Engineer, Application Security
Core
Partner with engineering teams to design, build, and deploy secure containerized services on Kubernetes, focusing on code-level security reviews and CI/CD integration.
Role type
Application Security Engineer (Kubernetes/Container focus)
Builds
Secure containerized services, APIs, and CI/CD pipelines for market infrastructure
Domain
Financial technology / Cybersecurity
Deliverable
production ML models | product features | infrastructure
Required skills
Software development (Go, Java, C#, Python, Node.js), Docker/OCI containerization, Kubernetes primitives (pods, deployments, services, ingress), SAST/SCA/secret scanning tools, web/API vulnerability analysis (injection, SSRF, auth/authorization)
Preferred skills
None explicitly stated as preferred capabilities
Technologies
Kubernetes, Docker/OCI, Git, CI/CD pipelines, SAST, SCA, secret scanning tools
Responsibilities
Partner with engineering teams to improve security of containerized services running on Kubernetes; Participate in secure design reviews and threat modeling for new features, services, and APIs; Perform code-level security reviews and provide clear, actionable remediation guidance to developers; Help integrate and operate security tooling in CI/CD pipelines; Validate and triage security findings; Contribute to container image security practices; Support incident response and post-incident reviews
Seniority
Mid-level, hands-on IC