Application Security Engineer

Posted Yesterday
Be an Early Applicant
Hiring Remotely in United Kingdom
Remote
Mid level
Cloud • Information Technology • Consulting
The Role
Support and advance the application security program: review designs and architecture, advise engineering/DevOps on secure SDLC practices, run static/dynamic scans and manual assessments, triage external pentest and bug-bounty findings, and drive security process improvements.
Summary Generated by Built In
About Intermedia  
Are you looking for a company where YOUR VOICE is heard? Where you can MAKE A DIFFERENCE? Do you THRIVE in a FAST-PACED work environment? Do you wake every morning EXCITED to work with GREAT PEOPLE and create SUCCESS TOGETHER? Then Intermedia is the place for you. 
Intermedia has established itself as a leading provider of cloud communications and collaboration tech that allows companies to connect better. We have a strong track record of growth, profitability, and creating an environment where everyone matters. Everyone. While we are fast-paced and admittedly a bit intense, we promise that you won’t be bored. You will find Intermedia is a place where you can indulge your passion for creating and supporting great cloud technology. What’s more, we always look to promote from within and have many employees who have been with us 10, 15, and 20+ years! 
Culture at Intermedia is built on teamwork and transparency.  We hold each other accountable and always have each other’s back! 
Are you ready to make your mark? 

About the Role
 
Intermedia has a wide portfolio of internally developed application software, ranging from web and desktop apps to lower level PBX solutions. Due to the growing demand for integrating security activities into diverse development processes, Intermedia is looking for an experienced and self-motivated Application Security Engineer to help us deliver built-in security to our products.
As part of the Global Security team, you will support our company wide application security program, helping the company build secure products. You will be the voice of security for all things related to application security to our spectrum of engineering teams, guiding the architecture and execution of our SDLC throughout the enterprise. This position is an individual contributor role, reporting directly to the Manager, Application Security.

What you will be doing:
  • Perform design and architecture review of new features, suggest security requirements
  • Collaborate with DevOps and engineering teams, advising on security features and best practices in SDLC
  • Utilize static security scanning tools, review findings and coordinate remediation actions
  • Perform ongoing manual security assessments
  • Review the results of external penetration tests and communicate suggested fixes to development teams
  • Provide on-demand support on application security topics
  • Drive process improvement ideas
  • Assist with vetting and intake of defects from 3rd party security researchers via our Bug Bounty program

What you will bring to the role:
  • 3 - 5 years of experience in the application security field
  • Bachelors or Master Degree in related field of expertise
  • Knowledge of secure coding best practices and industry standards (such as OWASP) and the ability to apply them to different programming languages
  • Familiarity with SDLC and DevSecOps concepts and hands-on experience in implementing them
  • Knowledge and/or hands on experience with identifying A.I. threats in a security landscape
  • Experience in using static and dynamic security scanning tools (such as BurpSuite, ZAP, and Snyk, or other related technologies)
  • Experience with programming languages such as Python is preferred
  • Ability to explain application security threats and mitigation options to both developers and project managers
  • Good communication skills in written and verbal English
  • Experience and/or knowledge in securing applications within cloud platforms (AWS, Azure) and containerized environments (Docker, Kubernetes)
  • Participation in CTF challenges and bug-bounty programs

Diversity, Inclusion, and Equal Opportunity
We hire, promote, and compensate employees based on their ability to perform their job responsibilities, without regard to race, color, creed, religion, sex, gender, marital status, national origin, ancestry, age, citizenship, physical or mental disability, sexual orientation, or any other basis protected by applicable law (collectively referred to in our Code of Conduct as “Protected Classes”). We do not tolerate employment discrimination in the workplace, and we are committed to making reasonable accommodations for identified disabilities or other limitations as required by all applicable laws. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. 

About
To explore other opportunities check out our careers page: https://www.intermedia.com/about-us/careers

Skills Required

  • 3 - 5 years of experience in the application security field
  • Bachelor's or Master's degree in a related field
  • Knowledge of secure coding best practices and industry standards such as OWASP
  • Familiarity with SDLC and DevSecOps concepts and hands-on experience implementing them
  • Knowledge and/or hands-on experience identifying AI threats
  • Experience using static and dynamic security scanning tools (e.g., BurpSuite, ZAP, Snyk)
  • Experience with securing applications on cloud platforms (AWS, Azure) and containerized environments (Docker, Kubernetes)
  • Ability to explain application security threats and mitigation options to developers and project managers
  • Good written and verbal English communication skills
  • Experience with programming languages such as Python
  • Participation in CTF challenges and bug-bounty programs
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Sunnyvale, CA
1,169 Employees
Year Founded: 1993

What We Do

Intermedia is the cloud communications company that helps over 135,000 businesses connect better – through voice, video conferencing, chat, contact center, business email and productivity, file sharing and backup, security, archiving, and more – from wherever, whenever. We strive to eliminate the need for multiple communications service providers with a seamlessly integrated portfolio of communications and collaboration solutions – all delivered through one highly reliable and secure platform. With month-to-month contract options, one monthly bill, one intuitive point of administrative control, and having been certified by J.D. Power seven times for providing “An Outstanding Customer Service Experience," Intermedia is committed to providing enterprise-grade products to businesses of all sizes through a simple, Worry-Free Experience. As a partner-first company, Intermedia goes to work for over 7,500 channel partners by providing a comprehensive set of programs, resources, and support to help them grow their revenue and maximize their success. Programs include our Customer Ownership Reseller (CORE™) model – which enables partners to resell, package, and manage Intermedia's solutions as if they were their own, while benefiting from highly attractive economic terms and maintaining ownership of their customer relationships – as well as agent models. Intermedia is also proud to be the exclusive cloud communications platform provider for NEC, a leader in global market share for unified communications with an estimated 80+ million business phone users worldwide. Recent Awards: • J.D. Power Certified Assisted Technical Support Program – 2023, 2021, 2020, 2019, 2018, 2017, 2016 • Inc. Magazine’s Best Workplaces of 2021 • PCMag Editor’s Choice – Intermedia Unite • PCMag Editor’s Choice – Intermedia AnyMeeeting • PCMag Editor’s Choice – Intermedia Hosted Exchange • CRN - 5-Star Partner Program - 2023, 2022 • CRN’s Cloud Computing Product of 2022, 2021 – Intermedia Unite

Similar Jobs

Trimble Logo Trimble

Application Security Engineer

Hardware • Information Technology • Other • Software • Analytics
Remote
UK
10001 Employees

RELX Logo RELX

Application Security Engineer

Information Technology • Legal Tech • Analytics
In-Office or Remote
2 Locations
10001 Employees

Elsevier Logo Elsevier

Application Security Engineer

Artificial Intelligence • Healthtech • Information Technology • Other • Analytics
In-Office or Remote
2 Locations

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account