We are seeking an experienced Application Security Engineer to join our Cyber Security organization and strengthen the security of our applications, APIs, and CI/CD pipelines.
Requirements
- 5–8+ years in Application Security, Product Security, or Secure Software Development.
- Hands-on experience securing CI/CD pipelines and source repositories (GitHub, GitLab, Jenkins, etc.).
- Knowledge of supply chain security frameworks (SLSA, NIST SSDF).
- Experience with secrets management, artifact signing (Sigstore, Cosign), and build integrity.
- Strong background in WAF tuning, API security, and vulnerability remediation.
- Proficiency in at least one programming language (Python, Java, Go, JavaScript/Node.js).
- Experience with SAST, DAST, SCA, and container scanning tools.
- Cloud security experience (AWS, Azure, or GCP).
- Strong understanding of OWASP Top 10 (Web & API), CWE, and secure coding practices.
Benefits
- Health & Wellbeing
- Personal & Professional Development
- Unconditional Inclusion