Box
Remote

Product Security Engineer

Sorry, this job was removed at 8:16 a.m. (CST) on Monday, April 25, 2022
Find out who’s hiring remotely Nationwide
See all Remote jobs Nationwide
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

 

WHAT IS BOX? 

 

Box is the market leader for Cloud Content Management. Our mission is to power how the world works together. Box is partnering with enterprise organizations to accelerate their digital transformation by creating a single platform for secure content management, collaboration and workflow. We have an amazing opportunity to further establish ourselves as leaders in the space, and we need strong advocates to help us achieve that goal. 

By joining Box, you will have the unique opportunity to help capture a majority of this developing market and define what content management looks like for the digital enterprise. Today, Box powers over 97,000 businesses, including 70% of the Fortune 500 who trust Box to manage their content in the cloud. 

WHY BOX NEEDS YOU 

 

It's an amazing time to be working at Box. With millions of users on our platform, we have an opportunity to ship products that will change the way that people work. Box is expanding its next generation security program for the cloud, and you can be a critical part of this creative, fast-paced, and exciting team. We are seeking a security professional with Product Security acumen with primary focus on Secure Software Development Life Cycle initiatives. 

WHAT YOU'LL DO 

  • Perform architectural review of product designs to perform a threat analysis, identify security risks, and provide recommendations to make our products secure and resilient
  • Deliver Threat Models in collaboration with engineering teams, enumerating potential attack scenarios. 
  • Review of source code for secure coding best practices
  • Incorporate secure code tools, technologies and processes in build pipelines and work with Director of Product Security on establishment of secure development practices
  • Ability to automate using Python, Java or other languages
  • Web / Mobile Application Penetration Testing
  • Working with engineering teams to prioritize security concerns, fix security risks, and provide mitigation recommendations
  • Communicate security risks and recommendations effectively with technical and non-technical audiences through verbal and written communications that lead to actionable and measurable improvements
  • Provide perspective on trends, recommendations, and best practices for customer success 
  • Owns or co-owns team level projects; executes with minimal guidance
  • Influence across teams with similar function (i.e. identifying and coordinating dependencies)

WHO YOU ARE 

You have extensive experience in the product security space, have personally identified and remediated security flaws/concerns, have performed attack/threat modeling, and have lead pen-testing efforts. You are comfortable working on cross vertical initiatives, providing security requirements, and working with engineering to remediate and raise valid issues.

Requirements

  • Degree in Computer Engineering, Computer Science, or a related field
  • 5+ Years Experience in the security field with a focus on securing products and applications 
  • Expertise on OWASP Top 10, Securing Microservices, Rest API, OAUTH, SAML, Securing SaaS solutions, CI/CD build eco systems
  • Familiarity with one or more programming languages, AWS/GCP cloud infrastructure services
  • Comfortable performing architecture, design reviews, threat modeling for security posture and risk assessment
  • You enjoy the challenge of a penetration test
  • Programming experience in the following but not limited to : Javascript, Python, Java, C/C++, Go, Rust
  • Excellent problem solving skills 
  • Excellent written and verbal communication skills

Nice to haves

  • Cybersecurity-related certification(s), including CCSP, CISSP, OSCP, OSWE, CEH, GPEN is a plus 
  • Expertise on Container Security
  • Experience and understanding of Cloud orchestration technologies like Kubernetes, Microservices, Docker
  • Proven track record of finding zero days/CVEs
  • Strong understanding of past, current, and emerging security exploits

BENEFITS 

Visit this webpage to check out all of our exciting benefits: https://join.collectivehealth.com/box

EQUAL OPPORTUNITY 

 

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

 

HEALTH AND SAFETY

 

To promote the health and safety of all Boxers and our communities, in order to "Go to Work" at Box in the U.S., you must be Fully Vaccinated or have an approved accommodation. "Go(ing) to Work" at Box is defined as visiting a Box office, facility, or co-working site, visiting or meeting in person with fellow Boxers, Box clients and/or customers, vendors, or partners, engaging in business travel, and or participating in any Box-sponsored and/or related activity where others are present.  If you are fully remote and do not "Go to Work,” the vaccination requirement is not applicable.  "Fully Vaccinated" means that an individual is at least two weeks past their final dose of an authorized COVID-19 vaccine regimen.  If you are unable to get a vaccine due to a medical condition, a sincerely-held religious belief or another legally recognized reason, Box will consider requests for an accommodation.

For details on how we protect your information when you apply, please see our Personnel Privacy Notice.

 

#LI-Remote #LI-MG2

See More
Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

What are Box Perks + Benefits

Box Benefits Overview

Not only are we driving success as a cloud content management platform, to having the most talented group of 10x-ing, GSD-ing, fun-loving Boxers, we also provide the BEST benefits and perks!

Whether you're looking for traditional benefits or fun perks - Box has you covered!

Comprehensive healthcare benefits
Award-winning mental health, wellbeing and family support programs
Cutting-edge behavioral health services
Paid maternity and paternity leave
Award-winning fertility and family forming benefits
Equity award and an excellent Employee Stock Purchase Plan (ESPP)
Generous time off including holidays, 5 fresh air Friday's/Mental Health Monday's, your birthday and 3 days for volunteer time!
4 week, 100% paid Sabatical program for Boxers with 7+ years at Box!

Beyond Healthcare

Career Development
Employee Resource Communities
Fun @ Box: Happy hours, interest groups, sporting events, races and more
Meals & Snacks: daily meal stipends while in the office and stocked micro kitchens to keep you energized
Commuter Benefits for parking and mass transit
Gym Membership/wellness reimbursement and incentives: Activity, nutrition & health is a priority!
Monthly phone bill reimbursement
Employee Assistance - support and guidance for life challenges

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Day off for your birthday
Quarterly engagement surveys
Hybrid work model
Employee awards
Flexible work schedule
Remote work program
Diversity
Dedicated diversity and inclusion staff
Highly diverse management team
Mandated unconscious bias training
Diversity employee resource groups
Hiring practices that promote diversity
Diversity recruitment program
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Wellness programs
Team workouts
Mental health benefits
Transgender health care benefits
Financial & Retirement
401(K)
Company equity
Employee stock purchase plan
Performance bonus
Pay transparency
Child Care & Parental Leave Benefits
Generous parental leave
Family medical leave
Adoption Assistance
Fertility benefits
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid volunteer time
Sabbatical
Paid holidays
Paid sick days
Bereavement leave benefits
Company-wide vacation
Office Perks
Commuter benefits
Company-sponsored outings
Free daily meals
Free snacks and drinks
Some meals provided
Company-sponsored happy hours
Onsite office parking
Recreational clubs
Fitness stipend
Mother's room
Professional Development Benefits
Job training & conferences
Lunch and learns
Promote from within
Mentorship program
Continuing education available during work hours
Online course subscriptions available
Customized development tracks
Personal development training

More Jobs at Box

Easy Apply
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about BoxFind similar jobs like this