iHerb, LLC

Come join the movement....we are a vehicle to healthy living!

Application Security Lead

Security EngineerSecurity EngineerFull TimeRemoteTeam 1,001-5,000Since 1996H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

81 days ago

Salary

$176.5K - $264.8K / year

Bachelor Degree8 yrs expEnglishCloudJavaJava ScriptMicroservicesNode.jsPython.net

Job Description

• Lead cross-functional, enterprise-wide projects and define the strategic direction for cutting-edge security development lifecycle (SDL) practices • Conduct security design reviews and sophisticated threat modeling for new and existing mission-critical services • Establish secure architecture standards, frameworks, and resilient security patterns • Evaluate, prototype, implement, operate, and provide governance over core security tools and services • Discover and analyze emerging security threats • Maintain a strong knowledge of current security threats • Drive security assessment, penetration testing, and bug bounty programs • Ensure all application security practices adhere to PCI DSS requirements • Participate in security incident response activities as a technical leader

Job Requirements

  • Demonstrated technical foundation (Computer Science / Engineering degree or equivalent experience)
  • 8+ years of technical security experience at a top-tier software company
  • Hands-on experience with threat modeling, security design, security architecture, cryptography, mobile security, cloud computing technologies, and security products
  • Expert understanding of common application and infrastructure security vulnerabilities and mitigations (OWASP Top 10, CWE 25…)
  • Deep, demonstrable knowledge of the e-commerce transaction lifecycle
  • Proven track record of driving the implementation of SDL processes, technology, and automation in sophisticated DevOps/DevSecOps environments.
  • Experience with large-scale web applications and microservices
  • Knowledge of major programming languages and frameworks (e.g. Python, C# .NET, JavaScript, node.js, Java...)

Benefits

  • Health insurance
  • 401(k) matching
  • Time Off
  • Paid Sick Leave
  • Paid holidays
  • Eligible for Restrict Stock Units and receive annual bonuses

Related Categories

Related Job Pages

More Security Engineer Jobs

Staff Security Engineer

Modern Health

Offering global, personalized mental health care designed to help you feel more resilient, productive, and empowered.

Security Engineer81 days ago
Full TimeRemoteTeam 201-500Since 2017H1B No Sponsor

Staff Security Engineer setting security vision at Modern Health

CloudPythonSDLC
United States
$160.7K - $189K / year

Customer Success Manager

Upwind Security

Cloud Security Happens at Runtime.

Security Engineer81 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

Customer Success Manager overseeing relationships and driving value for strategic clients

CloudCyber Security
California
Security Engineer82 days ago
Full TimeRemoteTeam 11-50Since 2023H1B No Sponsor

Product Manager driving cybersecurity and AI product initiatives

Cyber Security
United States

Security Engineer L4 – Application Security

Netflix

Where you come to do the best work of your life. Follow @WeAreNetflix on Twitter, IG, Facebook, & Youtube for more

Security Engineer83 days ago
Full TimeRemoteTeam 10,001+Since 1997H1B Sponsor

Security Engineer providing critical AppSec services at Netflix

United States
$100K - $720K / year