Remote Staff Application Security Engineer

Logo of Ivanti

Ivanti

πŸ“Remote - India

Job highlights

Summary

Join us on the journey to elevate Everywhere Work as an Application Security Engineer within our Product Security team, where you will design, implement and manage security posture to protect Ivanti's products against emerging threats.

Requirements

  • 8+ years of experience in Application Security roles
  • Have proven experience in application, API, database and infrastructure security topics
  • Have strong technical knowledge on security vulnerabilities, defense techniques and security best practices
  • Ability to explain vulnerabilities in a precise, concise and easy to understand manner to stakeholders of varying security and technical backgrounds
  • Experience in performing Threat Modelling and providing actionable advise from its results
  • High level of experience in scoring security vulnerability severities through CVSS
  • Good understanding of SSDLC as well as development and integration tools and technologies uses as part of CI/CD pipelines
  • Experience providing secure coding education to developers
  • Know how to go beyond generic security vulnerability remediation advice
  • Have good understanding of one or more major cloud providers (Azure, AWS, GCP)
  • Have experience in authentication and authorization standards and protocols (SAML, Oauth, LDAP, AD, etc.)
  • Practical knowledge of applied cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc.)
  • Can read and write code with ease
  • Ability to work in a self-directed environment that is highly collaborative and cross functional
  • Passion and self-drive for researching vulnerabilities and latest exploitation techniques

Responsibilities

  • Develop both broad and deep technical understanding of Ivanti products, services and architectures
  • Conduct security assessments such as threat modelling, secure architecture, code reviews and penetration tests on web and mobile applications and services
  • Interpret security vulnerability reports to stakeholders, providing advice on vulnerability prioritization, remediation and mitigation
  • Closely coordinate with all stakeholders to bake in security into all phases of SDLC
  • Create and maintain documentation for security processes
  • Deliver accurate metrics to stakeholders and business leaders in a clear and concise manner
  • Maintain high proficiency in relevant security topics (latest vulnerabilities, TTPs, exploits, etc.)
  • Create and deliver security education across the organization
  • Develop innovative and scalable tools, solutions and processes to enhance product security operations
  • Support accurate security tooling implementation to maximize their effectiveness and interpret their results to relevant stakeholders

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.
Please let Ivanti know you found this job on JobsCollider. Thanks! πŸ™