Demo

Senior Application Security Engineer

CoreWeave
Roseland, NJ Full Time
POSTED ON 12/9/2024
AVAILABLE BEFORE 2/7/2025

About the role: 

Our Cyber Security Organization seeks an experienced Senior Application Security Engineer to bolster our security posture across internal infrastructure and application offerings. If you are passionate about security engineering and assurance methodologies and thrive in fast-paced, collaborative environments, we invite you to join us on our journey toward achieving more together.

What You’ll Do:

  • Provide security consultations with engineering peers
  • Architecture reviews of new and existing code changes/additions
  • Conduct full and complete threat models in part of the permit process
  • Configure and own automated code reviews
  • Own the manual code review process
  • On-going Security Testing
  • Risk documentation, remediation verification, and retest validation
  • Engage in the review of full tech-stack solutions, understanding architecture, creating threat models, performing both automated and manual code reviews, and conducting security testing.
  • Lead security audits, risk analysis, vulnerability testing, and security reviews across all elements of the project's software systems.
  • Address challenging, novel situations daily, collaborating with multiple technical teams within and outside CoreWeave.
  • Conduct Security Consults, Incident Response Plan Reviews, and Risk Documentation and Remediation Verification.
  • Configure, troubleshoot and maintain security infrastructure software and hardware.
  • Continuously analyze security systems for improvements, install monitoring software for security breaches and intrusions, and set up preventive measures.
  • Report possible threats or software issues, test company software, firmware, firewalls, and infrastructure setups.
  • Research weaknesses and devise countermeasures, finding cost-effective solutions to cybersecurity challenges.
  • Develop and improve security standards and best practices for the organization, educating and training staff on information system security best practices.
  • Assist employees with cybersecurity, software, hardware, or IT needs, providing solutions to complex issues in a fast-paced environment.

Investing in our people is one of our top priorities, and we value candidates who can bring their diversified experiences to our teams. Here are some qualities we’ve found compatible with our team. We'd love to talk about whether this aligns with your experience and Interests and what you’re excited to work on next.

Who You Are

  • You should be comfortable with a high degree of ambiguity and relish the idea of solving problems that haven't been solved at scale before
  • Bachelor’s degree in Computer Science or related field or equivalent experience
  • 5 years of Application Security engineering experience and vulnerability testing
  • Strong knowledge of authorization, authentication and encryption protocols and use cases
  • Experience working with development team(s) that have delivered commercial software or software-based services
  • Knowledge of threat modeling or other risk identification techniques
  • Knowledge of system security vulnerabilities and remediation techniques including familiarity with common attack patterns and exploitation techniques (OWASP)
  • Scripting skills (e.g., Perl, Python shell scripting)
  • Knowledge of network and related web protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
  • Ability to write fully functional exploits for common vulnerabilities such as simple stack overflow, cross-site scripting, or SQL injection
  • Familiarity with common attack patterns, exploitation techniques, and standard Security Assessment and Penetration Testing tools such as BurpSuite, Metasploit, and IDA Pro.
  • Proficiency of common security vulnerabilities and the ability to identify these vulnerabilities using SAST and DAST tools.
  • Proficiency in Security Engineering and Assurance methodologies e.g., fuzzing, static and dynamic code analysis.
  • Understanding of secure coding principles and practices and ability to review code for potential security issues.
  • Experience with Kubernetes and related security measures, extensive experience with Linux OS environments.
  • Strong technical background with a critical thinking mindset, excellent interpersonal, verbal, and written communication skills.

Nice-to-Have's:

  • Certifications such as Sec , Net , OSCP or other relevant industry certifications.
  • Experience with CrowdStrike, Synk, Rapid 7 Appsec, OSINT, Threat Intelligence.
  • Experience in DevSecOps and integrating security into CI/CD pipelines can be a plus.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $175,000-$210,000. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.

Salary : $175,000 - $210,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Application Security Engineer?

Sign up to receive alerts about other jobs on the Senior Application Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at CoreWeave

CoreWeave
Hired Organization Address New York, NY Full Time
CoreWeave is the AI Hyperscaler, delivering a cloud platform of cutting edge services powering the next wave of AI. Our ...
CoreWeave
Hired Organization Address Philadelphia, PA Full Time
CoreWeave is looking for a motivated and talented Sales Development Representative to join our growing team. At CoreWeav...
CoreWeave
Hired Organization Address Roseland, NJ Full Time
About the Role: The Developer Productivity Team functions as the lubricant that keeps CoreWeave’s gears of innovation tu...
CoreWeave
Hired Organization Address Roseland, NJ Full Time
About the Role: CoreWeave is a leading AI Hyperscaler, offering one of the industry’s fastest and most flexible infrastr...

Not the job you're looking for? Here are some other Senior Application Security Engineer jobs in the Roseland, NJ area that may be a better fit.

Senior Application Security Engineer

CoreWeave, Livingston, NJ

Application Security Engineer

SMBC Group, Jersey, NJ

AI Assistant is available now!

Feel free to start your new journey!