What You'll Do:
- Expand the application security landscape at Coupa
- Being a hands-on developer is a key responsibility in this role, with strong proficiency in secure coding practices
- Strong software development skills in languages such as Java, .Net, and Python
- Ability to perform code reviews and mentor junior team members
- Passion for building security-focused features that perform at scale
- Track vulnerability reports and contribute security fixes
- Design and implement application changes to meet security compliance requirements
- Lead and execute Security Architecture Reviews, Threat Modeling, and Design Reviews for new and existing platform components to proactively identify and mitigate security risks.
- Conduct Security Reviews for AI/ML models and systems, addressing unique risks associated with data integrity, model poisoning, privacy, and adversarial attacks.
- Evaluate new security technologies and make recommendations to strengthen our application
- Be a champion of Coupa’s Secure Software Development Lifecycle (SSDLC) methodologies, integrating security earlier into the development pipeline.
- Work closely with the Operations Security team to review and define our best practices
What You Will Bring to Coupa:
- Leadership & Experience: 2+ years as a Lead Software Engineer or Lead AppSec Engineer; able to independently drive projects from design through delivery.
- Technical Expertise: Strong in Java, .NET, or Python; experienced building secure web applications/microservices and designing complex, distributed systems.
- Security Architecture & Threat Modeling: Skilled in formal security architecture/design reviews and threat modeling methods (STRIDE, DREAD).
- Security Foundations: Deep knowledge of OWASP Top 10, SANS Top 25, identity and access management (SAML, OIDC, SSO), OAuth flows, and core cryptographic algorithms (DES, RSA, HMAC, SHA, etc.).
- Systems & Development Practices: Familiar with design patterns, scalability, high availability, concurrency, and SQL/NoSQL databases; strong communication, self-motivation, and continuous learning mindset.
- Additional/Preferred Skills: Background in AI/ML security (MLOps, adversarial robustness), compliance frameworks (HIPAA, PCI, SOX, FedRAMP), plus conference presentations or open-source contributions.
Top Skills
What We Do
Coupa is a global technology company that helps businesses run smarter by connecting all the ways they spend money — from procurement and expenses to payments and supply chain decisions — in one intelligent platform. In simple terms, Coupa gives organizations the visibility and control they need to make better financial choices, reduce waste, and drive real impact. It’s where technology meets purpose: helping companies manage their resources more responsibly while creating a positive ripple across their people, partners, and the planet.
Why Work With Us
At Coupa, we prioritize an inclusive and empathetic workplace where every voice is valued. Our teams are proactive and accountable, ensuring we collaborate effectively to achieve our goals. The foundation of our culture rests on our people; we believe in fostering an environment that encourages innovation and curiosity.
Gallery
Coupa Offices
Remote Workspace
Employees work remotely.
Our virtual-first approach is intentional. It gives you the freedom to do your best work in a space that supports focus, balance, and creativity, while staying connected to a global team of changemakers who are redefining the future of business spend













