At ASAPP our mission is simple: deliver the best AI-powered customer experiencefaster than anyone else. To achieve that were guided by principles that shape how we think build and execute. We value customer obsession purposeful speed ownership and a relentless focus on outcomes. We work in tight skilled teams prioritize clarity over complexity and continuously evolve through curiosity data and craftsmanship.
Were seeking technologists and problem solvers who thrive in fast-paced environments love collaborating with great talent and approach every day like its Day 1. Were a globally diverse team with hubs in New York City Mountain View Latin America and Indiaembracing both hybrid and remote work to bring the best minds together wherever they are. If youre driven by continuous learning rapid pivots and the challenges of building in a high-growth startup wed love to talk. This is more than a jobits a journey.
ASAPP is seeking a full-time Product Security Engineer to test and enhance the security of our complex distributed cloud-native microservices products. You will collaborate with fellow security engineers and the engineering organization at large focusing on securing our applications and cloud infrastructure using advanced cloud-native and custom solutions. Your primary goal will be to fortify our application security across the product lifecycle ensuring robust protection for our innovative AI-driven solutions.
As a member of our growing security team you will have oversight and responsibility for application security testing threat modeling and architecture. You will play a pivotal role in building and optimizing our cloud security infrastructure and implementing a variety of application detection and response tools. By leveraging ASAPPs people and technology you will ensure maximum security and contribute actively to system design reviews fostering a strong security culture throughout our organization.
What youll do
Embedded with Product Engineering Product Managers and Architects to ensure alignment and effective collaboration with a goal: Secure ASAPP products and underlying infrastructure
Gain domain expertise: Deep understanding of ASAPP product portfolio and can represent them from security perspective
Understand customer data flows and data protection requirements
Ensure adherence to security best practices for custom software open-source software (OSS) and APIs.
Ensure security across the entire SDLC process including CI/CD tooling automation container security vulnerability management design reviews and internal application-pentest for new services and enhancements
Threat modeling product design along with product engineering team
Collaborate with key lines of business and engineering teams
Act as a Security Champion
Participate in the security incident detection and response process
What youll need
5 years of experience in securing applications on cloud-native environments and distributed systems identifying and implementing security controls
Background in offensive security security testing and security architecture
Deep understanding of cloud-based (AWS and GCP mainly) infrastructure and security technologies
Familiar with container ecosystems (docker k8s helm) and security best practices
Proficient in at least one high-level programming language (Python Goland)
Experience designing and documenting security solutions architecture
Strong interpersonal verbal and writing communication skills as well as a strong sense of ownership and accountability
What wed like to see
B.S. in Computer Science or related field - or equivalent experience
Experience implementing security (GHAS etc) into CI/CD tools such as Codefresh ArgoCD GitlabCI among others
Deep understanding of cloud-native solutions including IaC (Terraform) concepts and good practices
Experience running end to end vulnerability management across applications and cloud infrastructure
Familiar with encryption and secrets management technologies (Hashicorp Vault AWS KMS symmetric and asymmetric encryption)
Benefits
Competitive compensation
Stock options
Prudent Insurance
Onsite lunch & dinner
Connectivity (mobile phone & internet) stipend
Wellness perks
Mac equipment
Learning & development stipend
Parental leave including 6 weeks paternity leave
ASAPP is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion gender gender identity or expression sexual orientation national origin disability age or veteran status. If you have a disability and need assistance with our employment application process please email us at to obtain assistance.
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.