This job post is closed and the position is probably filled. Please do not apply.
🤖 Automatically closed by a robot after apply link
was detected as broken.
Description:
As a Sr. Application Security Engineer at Vimeo, you will engage in a variety of activities aimed at safeguarding users' content.
You will plan, carry out, and lead security initiatives to monitor and protect sensitive data and systems from infiltration and cyber-attacks.
Collaboration with developers, infrastructure security team, compliance team, IT, Product, and other teams throughout the organization is expected.
You will focus on areas such as penetration testing, writing code for internal automated security tools, threat modeling, code reviews, and managing the bug bounty program.
You will also work on expanding web application firewall coverage, remediation of security issues, configuring automated tooling in the secure software development lifecycle, and promoting security culture through developer education.
Incident response and collaboration with the infrastructure security and compliance teams are also key responsibilities.
A typical day may include engaging with product development teams, reviewing code for security best practices, and providing technical advice to developers.
Requirements:
You must have 4+ years of prior experience in software development, devops, or site reliability engineering with hands-on coding experience.
Prior experience in Application Security is preferred.
A total of 6+ years of relevant experience in Engineering, Application Security, or a similar technical field is required.
Strong knowledge of modern web, mobile, and network security is essential.
You should possess strong programming skills in at least one of the following languages: Python, Go, PHP, Javascript, and Ruby, with the ability to read all of them.
Expertise in application penetration testing using tools like Burp or Zap is required.
You must be confident working in cloud environments like AWS and GCP, with detailed knowledge of at least one cloud environment.
Proficiency in shell scripting and common SDLC components like git, Jira, and Jenkins is necessary.
You should be able to communicate technical security concepts effectively to developers.
An upper-intermediate level of English is required.
Benefits:
Vimeo offers a remote work environment for this position.
The company promotes a diverse and inclusive workforce, championing equity in product development and leadership.
Vimeo provides opportunities for professional growth and development within a supportive team.
Employees have access to a community of millions of users and the chance to work on innovative video experience platforms.