
Staff Software Engineer, Runtimes Security Champion
Kong Inc.
full-time
Posted on:
Location Type: Hybrid
Location: 🇮🇹 Italy
Visit company websiteJob Level
Lead
Tech Stack
AWSCloudGoGoogle Cloud PlatformRustSDLCTCP/IP
About the role
- Act as a liaison between the Kong Runtime engineering teams and the security org to develop innovative requirements for the security roadmap.
- Evangelize security best practices across the Kong Runtime engineering org.
- Research, design, implement and own security oriented frameworks and features with the common goal of hardening Kong’s dataplane and protecting Kong’s customers.
- Routinely provide security engineering designs and code reviews for sensitive paths.
- Break down complex problems into sub-tasks while prototyping rapidly and iteratively contributing to security initiatives using agile practices.
- Coach and mentor Kong Runtime engineers on security best practices.
Requirements
- 8+ years working in and leading teams to develop, deliver, and maintain complex software solutions, with a focus on security.
- Expertise in Golang or Rust.
- Expertise in security at all levels of the TCP/IP stack.
- Strong understanding of concepts such as Test-Driven development, Secure SDLC, Secure code reviews and the ability to identify and mitigate threat vectors and vulnerabilities in code and infrastructure.
- Good understanding and experience in using cloud service providers such as AWS and GCP.
- Developing and maintaining technical documentation such as cookbooks, design and architecture docs.
- Ability to meticulously analyze complex technical environments, accurately identify risks, and design practical, scalable, and effective security solutions.
- Outstanding communication skills, with the ability to articulate complex security needs and translate them into clear processes and requirements for different engineering teams.
Benefits
- Health insurance
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
GolangRustsecurity engineeringTest-Driven developmentSecure SDLCsecure code reviewsthreat vector identificationvulnerability mitigationcloud service providerstechnical documentation
Soft skills
communication skillscoachingmentoringproblem-solvinganalytical skills