Sr. Software Engineer (Application Security)
Remote
Full Time Senior-level / Expert
Everyone has the right to private and secure communication. At Virtru, we build easy-to-use products built on world-class technology to make this possible.
Virtru is a high-growth startup based in Washington, D.C. Working at Virtru, you’ll be inspired by colleagues who are passionate about the work they do. We are dedicated to creating an atmosphere that sparks creativity, connection, and professional growth.
About the Role
As Virtru continues to grow rapidly worldwide, we need an experienced Application Security Engineer. This is a central role in a fast-moving, highly collaborative engineering team. The team works closely together, leverages the latest technology and pushes one another for continuous improvement and outstanding results.
Responsibilities
- Security Engineering: Working independently and collaborating with SRE, Engineering and other teams drive adoption of security best practices and improvements as part of the SDLC
- Security Assessments: Conduct threat modeling, code audits, design reviews with engineers to ensure effective and secure development
- Security Tools Integration and Management: Integration and management of tools such as dynamic/static code analysis in build time and runtime
- Vulnerability Management: Implement, manage, triage, and automate vulnerability management processes for finding, prioritizing, and remediating vulnerabilities through internal scans, penetration tests, bug bounties, etc.
- Threat Hunting: Initiating a threat hunting capability and automating as appropriate; analyzing and improving logging capability relevant to security events.
Desired Experience
- 4+ years experience in secure development or application security.
- Deep knowledge of security concepts such as authentication, web architecture, etc.
- Experience running bug-bounty, penetration testing, vulnerability scanning programs
- Experience setting up and maintaining SAST, DAST, IAST and SCA tooling
- Familiarity with industry security practices, standards, and regulations such as FedRAMP, SOC2, HIPAA, etc.
- Experience with Nodejs, Go, etc.
- Experience using assessment tools such as Burp, ZAP, Qualys, Nessus, etc.
- Experience building and maintaining WAF solutions.
- Self-motivated and goal driven, able to find what needs to be done and do it.
- Experience in GCP/AWS and Kubernetes infrastructure security a plus.
Virtru is committed to building an inclusive environment for people of all backgrounds and everyone is encouraged to apply. Virtru is an Equal Opportunity Employer and does not discriminate on the basis of race, color, gender, sexual orientation, gender identity or expression, religion, disability, national origin, protected veteran status, age, or any other status protected by applicable national, federal, state, or local law.
Virtru is committed to building an inclusive environment for people of all backgrounds and everyone is encouraged to apply. Virtru is an Equal Opportunity Employer and does not discriminate on the basis of race, color, gender, sexual orientation, gender identity or expression, religion, disability, national origin, protected veteran status, age, or any other status protected by applicable national, federal, state, or local law.
Other jobs like this
Explore more Cyber Security career opportunities
Find open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Analysis, Cryptography, Digital Forensics and Cybersecurity in general, filtered by job title or popular skill, toolset and products used.
- Open Cyber Security Engineer jobs
- Open Staff Application Security Engineer jobs
- Open Penetration Tester jobs
- Open Senior DevSecOps Engineer jobs
- Open Application Security Engineer/Architect jobs
- Open Senior Security Operations Engineer jobs
- Open Cyber Threat Intelligence Analyst jobs
- Open Head of Information Security jobs
- Open Senior Information Security Engineer jobs
- Open Lead Security Engineer jobs
- Open Staff Security Engineer jobs
- Open SOC Analyst jobs
- Open Cyber Security Analyst jobs
- Open Information System Security Officer (ISSO) jobs
- Open Cybersecurity Engineer jobs
- Open Senior Penetration Tester jobs
- Open Sr. Security Engineer jobs
- Open Senior Threat Intelligence Analyst jobs
- Open Cloud Security Automation Specialist jobs
- Open Offensive Security Engineer jobs
- Open Information Security Officer jobs
- Open Azure Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cloud Security Operations Lead jobs
- Open Cybersecurity Analyst jobs
- Open DevOps-related jobs
- Open Application security-related jobs
- Open Analytics-related jobs
- Open Audits-related jobs
- Open PCI-related jobs
- Open OWASP-related jobs
- Open Threat intelligence-related jobs
- Open Clearance-related jobs
- Open Security assessments-related jobs
- Open IDS-related jobs
- Open Forensics-related jobs
- Open JavaScript-related jobs
- Open Splunk-related jobs
- Open Ruby-related jobs
- Open Encryption-related jobs
- Open CEH-related jobs
- Open CISM-related jobs
- Open GDPR-related jobs
- Open Agile-related jobs
- Open Threat detection-related jobs
- Open Open Source-related jobs
- Open OSCP-related jobs
- Open Intrusion detection-related jobs
- Open DevSecOps-related jobs
- Open Machine Learning-related jobs