  • Reimbursement for peripheral equipment is offered, including up to $400 for a monitor and up to $200 for a keyboard and mouse.
  • Premium medical benefits, including vision and dental coverage, are provided at 100% for employees.
  • Company-sponsored life and disability insurance is included.
  • Paid parental bonding leave, sick leave, jury duty, and bereavement leave are offered.
  • A 401k plan is available for employees.
  • Flexible Time Off is encouraged, with team members typically taking off around 3-4 weeks per year.
  • Volunteer Time Off is also provided.
  • Employees enjoy 13 scheduled holidays and have opportunities for 4-6 in-person team meet-ups per year.