SecEng III, AppSec
Core
Create threat models, perform secure code reviews, develop security automation tools, and provide security architecture guidance for software projects.
Role type
Senior Application Security Engineer (IC)
Builds
Security automation tools, threat models, and secure code review processes
Domain
Application Security, Software Development
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Secure code review, threat modeling, security automation, adversarial security analysis, security architecture design, vulnerability identification, attack pattern analysis, remediation planning, system troubleshooting, log analysis, scripting, programming
Preferred skills
Service-oriented architecture experience, microservices experience, web services experience, CCSP, CEH, CFR, Cloud+, CySA+, GCED, GICSP, PenTest+ certifications
Technologies
Java, Python, JavaScript, Scala, C, C++, Go
Responsibilities
Create and maintain threat models for software projects, Perform manual and automated secure code reviews, Develop security automation tools, Conduct adversarial security analysis, Provide security architecture and design guidance, Deliver security training and outreach for internal development teams
Seniority
Senior, hands-on IC