Responsibilities- Security Design reviews, both broad product architecture and more minor changes. Includes integration/interaction with Cloud infrastructure (AWS).Security Code reviews.
- Designing and documenting the process of integration and deployment of enterprise Hardware Security Module and Key Management.
- Conducting assessments of third party software / SaaS offerings.
- Conducting assessments of integration with third party software / SaaS, both design and actual implementation.
- Overseeing internal and third party security assessments.
- In-depth assessment of vulnerability impact, both third party vulnerabilities and product vulnerabilities.
- Keeping abreast of and assessing product impact of upcoming technologies (e.g., new web standard or browser behavior changes).
- Assisting compliance and sales teams on technical aspects of regulations / RFPs
- Participating in in-depth technical conversations with customers around security topics.
- Assisting with patent writing and review.
- Creating and reviewing technical material meant for external consumption, both written (blogs, white papers...) and oral (presentations...).
- Developing novel product features in the security space.
Requirements- Advanced knowledge of applied cryptography (e.g. HSMs, TPMs) and Key Management Life Cycle (e.g. Key Generation, Storage, Distribution, Backup, Rotation, Revocation, Destruction)
- Deep knowledge of web and browser technologies: Same Origin Policy, XSS, CSRF, HTTP security headers, browser architecture, JavaScript engine internals.
- Thorough understanding of network and OS fundamentals: TCP, HTTP, TLS, DNS, Firewalls, WAFs...; DAC/MAC, Sandboxing.
- AWS security experience: IAM, Organizations, EC2, VPC...
- Familiarity with static and dynamic analysis concepts and tools.
- Advanced knowledge of C/C++, with focus on secure coding, and at least one other language (Python or JS preferred).
- Willingness to get your hands dirty to get things done.
- Minimum MSc/MEng or equivalent, PhD preferred.
Our Compensation and BenefitsAt Menlo Security, Base Salary is one part of our competitive total compensation and benefits package and is determined using a salary range. The base salary range for this role is 158,000 CAD - 263,000 CAD.
In accordance with Canadian law, the range provided is Menlo Security's reasonable estimate of the base compensation for this role. The actual amount may be higher or lower, based on non-discriminatory factors such as experience, knowledge, skills, abilities, and location. All employees may be eligible to become Menlo Security shareholders through eligibility for stock-based compensation grants, which are awarded to employees based on company and individual performance.
Menlo Security does not accept unsolicited resumes from search firm recruiters. Fees will not be paid in the event a candidate submitted by a recruiter without an agreement in place is hired; such resumes will be deemed the sole property of Menlo Security.
MSGL-I4
Follow us on LinkedIn!