Software Security Engineer

| Remote
Sorry, this job was removed at 8:09 a.m. (CST) on Tuesday, December 21, 2021
Find out who’s hiring remotely Nationwide
See all Remote jobs Nationwide
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Paylocity is an equal opportunity employer.
Don't just land a job. Launch your future.
Our all-in-one software platform gives HR pros a way to easily manage daily tasks in payroll, benefits, talent, and workforce management.
But what makes us different is that our technology is backed by a culture that cares. We care about our team members, clients, and partners - because people matter most. And people have always been at the heart of our business.
Since our founding in 1997, this is the thing that's stayed the same, from our employees to the millions of users nationwide that access our platform. We pride ourselves on partnering with our clients to build the workplace they and their employees crave.
Let's go forward together.
Position Overview:
The Software Security Engineer is responsible for understanding and providing guidance to internal teams on best practices in software security and architecture for Paylocity's Information Systems. Responsibilities will also include development and maintenance of internal application security tools, and performing threat modeling, static analysis, and dynamic analysis of our web and mobile applications.
Location: Remote
Reports To: Manager, Application Secutiry
Responsibilities:
The below represents the primary responsibilities of the position. Other duties may be assigned as needed.

  • Develop and maintain internal application security tooling.
  • Automate security testing and vulnerability management procedures where reasonable.
  • Integrate security into the build/deployment process.
  • Promote a proactive approach to addressing the changing threat landscape by recommending and implementing architectural improvements to security infrastructure.
  • Provide expert guidance and recommendations for strategic and tactical security architecture topics through risk advisory services.
  • Perform vulnerability research, assessment, and management, serve as a technical security/risk advisor on all new technologies used/developed at Paylocity such as cloud, session management, SSO, database, WAF, Opensource libraries.
  • Support offensive security professionals by suggesting remediation strategies for reported vulnerabilities.
  • Assist developers in remediating vulnerabilities by providing line-by-line guidance.
  • Provide training and education to developers on software security best practices in various cloud-based systems.
  • Utilize dynamic application vulnerability scanning using tools like White Hat Sentinel, IBM AppScan, HP WebInspect, Netsparker, AppSpider, or Cenzic Hailstorm.
  • Utilize static application vulnerability scanning using tools like HP Fortify, Checkmarx, Veracode, Coverity, etc.


Requirements:

  • Bachelors' Degree in InfoSec, Computer Science, or a related discipline.
  • Minimum 3-5 years' experience with full-stack web development.
  • In-depth knowledge of at least one JavaScript framework (React/Angular/etc.) or Vanilla JavaScript/JQuery.
  • Working knowledge of SQL.
  • Experience developing and working with Web APIs.
  • Experience interpreting results from Static Code Scanning tools.
  • Strong knowledge of Security Token Services, Federated Identity Providers, SAML 2.0, claims-based security and other SSO technologies.
  • Experience with creating and maintaining Threat Models at scale.
  • Experience with securing database platforms.
  • Experience in remediating security vulnerabilities beyond OWASP Top 10.
  • Experience in performing security assessments on cloud-based multi-tenant Software-as-a-Service (SaaS) applications running on the .NET platform.
  • Experience in assessing security of native and hybrid mobile applications beyond the use of automated tools.

Preferred Skills:

  • Experience developing in .NET
  • Experience with NoSQL/MongoDB
  • Experience with message-based systems (RabbitMQ/NServiceBus/etc.)
  • Experience in at least one scripting language (Python/Ruby/Perl/PHP/etc...)
  • Functional knowledge of container-based application infrastructure with Docker
  • Experience working with Payroll, HR, Time & Labor Management, and Online Benefits Enrollment applications
  • Experience with writing Burp plugins, opensource security tools, presenting at security conferences, writing technical research papers or publishing CVEs

Soft Skills:

  • Team Player - will be able to collaborate with others to make awesome happen.
  • Self-Motivated - you like to work hard, play hard.


#LI-East
#LI-Central
#LI-Tech
#LI-Remote
#sponsorship
If you are a Colorado resident, you may be eligible to receive additional information about the compensation and benefits for this role, which we will provide upon your request. You may contact [email protected] for assistance.
Our journey forward.
Paylocity strives to create an organizational culture where every employee has a voice, feels truly welcome, appreciated, and free to be themselves, and is empowered and enabled to do their best work. A strong commitment to diversity, equity, and inclusion is critical to creating such a culture.
We've made great strides to support diversity, equity, and inclusion. That being said, we realize there's still room for improvement. Our current focus is on the following initiatives:

  • Education & Awareness
  • Client Community
  • Company Representation
  • Advocacy & Support
  • Fairness & Equality
  • PCTY Gives

Want to learn more, click here to access our DEI flipbook. https://www.flipsnack.com/paylocitycom/diversity-equity-and-inclusion.html
This job description has been written to provide an accurate reflection of the current job and to include the general nature of work performed. It is not designed to contain a comprehensive detailed inventory of all duties, responsibilities, and qualifications required of the employees assigned to the job. Management reserves the right to revise the job or require that other or different tasks be performed when circumstances change.
This role can be performed from any office in the US. The pay range for this position in Colorado is $88,982.00 - $136,532.00; however, base pay offered may vary depending on job-related knowledge, skills, and experience. This position is eligible for an annual bonus and restricted stock unit grant based on individual performance in addition to a full range of benefits outlined here. This information is provided per the Colorado Equal Pay for Equal Work Act. Base pay information is based on market location. Applicants should apply via www.paylocity.com/careers.

More Information on Paylocity
Paylocity operates in the HR Tech industry. The company is located in Chicago , IL, Lake Mary, FL and Meridian, ID. Paylocity was founded in 1997. It has 5000 total employees. It offers perks and benefits such as Volunteer in local community, Partners with nonprofits, Open door policy, OKR operational model, Team based strategic planning and Open office floor plan. To see all 62 open jobs at Paylocity, click here.
Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Similar Jobs

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about PaylocityFind similar jobs