Application Security Engineer
Updated on 1/28/2023
Locations
Remote in USA
Experience Level
Entry
Junior
Mid
Senior
Expert
Desired Skills
AWS
JavaScript
Java
PHP
Product Design
Python
TypeScript
Requirements
- 3+ years work experience in an application security or product security role including experience with secure code reviews, threat modeling, pentesting, application security tooling and automation
- Strong communicator with the ability to translate technical security requirements and risks into terms that anyone can understand
- In-depth experience finding AND fixing web application security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25
- Relevant development experience in multiple programming languages, preferably: Python, Javascript/Typescript, PHP, Java, Laravel
- Strong, general knowledge of the browser security model, modern network security, and cloud (AWS ideally) security
- Experience with vulnerability management and risk assessment processes
- Technical leadership skills; you enjoy evangelizing security and privacy
- Comfortable with complexity in the short term but can build towards simplicity in the long term
- ZONE 1: $141,100 to $190,900
- ZONE 2: $131,223 to $177,537
- ZONE 3: $126,038 to $171,810
Responsibilities
- Partnering with both the Product Design and Software Engineering organization's security and privacy initiatives, leading security design reviews, and threat modeling
- Performing code reviews of our own and partners' services and apps
- Collaborating with engineers on the best ways to mitigate vulnerabilities and reduce risk
- Participating in our incident response and vulnerability remediation efforts
- Integrating external and internal security tools and automation into development and build environments
- Developing lightweight SDLC processes to embed into Product Design and Software Engineering workflows
- Developing secure coding and design practices and training engineering teams
- Performing black-box and gray-box penetration testing of our applications and services
- Helping to scale our team. As a member of the security team, you'll be an integral part of how we mature our own tooling, best practices, engineering processes, and hiring
Cloud platform for life science R&D
Company Overview
Benchling's mission is to accelerate life science for the benefit of humanity. The company is building a modern R&D software for biotechnology research.
Benefits
- Four months of fully paid parental leave
- 401(k) plan
- Remote working stipend
- Yearly company-wide retreat
- Monthly gym and wellness stipend
- Commuter benefits
- 100% premiums covered for health, dental, and vision
- Weekly company social events
- Flexible PTO and company-wide winter holiday shutdown
Company Core Values
- Build a Lever - We choose to build tools and infrastructure that will help others make world-changing innovations.
- Empower through Information - We believe that sharing information builds trust and enables better decision-making.
- Rely on Tenacity - Dreaming big isn’t enough. We must make the most of every day by bringing the highest level of determination to our work.
- Raise the Bar - We’re dedicated to creating a place where everyone feels challenged to improve.