As a Senior Application Security Engineer you will play a crucial role in enabling developers to build secure applications at Datadog. You will work in lockstep with Datadog engineering to establish secure-by-default practices on widely adopted platforms. You will provide critical application security operational services such as security reviews developer security education and product security incident response. You have an incredible opportunity to leverage Datadogs robust product suite including Logs Dashboards Service Catalog and Application Performance Monitoring (APM) to not only build out security services but also collaborate with engineers who champion strong security and reliability ownership. This role offers a unique opportunity to significantly shape security practices across our rapidly evolving platforms.
At Datadog we place value in our office culture - the relationships that it builds the creativity it brings to the table and the collaboration of being together. We operate as a hybrid workplace to ensure our employees can create a work-life harmony that best fits them.
What Youll Do:
- Act as a Security Partner to support our critical services and products
- Measure criticality and security posture of all services and products
- Get a deep understanding of Datadogs software development life cycle software supply chain build pipelines delivery mechanisms and configuration management
- Conduct threat modeling on new and existing products with engineering teams using frameworks such as STRIDE PASTA RTMP DREAD
- Lead the development and implementation of secure-by-default solutions across various applications and platforms
- Empathize with the full spectrum of our customers and our engineers by advocating for effective solutions that scale with the needs of our business and our customers.
- Provide mentorship and guidance to team members and foster a positive team culture.
Who You Are:
- You have a background in Application Security - OWASP Top 10 XSS injection access control cryptography static analysis security testing (SAST) dynamic analysis security testing (DAST) security libraries
- You are familiar with one or more coding languages such as Python and Go.
- You have experience collaborating with product managers and engineers to integrate security throughout the development lifecycle.
- You can perform secure design reviews and threat models with staff engineers and architects on complex systems.
- You aim not only to identify security issues but also recommend and implement solutions.
- You have a proven track record of driving security initiatives with leadership and engineering buy-in.
- You keep current with the latest security best practices technologies and emerging threats.
Datadog values people from all walks of life. We understand not everyone will meet all the above qualifications on day one. Thats okay. If youre passionate about technology and want to grow your skills we encourage you to apply.
Benefits and Growth:
- New hire stock equity (RSUs) and employee stock purchase plan (ESPP)
- Continuous professional development product training and career pathing
- Intradepartmental mentor and buddy program for in-house networking
- An inclusive company culture ability to join our Community Guilds (Datadog employee resource groups)
- Access to Inclusion Talks our internal panel discussions
- Free global mental health benefits for employees and dependents age 6
- Competitive global benefits
Benefits and Growth listed above may vary based on the country of your employment and the nature of your employment with Datadog.
Required Experience:
Senior IC