Topcon

Senior Security Engineer

Topcon$125K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience.
  • 6+ years in security engineering with focus on application security.
  • Experience in Security Operations including monitoring and incident response.
  • Proven track record managing offshore vendor relationships across time zones.
  • Exposure to AI/ML security concepts or strong willingness to learn rapidly.
  • Relevant security certifications preferred (e.g., OSCP, CISSP).

Responsibilities

  • Lead application security reviews across the software development lifecycle (SDLC), including threat modeling and secure code review.
  • Manage the technical relationship with an offshore security vendor, ensuring quality deliverables and setting clear expectations.
  • Support Security Operations through detection, monitoring, and incident response activities.
  • Contribute to AI security efforts by assessing ML systems for potential vulnerabilities and compliance with emerging standards.
  • Drive remediation of vulnerabilities identified through various security testing methodologies.

Benefits

  • Hybrid work arrangement during standard business hours.
  • Opportunities for professional growth and skill development.
  • Collaboration with an offshore team, providing global exposure.
  • Involvement in innovative AI security concepts and practices.
Full Job Description

Job Purpose: Serve as a senior individual contributor on the Security Engineering team with a primary focus on Application Security, while contributing to Security Operations and AI Security. Maintain the day-to-day technical relationship with the offshore security vendor — setting expectations, reviewing deliverables, and ensuring quality — and reduce application and operational security risk across the SDLC while helping mature the organization’s security practices.

  • Application Security (primary): Lead application security reviews across the SDLC — threat modeling, secure design review, and secure code review for web, API, and cloud services. Triage and drive remediation of vulnerabilities from SAST, DAST, SCA, and penetration testing in partnership with engineering.
  • Offshore Vendor Relationship: Serve as the primary day-to-day technical contact for the offshore security vendor — scoping work, reviewing deliverables for quality, coordinating across time zones, unblocking the team, and tracking commitments and risks.
  • Security Operations (SecOps): Support detection, monitoring, alert investigation, and incident response. Help tune detections, reduce false positives, improve runbooks, and contribute to vulnerability management and infrastructure/endpoint hardening.
  • AI Security: Help assess and secure AI/ML and LLM-based systems (prompt injection, data leakage, model abuse, supply-chain risk) and contribute to emerging AI security standards, review processes, and guardrails.

Education and Experience:

• Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
• 6+ years in security engineering with demonstrated hands-on application security experience (secure code review, threat modeling, vulnerability remediation).
• Practical experience with Security Operations — monitoring, detection, and/or incident response.
• Proven experience maintaining an offshore or third-party vendor relationship across time zones.
• Exposure to AI/ML or LLM security concepts, or a strong demonstrated drive to ramp up quickly.
• Relevant certifications (e.g., OSCP, GWAPT, CSSLP, CISSP, or cloud security) preferred.

Knowledge, Skills, and Attributes:

• Good application security fundamentals (OWASP, secure SDLC, common vulnerability classes).
• Familiarity with cloud security (AWS/Azure), CI/CD, and containerized environments.
• Scripting/automation skills (e.g., Python) a plus.
• Coachable and eager to learn, with a growth mindset and openness to feedback.
• Strong written and verbal communication; effective across engineering, operations, and external partners.
• Self-directed and collaborative, able to manage priorities with little day-to-day instruction.

Physical Requirements:

Standard office/remote work environment. Prolonged periods working at a computer. Occasional travel may be required.

Working Conditions:

Hybrid work arrangement during standard business hours, with periodic coordination across time zones to support the offshore vendor and occasional after-hours work during security incidents.

About Topcon

Topcon Corporation is a Japanese electronics company that specializes in the manufacture of optical and positioning equipment. The company was founded in 1932 and is headquartered in Tokyo, Japan. Topcon produces a range of products, including surveying instruments, GPS systems, machine control systems, and ophthalmic instruments. The company has operations in over 80 countries and employs over 5,000 people worldwide. Topcon is listed on the Tokyo Stock Exchange and has a market capitalization of over $2 billion.
Learn more about Topcon
Size
5,248 employees
Industry
Founded
1994
NASDAQ

Similar Jobs

More Jobs at Topcon

More Information Technology Jobs

Find similar Senior Security Engineer jobs: