Application Security Engineer
Core
An individual contributor on the Global Security team responsible for delivering built-in security to Intermedia's cloud communications and collaboration products by guiding architecture, executing assessments, and supporting the SDLC.
Role type
Application Security Engineer (Individual Contributor)
Builds
Secure cloud communications and collaboration software (web, desktop, PBX solutions)
Domain
Cloud security, Application Security, DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security architecture review, Secure coding best practices (OWASP), Static security scanning, Manual security assessments, Penetration test review, Bug bounty intake, Cloud platform security (AWS/Azure), Container security (Docker/Kubernetes), Python programming
Preferred skills
Dynamic security scanning, AI threat identification, CTF challenges
Technologies
BurpSuite, ZAP, Snyk, Python, AWS, Azure, Docker, Kubernetes
Responsibilities
Perform design and architecture review of new features, Collaborate with DevOps and engineering teams on security best practices, Utilize static security scanning tools and coordinate remediation, Perform ongoing manual security assessments, Review external penetration test results, Assist with vetting defects from 3rd party security researchers
Seniority
Mid-level (3-5 years experience), hands-on IC
