remote
Senior Application Security Engineer - Apollo.io
Security Engineer
Senior Application Security Engineer driving secure software development, threat modeling, and penetration testing across a fast‑growing SaaS platform using AWS and DevSecOps practices.
About the role
Key Responsibilities
- Lead security architecture reviews and threat modeling for new and existing SaaS features.
- Conduct regular penetration tests, code reviews, and vulnerability assessments to identify and remediate risks.
- Integrate security controls into CI/CD pipelines, ensuring automated compliance checks and secure deployment practices.
- Collaborate with product, engineering, and operations teams to embed security best practices into the development lifecycle.
- Maintain up‑to‑date knowledge of OWASP Top 10, industry standards, and emerging attack vectors.
Requirements
- 5+ years of experience in application security, with a strong background in secure coding and threat modeling.
- Hands‑on expertise with penetration testing tools (Burp Suite, OWASP ZAP, Metasploit) and vulnerability scanners.
- Proficient in AWS security services (IAM, KMS, GuardDuty, Security Hub) and DevSecOps tooling.
- Excellent communication skills, able to translate technical findings into actionable recommendations.
- BS/MS in Computer Science, Cybersecurity, or related field preferred.
Skills
owasppenetration testingaws