Sweat The Right Details: you thrive in understanding the details but will also know to ruthlessly prioritize the critical issues.
Right-Size The Solution: you recognize guidelines and framework do not always fit the problem and know how to adjust the solution for scalability not always at-scale.
Ownership: you are outcome focused and can deftly navigate obstacles, decompose complexities, manage your time and can communicate your vision to peers and management.
Nice to Haves:
Experience with security testing tools such as Burp Suite, ZAP, or browser developer tools for identifying vulnerabilities in web applications.
Understanding of emerging web standards and protocols like HTTP/3, WebAuthn, and advancements in TLS.
What You'll Be Doing:
Provide security guidance to engineering teams and work on securing customer data with privacy, product, and engineering teams.
Perform security software architecture reviews and integrate threat modeling and abuse cases into the SDLC.
Drive the development and implementation of standard security review processes.
Conduct code scan reviews, run-time tests, and assist with application penetration tests.
Conduct initial incident triage and lead the incident response process.