Altruist

Senior Application Security Engineer (Red Team)

Altruist$200K — $240K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years in Application/Product Security Engineering, particularly in pentesting web, API, and mobile targets.
  • Experience with security assessment tools like Burp Suite.
  • Strong ability to work independently and proactively.
  • Bachelor's degree in Computer Science, Engineering, Information Security, or equivalent experience.
  • Technological versatility with modern tech stacks (Java, Spring, Terraform, Kubernetes).
  • Exceptional communication skills with an emphasis on active listening and precise sharing of ideas.
  • Exemplary resilience in overcoming challenges and pursuing success.

Responsibilities

  • Pentest Altruist's web application, APIs, and mobile applications.
  • Continuously challenge security controls to enhance their effectiveness.
  • Conduct focused exploitability assessments on critical attack paths.
  • Perform cloud pentesting and identity-focused offensive security testing.
  • Collaborate in purple-team exercises with Detection & Response teams to improve detection capabilities.
  • Develop and maintain offensive security tools and testing playbooks; engage in phishing and social-engineering tests.
  • Document findings with reproducible proofs, risk ratings, and remediation recommendations.

Benefits

  • Stunning, amenity-filled office spaces designed for comfort and productivity.
  • Premium healthcare, dental, and vision insurance options.
  • 401(k) savings plan with a 4% match and immediate vesting.
  • 16 weeks of paid parental leave after one year of service.
  • Professional development resources including annual L&D budget and employee mobility opportunities.
  • Company perks program offering discounts on various services and products.
  • Financial guidance program to support personal finance management and planning.
  • Flexible work policy allowing one month of remote work per year.
Full Job Description
About the position

Altruist is in the midst of an exciting phase and we're excited to hire a Senior Application Security Engineer to join our growing Security team. Your expertise will ensure our products are secure - by continuously attacking them the way a real adversary would.

This role follows a hybrid schedule, with three days per week onsite in our San Francisco FiDi or Culver City office.

Your impact
  • Pentest the Altruist web application, APIs, infrastructure, Android application, and iOS application.
  • Break security controls continuously so we can build them better each time.
  • Perform focused authorization and exploitability assessments on high-risk attack paths
  • Conduct cloud pentests and identity-focused offensive testing.
  • Run purple-team exercises with Detection & Response and help build detections from your tradecraft.
  • Develop and maintain offensive tooling and repeatable testing playbooks; contribute to phishing and social-engineering assessments.
  • Document findings with reproducible proofs-of-concept, clear risk ratings, and actionable remediation guidance.

What you'll bring
  • Experience - 4+ years of experience working as an Application/Product Security Engineer:
    • Experience as a pentester across web, API, and mobile targets
    • Extensive experience with security assessments
    • Experience with tools such as Burp Suite
    • Strong ability to work independently
  • Education - A B.A. / B.S. degree in relevant fields such as Computer Science or Computer Engineering or Information Security or relevant experience
  • Technical aptitude - You're technologically savvy and can easily get up to speed on modern tech stacks (i.e., Java, Spring, Terraform, Kubernetes, etc.)
  • Ownership - The pride you put into every aspect of your work is unparalleled and undeniable
  • Superb communication - Intentional dialogue is a superpower. You listen as well as you share your perspective with others.
  • Resilience - We're inspired by your unwavering determination to achieve success, no matter the adversity you face along the way.
  • Assurance - Your confidence is brilliant, yet ego-less. You possess a strong knowledge base, the ability to discover the unknown, and are open to differing perspectives.
  • Creative problem solving - Identifying the problem is simply not enough. You're instinctually creative with your approach in finding solutions to roadblocks.

Bonus points if you bring
  • Experience working in regulated environments (fintech / financial services)
  • Mobile application pentesting (OWASP MASVS) and cloud/red-team / adversary emulation experience
  • Relevant certifications (e.g., OSCP, OSWE, GXPN)


San Francisco, CA salary range

$200,000-$240,000 USD

What we bring

Attracting and retaining top-tier talent is a priority. We are proud of the culture we've built and are cognizant of the ever-changing professional landscape. Our dynamic offering of perks and benefits are tailored for you to feel your best while doing your best.
  • Stunning, amenity-filled office spaces in Culver City, CA, San Francisco, CA, and Dallas, TX. Our offices are intentionally designed for comfort, collaboration, and productivity.
  • Competitive total compensation.
  • Premium healthcare, dental, and vision insurance plans (HMO and PPO).
  • 401k savings plan with a 4% match and immediate vesting.
  • 16 week paid parental leave after one year of employment.
  • Professional growth and development opportunities including an employee mobility program and an annual L&D budget allocation for each employee.
  • Company perks program (includes discounts on pet insurance, fitness, cell phone plans, and travel, etc.).
  • Financial guidance program (includes counseling on navigating debt, tracking personal spend, saving and planning goals, home-purchasing preparedness, etc.).
  • One month work from anywhere policy (with the exception of a few countries).

Total compensation includes a competitive benefits package, along with a bonus program for eligible roles. For salaried positions, a salary offer will be determined by a number of factors including experience, skill level, internal pay equity, geographic location, and other relevant business considerations. We review all employee pay and compensation programs regularly to ensure fair, equitable, and competitive pay. At Altruist, we are committed to providing fair, equitable, and competitive compensation by leveraging market data to inform our pay bands. Base salaries will be reviewed at regular intervals throughout the year, typically in conjunction with performance review cycles. By evaluating compensation on a regular basis, we are able to reward high performance and ensure all employees have opportunities for growth.

About Altruist

Altruist is a financial services company that provides a digital platform for independent registered investment advisors (RIAs). The platform offers a range of services, including custodial services, trading, and portfolio management. Altruist's mission is to make financial advice more accessible and affordable for everyone. The company was founded in 2018 and is headquartered in Los Angeles, California.
Learn more about Altruist
Size
200 employees
Industry
Founded
2018

Similar Jobs

More Jobs at Altruist

More Information Technology Jobs

Find similar Senior Application Security Engineer (Red Team) jobs: