Simplify Logo

Full-Time

Staff Application Security Engineer

Confirmed live in the last 24 hours

Ironclad

Ironclad

501-1,000 employees

Digital platform for automating contract management

Legal
Enterprise Software

Compensation Overview

$190k - $210kAnnually

+ Equity Awards

Mid, Senior

San Francisco, CA, USA

Position based at San Francisco headquarters.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
Communications
AWS
Google Cloud Platform
Requirements
  • BA/BS/MS in Computer Science or related field or equivalent experience.
  • 3+ Years of experience working in application security or software development, preferably with SaaS companies or in regulated fields.
  • In-depth knowledge of application security concepts and practices, including OWASP Top 10 and SANS Top 25.
  • Experience with SAST and SCA tools such as Snyk, Checkmarx, Veracode, WhiteSource, or Black Duck.
  • Experience with security testing tools such as Burp Suite, AppScan, and Nessus.
  • Experience with SOC 2, ISO 27001, NIST, and CIS standards and frameworks.
  • Experience operating in any cloud provider (AWS, GCP, Azure, Digital Ocean etc.).
  • Ability to appropriately prioritize and respond to different escalations.
  • Experience working collaboratively with cross-functional teams.
  • Strong desire to take ownership of problems.
  • Comfort working in a rapidly evolving environment and dealing with ambiguity.
  • Excellent communication, analytical and problem-solving skills.
  • Team and goal-oriented.
  • High output, low ego.
Responsibilities
  • Develop and implement secure coding practices, procedures, and standards for software development teams.
  • Conduct application security assessments and vulnerability testing to identify and mitigate risks.
  • Perform security reviews of code changes and ensure that security issues are addressed.
  • Collaborate with cross-functional teams to remediate software vulnerabilities and implement secure coding practices.
  • Integrate security review processes into Ironclad’s CI/CD pipeline.
  • Conduct threat modeling and risk analysis to protect sensitive data.
  • Provide domain expertise on protective controls including system, network, encryption, and authentication services.
  • Work closely with members of the SRE, Development, IT, and Security teams to drive impactful changes to Ironclad’s cybersecurity posture.
  • Work closely with the risk and governance teams to implement compliance and security requirements.
  • Contribute to secure coding and other cybersecurity training programs.
  • Stay up-to-date with the latest security trends, vulnerabilities, and attack techniques.
  • Provide technical leadership and mentorship to other members of the engineering and security teams.

Ironclad is a digital contracting platform that simplifies and automates the entire contract lifecycle for legal teams in large enterprises and fast-growing companies. The platform allows users to create, automate, and track contracts in a straightforward manner, making it easier for legal departments to manage high-volume contracts efficiently. Unlike traditional contract management systems, Ironclad is designed to be modern and user-friendly, which helps reduce bottlenecks and improve collaboration within legal teams. The company operates on a subscription-based model, offering various tiers that cater to different business needs, ensuring a steady income stream while providing ongoing support and updates. Ironclad's goal is to enhance the efficiency of contract management processes, enabling legal teams to focus on supporting business growth.

Company Stage

Series E

Total Funding

$344.2M

Headquarters

San Francisco, California

Founded

2014

Growth & Insights
Headcount

6 month growth

4%

1 year growth

3%

2 year growth

8%
Simplify Jobs

Simplify's Take

What believers are saying

  • Ironclad's rapid growth in the enterprise segment and strategic executive hires position it for continued market expansion and innovation.
  • The company's AI-driven tools and features, such as the new contextual signature tool, significantly enhance efficiency and user experience, making it a leader in digital contracting.
  • Ironclad's flexible subscription model and tiered pricing structure cater to a wide range of business needs, ensuring broad adoption and customer retention.

What critics are saying

  • The competitive legal tech market requires Ironclad to continuously innovate to maintain its edge and avoid being outpaced by rivals.
  • Dependence on large enterprise clients means that any loss of major customers could significantly impact revenue and growth.

What makes Ironclad unique

  • Ironclad's platform is specifically designed for legal teams, offering a user-friendly and modern solution that stands out from traditional, cumbersome contract management tools.
  • The company's focus on automation and AI integration, as evidenced by their recent AI-driven features, provides a significant edge in enhancing contract lifecycle management.
  • Ironclad's strategic partnerships with major enterprises like Salesforce and KPMG Law, along with recognition in Gartner's Magic Quadrant, underscore its credibility and market leadership.

Benefits

Network of mentors - Receive mentorship from our world-class network of mentors, including founders, salespeople, marketers, engineers, and designers.

Health & wellness - Great health care insurance, monthly fitness reimbursement, and seasonal activities like yoga, surfing, and hikes with our dogs are just some of the ways we help take care of employee health and wellness.

Company retreats - Twice yearly, we retreat to local spots like Tahoe or Wine Country for our company off-sites.

Team events - We bond outside of work over games, happy hours, concerts, and more.