Senior Engineer, Product Security

Work set-up: 
Full Remote
Contract: 
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Bachelor's degree in computer science, engineering, or related field., Minimum of 5 years of experience in product or application security., Proficiency with security tools and frameworks like OWASP and NIST., Strong knowledge of web, mobile, and cloud security, cryptography..

Key responsibilities:

  • Conduct security assessments, reviews, and threat modeling of products.
  • Lead penetration testing of web, API, and mobile applications.
  • Provide security guidance throughout the software development lifecycle.
  • Maintain security tooling and develop security standards for product development.

Job description

Job Description:

The Senior Engineer, Product Security is responsible for conducting security assessments, implementing security best practices, and collaborating with product teams to ensure that our products meet the highest security standards.

  • Perform security reviews and threat modeling of product features and architectures. 
  • Lead and execute comprehensive penetration testing of web applications, APIs, mobile applications. 
  • Provide security guidance and support to product teams throughout the software development lifecycle. 
  • Maintain security tooling (SAST, DAST, WAF etc.) and develop security guidelines and standards for product development. 
  • Research and evaluate new security technologies and solutions. 
  • Stay up to date with the latest security trends and threats. 
  • Integrate security tools into CI/CD and finetune rules to reduce false positives. 
  • Write scripts to automate manual tasks. 
  • Perform other duties that support the overall objective of the position. 
  • Knowledge of AI Security will be a plus.  
  
Education Required:     
  • Bachelor's degree in computer science, Engineering, or related field. 
  • Or, any combination of education and experience which would provide the required qualifications for the position. 
  
Experience Required: 
  • 5+ years of experience in product security/application security, or software engineering. 
  • Experience with security tools and frameworks (e.g., OWASP, NIST etc.). 
  • Experience with security testing methodologies and tools (e.g., static analysis, dynamic analysis, penetration testing, etc.). 
  • Proven experience in application penetration testing 
  • Good writing skills to provide clear penetration test reports and assist the developer to fix the vulnerabilities. 
 
Knowledge, Skills & Abilities: 
  • Knowledge of: Strong knowledge of web and mobile security, cloud security, cryptography. Proficiency in security technology, frameworks, security testing methodologies and tools.  
  • Skill in: Excellent communication, interpersonal, and collaboration skills. Problem solving, analytical skills. 

NextGen Healthcare is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Required profile

Experience

Level of experience: Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Collaboration
  • Communication
  • Analytical Skills
  • Social Skills
  • Problem Solving

Related jobs