CronJobs

security jobs

Security Engineer

Airapps · San Francisco

onsitemid$110,000–$193,000Posted Mar 27, 2025PythonBashPowerShellAWSAzureGCPOWASP Top 10Burp Suite

Apply on the employer site

About this role

## About Air Apps At Air Apps, we believe in thinking bigger—and moving faster. We’re a family-founded company on a mission to create the world’s first AI-powered Personal & Entrepreneurial Resource Planner (PRP). Born in Lisbon in 2018, we’re now self-funded with offices in Lisbon and San Francisco, reaching over 100 million downloads worldwide. ## The Role: Security Engineer As a Security Engineer at Air Apps, you’ll safeguard our applications, infrastructure, and data from threats and vulnerabilities. You’ll partner with development, DevOps, and IT teams to implement secure coding practices, vulnerability scanning, and threat modeling—helping build and maintain a secure development lifecycle (SDLC), security monitoring frameworks, and proactive risk mitigation. ## Responsibilities - Develop and implement threat modeling to identify security risks across applications and infrastructure - Conduct vulnerability scanning, penetration testing, and security assessments to detect weaknesses - Define and enforce secure coding practices with development teams - Work with DevOps to integrate security into CI/CD pipelines and automate security testing - Monitor and respond to security incidents, perform root cause analysis, and implement preventative measures - Ensure compliance with security standards and regulations (e.g., ISO 27001, GDPR, SOC 2) - Design and implement identity and access management (IAM) policies, encryption standards, and authentication mechanisms - Collaborate with product teams on security reviews of features, APIs, and third-party integrations - Develop incident response plans, security documentation, and best practices - Stay ahead of emerging threats, vulnerabilities, and security technologies ## Requirements - 4+ years of experience in cybersecurity, application security, or security engineering - Strong knowledge of secure coding principles, OWASP Top 10, and threat modeling techniques - Experience with vulnerability scanning tools (Nessus, Qualys, Burp Suite) and penetration testing methodologies - Hands-on experience with SIEM, intrusion detection systems (IDS), and security monitoring tools - Proficiency in scripting/automation (Python, Bash, PowerShell) for security tasks - Familiarity with cloud security in AWS, Azure, or GCP (IAM and workload protection) - Knowledge of encryption protocols, network security, and API security best practices - Experience with DevSecOps and integrating security into CI/CD pipelines - Ability to analyze security logs, detect anomalies, and mitigate threats - Excellent problem-solving skills and ability to communicate security concepts to non-technical stakeholders ## What Benefits Are We Offering? - Apple hardware ecosystem for work - Annual Bonus - Medical Insurance (including vision & dental) - Disability insurance (short and long-term) - 401k up to 4% contribution - Air Conference (meet the team, collaborate, and grow) - Transportation budget - Free meals at the hub - Gym membership ## Diversity & Inclusion Air Apps is committed to fostering a diverse, inclusive, and equitable workplace. We welcome applicants from all backgrounds, experiences, and perspectives. ## Application Disclaimer Applicants must submit their own work without any AI-generated assistance. Any use of AI in application materials, assessments, or interviews will result in disqualification.

Listing freshness

CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord