Full Job Description
Responsibilities
Responsibilities Drive the building of scalable and secure-by-design systems to ensure our applications are designed and implemented with the highest security and privacy standards, maintaining and enhancing user trust. Conduct reviews and analyze designs, architectures, existing systems, services, operating systems, networks and applications from a security perspective, via black box testing, code reviews, automation, threat modeling and research. Participate in the Software Development Life Cycle (SDLC) by performing security assessments of new application features. Work with cross-functional stakeholders to analyze new threat scenarios, identify security vulnerabilities, perform forensic analyses, and coordinate incident response and resolution. Conduct developer feedback interviews to optimize the SDLC. Mentor junior-level team members.
Qualifications
Qualifications Must have a Master's degree or foreign equivalent degree in Computer Science, Engineering (any), Information Technology, Information Systems, Information Security, Cybersecurity, or a related field, and 2 years of related work experience; OR a Bachelor's degree or foreign equivalent degree in Computer Science, Engineering (any), Information Technology, Information Systems, Information Security, Cybersecurity, or a related field, and 5 years of post-bachelor's, progressive related work experience. Of the required experience, must have 2 years of experience in each of the following: Web application security, mobile application security, network security, operating system internals and hardening, applied cryptography, or cloud computing; Conducting design review, threat modeling, security mitigation development, security tooling development or privacy engineering; Analyzing business logic to configure security tools and products based on the logic to provide security protection to services, applications, platforms, or websites; Writing and reviewing code in at least one of the following programming languages: JavaScript (Node JS), Go, Python, Java, C++, or Rust; Working on compliance readiness by leveraging information security controls, security frameworks, or standards, including ISO 27001, NIST CSF, PCI-DSS, or HIPAA; and Debugging and troubleshooting software issues. Type: Full time, 40 hours/week Location: San Jose, CA Salary Range: $242278 - $387600 per year To Apply, click the apply button below. Contact [redacted] if you have difficulty submitting resume through the website.
Job Information
[For Pay Transparency]Compensation Description (Annually)
The base salary range for this position in the selected city is $242278 - $387600 annually.
Compensation may vary outside of this range depending on a number of factors, including a candidate's qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units.
Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure).
The Company reserves the right to modify or change these benefits programs at any time, with or without notice.
For Los Angeles County (unincorporated) Candidates:
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws including the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Our company believes that criminal history may have a direct, adverse and negative relationship on the following job duties, potentially resulting in the withdrawal of the conditional offer of employment:
1. Interacting and occasionally having unsupervised contact with internal/external clients and/or colleagues;
2. Appropriately handling and managing confidential information including proprietary and trade secret information and access to information technology systems; and
3. Exercising sound judgment.