Ivanti · 2 days ago
Senior Application Security Engineer
Wonder how qualified you are to the job?
IT InfrastructureIT Management
Insider Connection @Ivanti
Responsibilities
Develop both broad and deep technical understanding of Ivanti products, services, and architectures
Conduct security assessments such as threat modeling, secure architecture, code reviews, and penetration tests on web and mobile applications and services
Interpret security vulnerability reports to stakeholders, providing advice on vulnerability prioritization, remediation, and mitigation
Closely coordinate with all stakeholders to bake in security into all phases of SDLC
Create and maintain documentation for security processes
Deliver accurate metrics to stakeholders and business leaders in a clear and concise manner
Maintain high proficiency in relevant security topics (latest vulnerabilities, TTPs, exploits, etc.)
Create and deliver security education across the organization
Develop innovative and scalable tools, solutions, and processes to enhance product security operations
Support accurate security tooling implementation to maximize their effectiveness and interpret their results to relevant stakeholders
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
8+ years of experience in Application Security roles
Proven experience in application, API, database, and infrastructure security topics
Strong technical knowledge on security vulnerabilities, defense techniques, and security best practices
Ability to explain vulnerabilities in a precise, concise, and easy-to-understand manner to stakeholders of varying security and technical backgrounds
Experience in performing Threat Modelling and providing actionable advice from its results
High level of experience in scoring security vulnerability severities through CVSS
Good understanding of SSDLC as well as development and integration tools and technologies used as part of CI/CD pipelines
Experience providing secure coding education to developers
Know-how to go beyond generic security vulnerability remediation advice
Good understanding of one or more major cloud providers (Azure, AWS, GCP)
Experience in authentication and authorization standards and protocols (SAML, OAuth, LDAP, AD, etc.)
Practical knowledge of applied cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc.)
Can read and write code with ease
Ability to work in a self-directed environment that is highly collaborative and cross-functional
Passion and self-drive for researching vulnerabilities and latest exploitation techniques
Company
Ivanti
Ivanti automates IT and Security Operations to discover, manage, secure and service from cloud to edge.
H1B Sponsorship
Ivanti has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Trends of Total Sponsorships
2023 (8)
2022 (34)
2021 (26)
2020 (3)
Funding
Current Stage
Late StageTotal Funding
unknownKey Investors
Charlesbank Capital PartnersTA Associates
2021-03-09Private Equity· Undisclosed
2020-08-13Private Equity· Undisclosed
Recent News
2024-05-22
2024-05-20
Company data provided by crunchbase