drjobs Senior Application Security Engineer

Senior Application Security Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Roseland, CA - USA

Monthly Salary drjobs

$ 175000 - 210000

Vacancy

1 Vacancy

Job Description

CoreWeave is the AI Hyperscaler delivering a cloud platform of cutting edge services powering the next wave of AI. Our technology provides enterprises and leading AI labs with the most performant efficient and resilient solutions for accelerated computing. Since 2017 CoreWeave has operated a growing footprint of data centers covering every region of the US and across Europe. CoreWeave was ranked as one of the TIME100 most influential companies of 2024.

As the leader in the industry we thrive in an environment where adaptability and resilience are key. Our culture offers careerdefining opportunities for those who excel amid change and challenge. If youre someone who thrives in a dynamic environment enjoys solving complex problems and is eager to make a significant impact CoreWeave is the place for you. Join us and be part of a team solving some of the most exciting challenges in the industry.

CoreWeave powers the creation and delivery of the intelligence that drives innovation.

About the role:

Our Cyber Security Organization seeks an experienced Senior Application Security Engineer to bolster our security posture across internal infrastructure and application offerings. If you are passionate about security engineering and assurance methodologies and thrive in fastpaced collaborative environments we invite you to join us on our journey toward achieving more together.

What Youll Do:

  • Provide security consultations with engineering peers
  • Architecture reviews of new and existing code changes/additions
  • Conduct full and complete threat models in part of the permit process
  • Configure and own automated code reviews
  • Own the manual code review process
  • Ongoing Security Testing
  • Risk documentation remediation verification and retest validation
  • Engage in the review of full techstack solutions understanding architecture creating threat models performing both automated and manual code reviews and conducting security testing.
  • Lead security audits risk analysis vulnerability testing and security reviews across all elements of the projects software systems.
  • Address challenging novel situations daily collaborating with multiple technical teams within and outside CoreWeave.
  • Conduct Security Consults Incident Response Plan Reviews and Risk Documentation and Remediation Verification.
  • Configure troubleshoot and maintain security infrastructure software and hardware.
  • Continuously analyze security systems for improvements install monitoring software for security breaches and intrusions and set up preventive measures.
  • Report possible threats or software issues test company software firmware firewalls and infrastructure setups.
  • Research weaknesses and devise countermeasures finding costeffective solutions to cybersecurity challenges.
  • Develop and improve security standards and best practices for the organization educating and training staff on information system security best practices.
  • Assist employees with cybersecurity software hardware or IT needs providing solutions to complex issues in a fastpaced environment.

Investing in our people is one of our top priorities and we value candidates who can bring their diversified experiences to our teams. Here are some qualities weve found compatible with our team. Wed love to talk about whether this aligns with your experience and Interests and what youre excited to work on next.

Who You Are

Minimum Qualifications:

  • You should be comfortable with a high degree of ambiguity and relish the idea of solving problems that havent been solved at scale before
  • Bachelors degree in Computer Science or related field or equivalent experience
  • Minimum 5 years of Application Security engineering experience and vulnerability testing
  • Strong knowledge of authorization authentication and encryption protocols and use cases
  • Experience working with development team(s) that have delivered commercial software or softwarebased services
  • Knowledge of threat modeling or other risk identification techniques
  • Knowledge of system security vulnerabilities and remediation techniques including familiarity with common attack patterns and exploitation techniques (OWASP)
  • Scripting skills (e.g. Perl Python shell scripting)
  • Knowledge of network and related web protocols (e.g. TCP/IP UDP IPSEC HTTP HTTPS routing protocols)
  • Ability to write fully functional exploits for common vulnerabilities such as simple stack overflow crosssite scripting or SQL injection
  • Familiarity with common attack patterns exploitation techniques and standard Security Assessment and Penetration Testing tools such as BurpSuite Metasploit and IDA Pro.
  • Proficiency of common security vulnerabilities and the ability to identify these vulnerabilities using SAST and DAST tools.
  • Proficiency in Security Engineering and Assurance methodologies e.g. fuzzing static and dynamic code analysis.
  • Understanding of secure coding principles and practices and ability to review code for potential security issues.
  • Experience with Kubernetes and related security measures extensive experience with Linux OS environments.
  • Strong technical background with a critical thinking mindset excellent interpersonal verbal and written communication skills.
  • Applicants must have work authorization that does not require sponsorship from the company now or in the future.

NicetoHaves:

  • Certifications such as Sec Net OSCP or other relevant industry certifications.
  • Experience with CrowdStrike Synk Rapid 7 Appsec OSINT Threat Intelligence.
  • Experience in DevSecOps and integrating security into CI/CD pipelines can be a plus.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $175000$210000. Pay is based on a number of factors including market location and may vary depending on jobrelated knowledge skills and experience.

What We Offer

The range weve posted represents the typical compensation range for this role. To determine actual compensation we review the market rate for each candidate which can include a variety of factors. These include qualifications experience interview performance and location.

In addition to a competitive salary we offer a variety of benefits to support your needs including:

  • Medical dental and vision insurance 100 paid for by CoreWeave
  • Companypaid Life Insurance
  • Voluntary supplemental life insurance
  • Short and longterm disability insurance
  • Flexible Spending Account
  • Health Savings Account
  • Tuition Reimbursement
  • Mental Wellness Benefits through Spring Health
  • FamilyForming support provided by Carrot
  • Paid Parental Leave
  • Flexible fullservice childcare support with Kinside
  • 401(k) with a generous employer match
  • Flexible PTO
  • Catered lunch each day in our office and data center locations
  • A casual work environment
  • A work culture focused on innovative disruption

Our Workplace

At CoreWeave we are committed to operating as a hybrid workplace offering employees flexibility in how they structure their time between inoffice and remote work. We recognize the significance of fostering connections collaboration and creativity within our office culture and its positive impact on our business. Our philosophy operating as a hybrid workplace underscores our dedication to enabling employees to tailor worklife balance to their individual preferences.

For those who do not live within 30 miles of one of our offices we are open to considering remote work for candidates whose skills and experience strongly align with the role. While we prioritize a hybrid work environment for most roles we understand the importance of flexibility and are open to remote work for specific positions and specialized skill sets. Onboarding is essential to your success. New employees not based out of an office will be invited to attend onboarding training at one of our hubs within their first month of employment. We continue to foster a collaborative environment by bringing teams together quarterly.

California Consumer Privacy Act California applicants only

CoreWeave is an equal opportunity employer committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race color religion sex disability age sexual orientation gender identity national origin veteran status or genetic information.

As part of this commitment and consistent with the Americans with Disabilities Act (ADA) CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process unless such accommodation would cause an undue hardship. If reasonable accommodation is needed please contact:


Required Experience:

Senior IC

Employment Type

Full Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.