Application Security Engineer

Reposted 3 Days Ago
5 Locations
Remote or Hybrid
175K-175K Annually
Mid level
eCommerce • Legal Tech • Professional Services • Software • Data Privacy
Fighting hubris, mission statement hypocrisy, and a tendency to overcomplicate things. We try to do good work each day.
The Role
The Security Engineer role involves identifying vulnerabilities, automating tasks in penetration testing, and creating security reports for various audiences.
Summary Generated by Built In
Overview:
Corporate Tools is hiring an Security Engineer for $175,000/year. You will be a traditional company employee. This is a remote position, but if you're near one of our local offices, you're welcome to come hangout with us in-office as well. Our main offices are in Post Falls, ID, and Spokane, WA; we also have satellite offices in Austin, TX, and Salt Lake City, UT. You'll be working 40 hours a week and, of course, enjoy great company benefits.
We are expanding our team to include a Security Engineer to be 100% focused on our security efforts. As the right candidate, you will have experience working in-house as a full-time penetration tester, a regular 3rd party bug bounty program pen tester, or in a similar security type role. Your job will be to identify our vulnerabilities to help keep our information safe and secure.
Wage:
Up to $175,000/year
Benefits:
  • 100% employer-paid medical, dental and vision for employees
  • Annual review with raise option
  • 22 days Paid Time Off accrued annually, and 4 holidays
    • After 3 years, PTO increases to 29 days. Employees transition to flexible time off after 5 years with the company-not accrued, not capped, take time off when you want
    • The 4 holidays are: New Year's Day, Fourth of July, Thanksgiving, and Christmas Day
  • Paid Parental Leave
  • Up to 6% company matching 401(k) with no vesting period
  • Quarterly allowance
    • Use to make your remote work set up more comfortable, for continuing education classes, a plant for your desk, coffee for your coworker, a massage for yourself... really, whatever
  • Open concept office with friendly coworkers
  • Creative environment where you can make a difference
  • No dumb benefits like free dog walking on the weekends that snobby hipster places have to make you feel cool, but mathematically won't cost the company much money because you won't use it
  • Trail Mix Bar --- oh yeah

Responsibilities:
  • Understand and safely use various open source penetration testing tools and when appropriate, emulating hacker tactics, techniques, procedures
  • Create security vulnerability reports for both technical and executive audiences
  • While in-between assessments, you will be expected to help our security engineers think through solutions to problems you find
  • Automate tasks and script at a basic level to enhance penetration testing processes
  • Passion for learning new technologies and processes, and contributing to refining existing capabilities
  • Communicate with stakeholders (technical and non-technical), both verbal and written
  • Stay up to date on 0 day exploits for tech stacks we use

Requirements:
  • Solid fundamentals in webapp and network pentesting (2+ years). Pentesting experience in mobile apps, APIs, and/or cloud environments a bonus
  • 4+ years of professional experience in Ruby on Rails or equivalent and Vue or a Frontend equivalent framework
  • Experience with Linux and cloud environment testing
  • Understanding of security issues for desktop, virtual, cloud services and network infrastructures
  • Working knowledge of information systems security standards/practices (e.g., access control and system hardening, system audit and log file monitoring, security policies, and incident handling)
  • Experience with secure network protocols and encryption of communications between networked hosts
  • Experience in IT systems and security policies, standards, industry trends, and techniques
  • Experience with assessing APT threats, Penetration Testing, Vulnerability Management, attack methodologies, forensics analysis techniques, malware analysis, attack surface comprehension, Cyber Threat Emulation operations, Cyber Advanced Threat Emulation Team operations and research, identification, and/or verification of new APT TTPs
  • Fundamental understanding of security knowledge of testing mobile, native applications, web applications, distributed and database systems
  • Must be detail-oriented and possess strong problem-solving skills and ability to analyze for potential future issues
  • Solid understanding of common webapp vulnerabilities, exploitation techniques, and remediation options

Top Skills

Ruby On Rails
Vue

What the Team is Saying

Jason
Joshua Stubb
Vanessa Sickles
Josh Groeschl
Hank
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Spokane, WA
1,200 Employees
Year Founded: 2014

What We Do

Corporate Tools is proudly, stubbornly independent. No outside investors calling the shots. It’s just us choosing customers over profits, every time.

We build the behind-the-scenes tools that keep businesses running: software, LLC filings, registered agent service, website and domain registration, address services… basically all the unglamorous stuff that makes companies actually work.

We’ve grown into one of the largest B2B providers in the U.S. by sticking to a simple mission: solve the real, messy, confusing problems of starting and running a business, while keeping your privacy intact and making your life a whole lot easier.

Why Work With Us

We’re privately held, debt free, and focused on people. Not investors. That means we can keep hiring folks we like, building tools that actually work, and making sure our customers are taken care of. If you want to know more about what values drive us, check out our Company Principles.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Corporate Tools LLC Teams

Team
Product & Tech
About our Teams

Corporate Tools LLC Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

As a hybrid employer we have full-time remote employees and employees that live near our offices who have the option to work in-office or from home. There are just a few, select roles that specify and require some in-office time.

Typical time on-site: Flexible
HQSpokane, WA
Austin, TX
Post Falls, Idaho
West Jordan, UT
Learn more

Similar Jobs

Corporate Tools LLC Logo Corporate Tools LLC

YouTube Channel Manager

eCommerce • Legal Tech • Professional Services • Software • Data Privacy
Remote or Hybrid
5 Locations
1200 Employees
90K-90K Annually

Corporate Tools LLC Logo Corporate Tools LLC

Senior Front-End Vue Developer

eCommerce • Legal Tech • Professional Services • Software • Data Privacy
Remote or Hybrid
5 Locations
1200 Employees
150K-150K Annually

Corporate Tools LLC Logo Corporate Tools LLC

Graphic Designer

eCommerce • Legal Tech • Professional Services • Software • Data Privacy
Remote or Hybrid
5 Locations
1200 Employees
75K-75K Annually

Corporate Tools LLC Logo Corporate Tools LLC

Senior Data Engineer

eCommerce • Legal Tech • Professional Services • Software • Data Privacy
Remote or Hybrid
5 Locations
1200 Employees
150K-150K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account