JobHabor

Application Security Engineer

Rubrik

Location
United States - Remote
Workplace
Remote
Employment
Full Time
Salary
USD 135,200–202,800/yr
Apply on the employer’s site

Posted 2mo ago

The employer’s full description could not be read from their board. This is a summary of the posting — follow the apply link for the original.

Responsibilities

  • Integrate security controls and practices into Rubrik’s secure SDLC
  • Collaborate with Engineering to embed security into every phase of the development process
  • Architect the agentic scaffolding for AI agents performing vulnerability triage, research, and remediation
  • Perform security assessments of applications, identifying vulnerabilities and weaknesses
  • Carry out detailed analysis of identified vulnerabilities
  • Assist in identifying and implementing frictionless "shift-left" strategies
  • Aid in the collection, management and reporting of key Application Security metrics
  • Analyze and harden existing applications, automation, and deployment processes
  • Participate in security design reviews and threat modeling
  • Work with development teams, operations, governance, and other stakeholders to document security guidance, processes and standards

Requirements

  • Bachelor’s degree required; BS or MS in Computer Science, Information Technology, or a related field
  • 5+ years’ experience in Application Security
  • Experience across SDLC activities such as threat modeling, secure code review, vulnerability management, and penetration testing
  • Proven track record of utilizing frontier models to build agentic workflows that scale security operations
  • Knowledge of regulatory guidelines and standards such as FedRAMP, SOC2, ISO 27001
  • Broad knowledge of web, application, and cloud attack vectors and exploits
  • Comprehension in multiple programming languages (Python, Go, Scala, C/C++, Javascript/Typescript)
  • Working experience with CI/CD pipeline
  • Working experience with containerization (Kubernetes, Docker, etc)
  • Working experience with MicroServices
  • Working knowledge of at least one major public cloud provider (AWS, GCP, Azure)
  • Understanding of application security maturity model frameworks and how to apply them
  • Foundational knowledge of deploying and securing SaaS applications and cloud environments

Preferred

  • Team player, ability to establish priorities, deal with conflicts, work independently, proceed with objectives and can-do attitude
  • A self-starter with excellent critical thinking and problem solving skills
  • Strong written and verbal communication skills

Skills

  • Python
  • Go
  • Scala
  • C/C++
  • JavaScript
  • TypeScript
  • CI/CD
  • Kubernetes
  • Docker
  • AWS
  • GCP
  • Azure

Similar roles