Sr. Security Engineer
hace 2 días
Join to apply for the Sr. Security Engineer role at Aha 1 day ago Be among the first 25 applicants Aha is the world's #1 product development software. We help more than 1 million product builders go from discovery to delivery and bring their strategy to life. Our suite of tools includes Aha Roadmaps, Aha Discovery, Aha Ideas, Aha Whiteboards, Aha Knowledge, Aha Teamwork, and Aha Develop. Product teams rely on our expertise, guided templates, and training programs via Aha Academy to be their best. We are proud to be a very different type of high-growth SaaS company. The business is self-funded, profitable, and 100% remote. We are recognized as one of the best fully remote companies to work for, champion the Bootstrap Movement, and have given over $1M to people in need through Aha Cares. Learn more at Our team We help each other grow: We each bring unique skills to the table and want our teammates to feel valued from the start. Our onboarding program exposes new hires to the codebase and lets them contribute right away. We move quickly: We ship code multiple times a day. We believe in getting valuable features in front of customers and iteratively improving as we learn what works and what does not. We value product over process: We want the team to have the time and focus needed to solve complex challenges. We minimize overhead by setting clear goals and avoiding heavyweight processes and excessive meetings. We share knowledge freely: We share our learnings with one another and with the developer community. Our engineering blog demonstrates how we tackle interesting challenges at Aha We enjoy: We like what we do. And we want you to love your team and your job too. Learn more about The Responsive Method, our company values, and the generous benefits we offer. Our technology Our web application is a single-instance, multitenant Ruby on Rails monolith supported by Postgres (database), Redis (background jobs), Kafka (event processing), and Memcached (Rails caching). We also run a Node.js webserver to support collaborative editing and real-time updates. Our application is hosted on Amazon Web Services and architected with ECS for reproducibility and scalability. We use a growing amount of React on the front end to build rich client-side experiences, including our fully collaborative text editor and slide presentation editor. We balance the strengths of both technologies: Rails for its conventions and simplicity and React for more powerful interactive functionality. Teammates embrace the new technologies that help us deliver a lovable product suite, but we also remain cognizant of the maintenance overhead a new library or platform brings. We solve the problems in front of us — rather than prematurely optimizing to address issues that might never materialize. We do most of our planning and collaboration in Aha Roadmaps and built Aha Develop so software engineers and their teams can take advantage of those same rich features. We use Slack and Zoom for video calls. (Email? Rarely.) Your experience The primary focus of this role is web application security, so you should be deeply knowledgeable about vulnerabilities and mitigations. You are familiar with securing data in multitenant architectures and have helped engineers build secure applications. Skills We believe that being a kind person who elevates the rest of the team is just as valuable as writing great code. You are humble, eager to learn, and always willing to help others. You want teammates who enjoy solving problems, regardless of the technologies and techniques involved. You have worked at meaningful scale before and want to do so again. You also have the following experience and skills: Four+ years of experience working in application security Active collaborator with engineering and product teams Experience with security reviews or threat modeling for a full-stack web application Experience with security tools such as CodeQL or Burp Suite Experience with Ruby on Rails is a plus Your work at Aha The security team works across our suite of products and provides guidance for the larger engineering team across the full stack. We are passionate about data security and helping each other. As a Senior Security Engineer, your work will include: Identifying application security threats and mitigations early Improving and maintaining security code scanning tools Contributing to application security scanning or testing Developing and sharing secure patterns internally for ongoing education Grow with us Everyone deserves to reach their fullest potential. We know that when we do work that matters with people we care about in a high-growth environment, we feel engaged and alive. It is why we joined Aha and how we achieve our very best. Benefits We offer all the benefits you would expect and more, including profit sharing. The specific benefits listed below are reflective of what we offer U.S.-based hires. We also do our best to extend identical benefits to international teammates. The base salary range for this role in the U.S. is between $110,000 and $190,000 Cash-based compensation also includes profit sharing, and we contribute a percentage of your total pay each month toward your retirement Medical, dental, and vision plans (for many teammates, we cover 100% of the premiums) Up to 200 hours of paid time off a year to spend however you want 30 to 90 days of paid parental leave and five to 10 days of paid care and bereavement leave Up to $1,000 annually for third-party education, along with paid time off to immerse yourself in learning Volunteer opportunities throughout the year Base salary and total compensation are dependent upon many factors, including skills, experience, and relevant past roles. Seniority level Mid-Senior level Employment type Full-time Job function Information Technology Industries Software Development Sign in to set job alerts for “Senior Security Engineer” roles. #J-18808-Ljbffr
-
Sr. Security Engineer
hace 2 semanas
Ciudad de México Page Personnel A tiempo completoOpportunity to be part of a multinational team working as a Sr Security Engineer**Sobre nuestro cliente**:Be part of one of Page Resourcing's multinational clients in the IT sector**Descripción**:The main responsibilities are to:- Design, implement, and maintain security controls and technologies to protect against cyber threats, such as firewalls,...
