
Application Security Engineer
Valence
full-time
Posted on:
Location Type: Hybrid
Location: New York City • New York • United States
Visit company websiteExplore more
Tech Stack
About the role
- Stay ahead of engineering: review code, architecture, design, anything that’s being considered for release
- Guide features and designs toward security
- Provide hands-on manual pentesting on relevant code changes
- Build and maintain security tooling to ensure security scales with organisation
- Advise the DevOps team on infrastructure security best practices
- Help out with client-facing security needs, such as client calls
Requirements
- Proven experience securing products & platforms, collaborating with development teams
- Strong expertise in application security: OWASP Top 10, threat modeling, code reviews, architecture design
- Proficiency with AI tooling, as part of your day-to-day activities
- Solid understanding of AI itself, including AI threats, adversarial testing
- Familiarity with AWS and infrastructure security overall
- Be comfortable writing and reviewing Python and TypeScript, with other coding experience a plus
- Experience with incident response and SOC processes
- Knowledge of compliance frameworks: SOC 2, ISO 27001, NIST
- Experience with enterprise security processes, such as security questionnaires and client calls
- We don’t expect candidates to have deep expertise in every area; strength in application security with curiosity and adaptability across adjacent domains is key
Benefits
- 📊 Check your resume score for this job Improve your chances of getting an interview by checking your resume score before you apply. Check Resume Score
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
application securityOWASP Top 10threat modelingcode reviewsarchitecture designPythonTypeScriptincident responseSOC processesadversarial testing
Soft Skills
collaborationadaptabilitycuriosityclient-facing communication
Certifications
SOC 2ISO 27001NIST