Please, let Loop know you found this job
on RemoteYeah.
This helps us grow 🌱.
Description:
The Senior Application Security Engineer at Loop will be responsible for ensuring the security and integrity of systems and data.
This role involves collaborating on security projects, identifying and communicating potential risks, and implementing effective security measures.
The engineer will maintain a secure environment by proactively monitoring and remediating vulnerabilities, responding to security incidents, and conducting regular security audits.
Participation in engineering team activities, sharing expertise, and mentoring team members on security best practices is expected.
The engineer will advocate for security within the organization, promoting a culture of security awareness and seeking opportunities to improve the security posture.
Loop offers a Blended Working Environment, allowing employees to work from the HQ office, a Hub location, or fully remote.
The tech stack includes technologies such as Vue.js, Node.js, PHP/Laravel, MySQL, DynamoDB, Docker, Kubernetes, AWS Cloud, Gitlab, and Serverless Framework, with a security stack that includes Vanta, Sysdig, and Cloudflare.
Requirements:
A minimum of 7 years of combined experience in application development or DevOps, and security engineering is required.
Solid knowledge of common application security vulnerabilities and their prevention, including OWASP Top 10 and SANS Top 25, is essential.
Experience in security testing, including code review, SAST, DAST, and vulnerability scanning, is necessary.
Familiarity with incorporating security measures into all phases of software development, including “Shift Left” security, is required.
Experience with SIEM, WAF, Risk Management Platforms, and similar security tools is needed.
A deep understanding of cloud security best practices and challenges, particularly with AWS security services and architectures, is essential.
Proficiency in at least one scripting language (e.g., Python, Bash) to automate security tasks and integrate security tools is required.
Skills in identifying, evaluating, prioritizing, and monitoring the remediation of security vulnerabilities are necessary.
Proven experience in handling security incidents, including identification, containment, and remediation, is required.
The ability to clearly communicate technical security concepts to both technical and non-technical audiences is essential.
Strong collaboration skills with development, operations, and other teams are necessary.
The ability to analyze security issues, identify root causes, and recommend effective solutions is required.
Benefits:
Loop offers a comprehensive benefits package that includes medical, dental, and vision insurance.
Employees are eligible for flexible PTO, company holidays, sick & safe leave, and parental leave.
A 401k plan is available for employees.
Additional benefits include a monthly wellness benefit, home workstation benefit, phone/internet benefit, and equity options.
The company emphasizes a supportive work environment that prioritizes empathy and well-being, allowing employees to grow in their careers.
Apply now
Please, let Loop know you found this job
on RemoteYeah
.
This helps us grow 🌱.