ForgeRock is hiring a
Senior Product Security Engineer in United Kingdom

Logo of ForgeRock
Senior Product Security Engineer closed
🏢 ForgeRock
💵 ~$146k-$258k
📍United Kingdom
📅 Posted on Jun 11, 2024

Summary

The job is for a Senior Application Security Engineer at Ping Identity, working remotely in the eastern US/Canada or UK, or in the Bristol, UK office. The role involves owning multiple security assignments, providing technical leadership, improving Secure Software Development Lifecycle (SSDLC) practices, and assisting with various security tasks.

Requirements

  • 4+ years of proficiency in a mix of Enterprise Application Security, API Security, Web Application Security, and Mobile Application Security
  • 4+ years of developing commercial or open-source products (experience in Java or Javascript preferred) or equivalent experience
  • Exceptional problem-solving skills, curiosity about the inner workings of systems and showing attention to details and documentation
  • Excellent written and oral communication skills

Responsibilities

  • Own multiple Security Engineering assignments working with Ping Identity products, processes and tooling
  • Provide technical leadership and mentor other Product Security Engineers
  • Assist in proposing, developing and improving Secure Software Development Lifecycle (SSDLC) practices alongside global, high-performance product engineering teams
  • Work with the product teams to perform architectural, security design/code reviews, vulnerability assessment and management
  • Perform security tasks including (but not limited to) threat modeling, developer training, static code analysis, dynamic runtime fuzzing, building custom tools and automation, and exploit development
  • Innovate in all aspects of automation of SSDLC tasks including use of Generative AI
  • Assist the presales, support and customer success teams responding to prospect, customer and field questions related to product and industry security
  • Engage with third-party security consultants for independent security assessments, bug bounties and penetration testing of the product

Preferred Qualifications

  • Experience with Linux environments, administration, security, internals
  • Experience with identity management (OAuth 2.x, OpenID Connect, SAML, Active Directory, 2FA/MFA, LDAP, SCIM, FAPI, OpenBanking)
  • Experience in securing machine learning or generative AI platforms
  • Experience with CI/CD cloud deployment in Amazon AWS, Azure or Google Cloud Platform
  • Security certifications such as CISSP, CSSLP, GIAC, OSCP

Benefits

  • Generous PTO & Holiday Schedule
  • Parental Leave
  • Progressive Healthcare Options
  • Retirement Programs
  • Opportunity for Education Reimbursement
  • Commuter Offset (Specific locations)
This job is filled or no longer available

Similar Jobs