iHerb, LLC
Come join the movement....we are a vehicle to healthy living!
Application Security Lead
Security EngineerSecurity EngineerFull TimeRemoteTeam 1,001-5,000Since 1996H1B No SponsorCompany SiteLinkedIn
Location
United States
Posted
81 days ago
Salary
$176.5K - $264.8K / year
Bachelor Degree8 yrs expEnglishCloudJavaJava ScriptMicroservicesNode.jsPython.net
Job Description
• Lead cross-functional, enterprise-wide projects and define the strategic direction for cutting-edge security development lifecycle (SDL) practices
• Conduct security design reviews and sophisticated threat modeling for new and existing mission-critical services
• Establish secure architecture standards, frameworks, and resilient security patterns
• Evaluate, prototype, implement, operate, and provide governance over core security tools and services
• Discover and analyze emerging security threats
• Maintain a strong knowledge of current security threats
• Drive security assessment, penetration testing, and bug bounty programs
• Ensure all application security practices adhere to PCI DSS requirements
• Participate in security incident response activities as a technical leader
Job Requirements
- Demonstrated technical foundation (Computer Science / Engineering degree or equivalent experience)
- 8+ years of technical security experience at a top-tier software company
- Hands-on experience with threat modeling, security design, security architecture, cryptography, mobile security, cloud computing technologies, and security products
- Expert understanding of common application and infrastructure security vulnerabilities and mitigations (OWASP Top 10, CWE 25…)
- Deep, demonstrable knowledge of the e-commerce transaction lifecycle
- Proven track record of driving the implementation of SDL processes, technology, and automation in sophisticated DevOps/DevSecOps environments.
- Experience with large-scale web applications and microservices
- Knowledge of major programming languages and frameworks (e.g. Python, C# .NET, JavaScript, node.js, Java...)
Benefits
- Health insurance
- 401(k) matching
- Time Off
- Paid Sick Leave
- Paid holidays
- Eligible for Restrict Stock Units and receive annual bonuses
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Staff Security Engineer
Modern HealthOffering global, personalized mental health care designed to help you feel more resilient, productive, and empowered.
Security Engineer81 days ago
Full TimeRemoteTeam 201-500Since 2017H1B No Sponsor
Staff Security Engineer setting security vision at Modern Health
CloudPythonSDLC
Security Engineer81 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor
Customer Success Manager overseeing relationships and driving value for strategic clients
CloudCyber Security
California
Security Engineer82 days ago
Full TimeRemoteTeam 11-50Since 2023H1B No Sponsor
Product Manager driving cybersecurity and AI product initiatives
Cyber Security
United States
Security Engineer L4 – Application Security
NetflixWhere you come to do the best work of your life. Follow @WeAreNetflix on Twitter, IG, Facebook, & Youtube for more
Security Engineer83 days ago
Full TimeRemoteTeam 10,001+Since 1997H1B Sponsor
Security Engineer providing critical AppSec services at Netflix