Remote Application Security Engineer

Posted

Apply now
Please, let Pennylane know you found this job on RemoteYeah. This helps us grow 🌱.

Description:

  • Pennylane is seeking an Application Security Engineer to join the technical security team, reporting to the Head of Information Security.
  • The role involves managing all technical matters related to security issues and providing support for long-term security projects.
  • Responsibilities include advising, assisting, informing, training, and alerting employees, particularly developers, about security practices.
  • The engineer will manage daily technical operations related to ISO 27001 certification and work on security issues from identification to resolution.
  • Key tasks include ensuring security by design in projects, maintaining the security of web applications and AWS infrastructure, conducting security assessments, ensuring compliance with ISO 27001, and conducting code reviews.
  • The position requires collaboration with developers and the Security Champions team to implement security patches and improve security training materials.
  • The ideal candidate should be mid/senior level in application security, able to work in an English-speaking environment, and possess skills in offensive security assessments, web vulnerabilities, programming, and cloud infrastructure security.

Requirements:

  • Candidates should have experience in defensive or offensive application security and be quick learners who enjoy working on diverse projects.
  • Proficiency in English is required, with the ability to communicate ideas effectively in spoken and written form.
  • Experience in performing offensive security assessments on infrastructure or applications is necessary.
  • Candidates should know how to exploit and fix a wide range of web vulnerabilities beyond the OWASP top 10.
  • Familiarity with programming languages such as Ruby, Python, or JavaScript is essential for scripting and larger projects.
  • Experience in cloud infrastructure security is required.
  • Candidates must be able to simplify technical terms for better understanding among team members.
  • Autonomy, proactivity, and organizational skills are important, along with the ability to work with remote colleagues.
  • Bonus points for experience in Ruby or React development and technical application security certifications.

Benefits:

  • Employees can work fully remotely from their home or any co-working space in Europe.
  • A competitive compensation package is offered, including company shares.
  • Additional vacation days (8 to 13) are provided on top of the standard 25 days.
  • Lunch credits are available for daily meals.
  • Comprehensive healthcare coverage is provided for employees and their families.
  • A budget is allocated for creating a comfortable home workspace and a monthly allowance for co-working spaces.
  • Access to fitness facilities and wellness activities through a partnership with Gymlib.
  • Employees can improve their language skills with a Busuu subscription.
  • Latest Apple equipment is provided for work purposes.
  • A vibrant social community with regular sports and social events is encouraged, including company seminars and team-building activities.
Leave a feedback