Sr. Product Security Engineer
hace 4 semanas
Sr. Product Security Engineer (Mobile/Web Specialty) – Incode Technologies – Xico, Veracruz, México REIMAGINE TRUST Incode is the leading provider of world‑class identity solutions that is reinventing the way humans authenticate and verify their identities online to power a world of digital trust. Through our revolutionary identity solutions, we are unleashing the business potential of universal industries including finance, government, retail, hospitality, gaming and more, by reducing fraud and transforming human interactions with data, products, and services. We're in the process of rapidly scaling our diverse global team and we're looking for entrepreneurial individuals and leaders who are curious, driven, and excited by ownership to join a Unicorn‑status scale‑up The Opportunity We seek a trustworthy and proactive Senior Product Security Engineer to be the technical thought leader and driver of a paved‑road, holistic product security program. The Product Security Engineer works across various engineering groups in our organization to ensure that our products are as secure and privacy‑protecting as our customers expect. We're looking for someone who loves to solve big challenges in Product Security. These challenges include ensuring a secure software supply chain from idea to operation, providing software provenance, automating all the things in CI/CD, and, of course, building and breaking software to make it more secure. To be successful as a Product Security Engineer, you should have hands‑on experience securing the software supply chain and products of a SaaS and mobile‑first company, enjoy partnering with fellow engineers, and be able to speak to the big picture of the SDLC and how to achieve a desired state in reasonable chunks. As an engineer, you should lead with a hacker mindset and be able to roll up your sleeves and design, architect, and threat model security critical solutions. Reporting to the Sr. Director of Information Security, you will be an early hire to the security team and will have the opportunity to influence and evolve our product security program. Responsibilities Partner with engineering and product management teams to perform threat modeling, architecture & design, and code reviews. Assess security implications, requirements for the secure development of new systems, features, and technologies. Provide hands‑on remediation guidance to development teams and design security architecture, features and controls that keep our customers' data safe and preserve their privacy. Build a security paved road through automation and tooling (SAST, SCA, MAST, IaC, DAST, Fuzzing, etc.) into the SDLC and CI/CD integrations that enables our developers to easily produce secure software. Define, architect, build, improve and validate secure software supply chain and build provenance mechanisms. Manage, triage, and provide support to external researchers in our vulnerability disclosure and bug bounty programs. Provide proof of concept exploits, facilitate vulnerability remediation, and drive adherence to software security standards through policy as code. Help scale the engineering organization and mentor engineers on best practices in secure software design and architecture. Qualifications Experience in software engineering, infrastructure engineering, site reliability engineering, or offensive security for a SaaS product company. Experience with a variety of security tooling, to include: SAST, DAST, SCA, IaC Scanning, Image and Container Scanning, MAST, IAST, and offensive security and proxy tooling. You are a strong communicator who is comfortable working cross‑functionally, with a track record of delivering results and demonstrating strong ownership. You enjoy collaborating cross‑functionally to accomplish shared goals, and you care about learning, growing, and helping others to do the same. Preferred Experience and Certification SaaS Startup experience in security focused industries, such as fintech, security software and services, healthtech, identity and access management. Experience with virtualization, containerization technology, orchestration, and cloud native security. Certifications in Security, Product Security and/or Offensive Security (eg. OSCP, OSWP, OSEP, OSWA, OSED, OSMR, OSWE, OSEE, GPEN, GWAPT, CEH, etc). Cloud Certifications, such as AWS Certified Solutions Architect, AWS Security Specialty. Hands‑on experience in offensive security, and CVEs to prove it. 8 Aspects of our Culture Values are what we value High performance Freedom & responsibility Context, not control Highly aligned, loosely coupled Continuous Feedback Pay Top of Market Promotions & Development Benefits & Perks Meaningful Equity Flexible Working Hours & Workplace Open Vacation Policy Wellness Program International Travel Opportunities Additional benefit package according to location (401k, medical insurance, etc.) #J-18808-Ljbffr
-
Product Security Engineer
hace 4 semanas
Xico, México Aspen Technology A tiempo completoAbout the Role AspenTech is an AI-powered software company helping the world's leading energy, chemical and engineering companies succeed in their digital transformation, making their operations more efficient and reducing impact on the environment. What You'll Do Support the design, implementation and oversight of the Product Secure Development Lifecycle,...
-
Product Security Engineer
hace 4 semanas
Xico, México Aspen Technology A tiempo completoAbout the Role AspenTech is an AI-powered software company helping the world's leading energy, chemical and engineering companies succeed in their digital transformation, making their operations more efficient and reducing impact on the environment. What You'll Do Support the design, implementation and oversight of the Product Secure Development Lifecycle,...
-
Product Security Engineer
hace 4 semanas
Xico, México Aspen Technology A tiempo completoAbout the Role AspenTech is an AI-powered software company helping the world's leading energy, chemical and engineering companies succeed in their digital transformation, making their operations more efficient and reducing impact on the environment. What You'll Do Support the design, implementation and oversight of the Product Secure Development Lifecycle,...
-
Senior Product Security Engineer
hace 4 semanas
Xico, México Incode Technologies A tiempo completoA leading identity solutions provider located in Xico, Veracruz, seeks a Senior Product Security Engineer to drive a comprehensive product security program. The ideal candidate will have experience in software and SaaS security, strong communication skills, and hands-on experience with security tooling like SAST, DAST, and IaC. Responsibilities include...
-
Security Engineer, Application Security
hace 4 semanas
Xico, México Dropbox A tiempo completoDescripción del trabajo Role Description As part of the Application Security team, you'll focus on reducing risk at scale by building the security infrastructure, automation, and tooling that empowers engineers to ship secure products with confidence. We work closely with engineering and product teams throughout the software development lifecycle (SDLC),...
-
Security Engineer, Application Security
hace 4 semanas
Xico, México Dropbox A tiempo completoDescripción del trabajo Role Description As part of the Application Security team, you'll focus on reducing risk at scale by building the security infrastructure, automation, and tooling that empowers engineers to ship secure products with confidence. We work closely with engineering and product teams throughout the software development lifecycle (SDLC),...
-
Security Engineer, Application Security
hace 4 semanas
Xico, México Dropbox A tiempo completoDescripción del trabajo Role Description As part of the Application Security team, you'll focus on reducing risk at scale by building the security infrastructure, automation, and tooling that empowers engineers to ship secure products with confidence. We work closely with engineering and product teams throughout the software development lifecycle (SDLC),...
-
Application Security Engineer
hace 2 semanas
Xico, México Teletech Holdings, Inc. A tiempo completoJob Description - Application Security Engineer (046FO)Application Security EngineerApplication Security EngineerBe the spark that brightens days and ignite your career with TTEC’s award-winning employment experience. As an Application Security Engineer working remotely in Mexico, you’ll be a part of creating and delivering amazing customer experiences...
-
Application Security Engineer
hace 2 semanas
Xico, México Teletech Holdings, Inc. A tiempo completoJob Description - Application Security Engineer (046FO)Application Security EngineerApplication Security EngineerBe the spark that brightens days and ignite your career with TTEC’s award-winning employment experience. As an Application Security Engineer working remotely in Mexico, you’ll be a part of creating and delivering amazing customer experiences...
-
Product Security Engineer: Secure DevOps
hace 4 semanas
Xico, México Aspen Technology A tiempo completoA leading software company seeks a Product Security specialist to support their development lifecycle. This full-time role involves monitoring vulnerabilities and security practices while collaborating with teams to strengthen their security posture. The ideal candidate should have a degree in computer science and 1-3 years of experience in IT security....