Application Security Engineer
RemotePalo Alto, California, United States
Job Summary
Conduct web application security tests to identify vulnerabilities and perform internal assessments to ensure security baselines are met. Execute vulnerability scans to verify system component configurations, then triage reports by reproducing issues and evaluating their impact. Collaborate with developers to coordinate fixes and prepare release communications, while managing third-party security assessments including scheduling, monitoring progress, and remediation. This role supports the Lisbon R&D team's full engineering stack, contributing to platforms used by over 2,700 global firms in investment, legal, and consulting sectors.
Required Qualifications
- 1-3 years in a security role, preferably as a penetration tester, developer, or QA
- Thorough knowledge of web application security testing including the ability to identify and exploit common categories of vulnerabilities (e.g., OWASP Top 10)
- Experience analyzing vulnerabilities and assessing severity using CVSS
- Ability to speak and write fluently in English
Desired Qualifications
- Ability to automate common tasks using Python
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.