-
Network Security Engineer
hace 2 semanas
estado de méxico Levi Strauss & Co. A tiempo completoJoin to apply for the Network Security Engineer role at Levi Strauss & Co. 1 day ago Be among the first 25 applicants Join to apply for the Network Security Engineer role at Levi Strauss & Co. Job DescriptionCalling all originals: At Levi Strauss & Co., you can be yourself — and be part of something bigger. We’re a company of people who like to forge our...
-
Sr Cloud Engineer
hace 1 semana
estado de méxico NTT DATA A tiempo completoJob Title / Role GCP & GKE - Sr Cloud Engineer Location Mexico, México (MX-MEX), Mexico (MX) Job Description NTT DATA is seeking a senior cloud engineer with deep expertise in Google Cloud Platform to design, build, and manage cloud solutions, primarily in GCP and GKE. The role involves leading cloud transformation programs, optimizing costs, ensuring...
-
Sr. Security Engineer
hace 1 semana
méxico Aha! A tiempo completoJoin to apply for the Sr. Security Engineer role at Aha! Aha! is the world's #1 product development software. We help more than 1 million product builders go from discovery to delivery and bring their strategy to life. Our suite of tools includes Aha! Roadmaps, Aha! Discovery, Aha! Ideas, Aha! Whiteboards, Aha! Knowledge, Aha! Teamwork, and Aha! Develop....
-
Security Engineer
hace 2 semanas
estado de méxico DiDi A tiempo completoAbout the Company DiDi Global Inc. is the world’s leading mobility technology platform. It offers a wide range of app-based services across markets including Asia-Pacific, Latin America and Africa, including ride hailing, taxi hailing, chauffeur, hitch and other forms of shared mobility as well as auto solutions, food delivery, intra-city freight, and...
-
Cyber Security Engineer
hace 2 semanas
estado de méxico Cloudflare A tiempo completoOverview Join to apply for the Cyber Security Engineer role at Cloudflare 1 day ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Direct message the job poster from Cloudflare About Cloudflare At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s...
-
Security Engineer
hace 2 semanas
Ciudad de México Pulpo A tiempo completo**Qualifications** - Desire to work in a startup environment, able to self-manage and work remotely. - The commercial acumen to provide cost-effective security solutions - Proven working experience in security technologies implementation and support. - Working experience in security assurance. - Working knowledge of the general security landscape,...
-
Security Engineer
hace 2 semanas
Ciudad de México Pulpo A tiempo completo**Qualifications**- Desire to work in a startup environment, able to self-manage and work remotely.- The commercial acumen to provide cost-effective security solutions- Proven working experience in security technologies implementation and support.- Working experience in security assurance.- Working knowledge of the general security landscape, architectures,...
-
AWS Security Engineer
hace 3 semanas
Ciudad de México Tata Consultancy Services A tiempo completoTATA* is looking for Mid Container Security Engineer. hybrid mode. Collaborate with application and DevOps teams to analyze scan results, prioritize findings, and guide remediation. GitHub Actions, GitLab CI, Jenkins). Develop and maintain automation scripts in Python or Shell for reporting, alerting, and compliance tracking. Enforce...
-
Cyber Engineer III
hace 2 días
estado de méxico McDonald's Corporation A tiempo completoThe Senior Engineer, Application & API Security is a key member of the E-WAAP team and serves as a technical lead for our Akamai-based web and API security platform. You will: Lead onboarding of new applications and APIs onto Akamai (WAF, CDN, bot, and API security capabilities). Design and tune security policies to protect against OWASP Top 10, API abuse,...