Senior Application Security Engineer

Details of the offer

At Bumble, the security of our customers is a top priority. As an application security engineer at Bumble, you should be mission-focused on protecting our customers' data by securing our company's applications and products.
You will architect, build, and support the security of Bumble's applications and products, protecting millions of users' ability to form meaningful connections. With an attacker's mindset, you will proactively identify potential attack vectors, while applying an engineering mindset to problem-solving—crafting creative solutions that reduce friction and enhance security through context-aware and automation-driven approaches. You thrive on prototyping, experimentation, and mentoring others to develop their technical security skills.
In this role, you will work closely with our engineering and leadership teams to identify and remediate vulnerabilities, establish strategic security best practices, provide security consulting and review services to up level the security maturity levels of our application and products. You will be able to navigate through high levels of ambiguities and be able to make independent judgment to help stakeholders thoroughly understand the security risks and make well-informed decisions.

Key Accountabilities:Design and implement security testing tools within CI/CD pipelines to detect vulnerabilities early without impacting development speed.Collaborate with engineering teams to embed security best practices and enforce security at every stage of the SDLC.Conduct risk assessments and threat modelling exercises to identify potential vulnerabilities and prioritize security measures based on impact.Collaborate with engineers to design secure application architectures, identify potential risks, and recommend security controls.Identify and prioritize vulnerabilities, driving remediation efforts and offering mitigation strategies to engineering teams.Train engineering teams in secure practices and promote a security-first mindset across the organization.Keep up with the latest security trends, threats, and technologies, updating practices as needed to address evolving risks.Mentor and develop the technical security knowledge of junior team members and colleagues who show interest in learning security.Required Skills & Experience:+5 years of hands-on experience in application security, including vulnerability management, secure software development, and threat modelling.Strong foundational knowledge in software engineering, ideally with experience in coding and software development to effectively assess security within application code.Proven track record of integrating security practices into the software development lifecycle (SDLC), including experience with CI/CD pipeline security.Demonstrated expertise in identifying, analysing, and prioritising vulnerabilities, as well as working closely with engineering teams on remediation.Ability to effectively communicate security concepts to non-security stakeholders and collaborate with cross-functional teams to drive security initiatives.Experience with one of the following is essential:Knowledge of mobile application security principles, frameworks, and common vulnerabilities for iOS and Android is highly desirable.Familiarity with AI/ML security concepts, such as data integrity in training models, adversarial attacks, and privacy issues in AI applications is highly desirable.About you:Your values align strongly with the Bumble Inc. values: Growth, Kindness, Equity, Accountability, and Honesty.Motivation to solve problems, not to patch over quick fixes.Ability to communicate with empathy when discussing application and product security with operations & engineering.Be a constant learner who looks to solve interesting and challenging problems.Humble expert with a sense of urgency.Skilled at taking complex topics and making them simple.Transparent judgment and stands behind their decisions, right or wrong.
#J-18808-Ljbffr


Nominal Salary: To be agreed

Source: Jobleads

Requirements

Oracle Financials, Support Specialist

Description: We are seeking a talented individual to join our CIS (Corporate Information Solutions) Autonomous Finance Team team at Marsh.This role will be b...


Gb001 Marsh Ltd - England

Published 7 days ago

Servicenow Grc Developer

Our client is seeking an experienced ServiceNow GRC Developer for a 12-month contract. This role offers an exciting opportunity to lead critical Governance, ...


Linking Humans - England

Published 8 days ago

Staff Software Engineer

THE CARWOW GROUP Carwow Group is driven by a passion for getting people into cars. But not just any car, the right car. That's why we are building the go-to ...


Carwow - England

Published 7 days ago

Lead Configuration Analyst

At Bionic, we're making life radically easier for small business owners. We're building a one-stop shop for business essentials that's powered by smart techn...


Bionic Services Ltd - England

Published 7 days ago

Built at: 2024-11-22T06:23:42.361Z