Senior Security Engineer

Remote
Temporary
Experienced

Kitestring is a 20+-million-dollar company with 100+ associates and growing. We are a 25 year old start up in Northwest Arkansas. We provide technical expertise to various clients delivering innovations that improve how customers shop and the enterprise operates. At Kitestring Technical Services, our mission is to share our collective knowledge to positively impact our employees, clients, and communities. Our vision is to be the most trusted partner in technology consulting. We believe people enable technology and vice-versa which is why we are in the business of both. We persistently challenge the barriers to diversity, inclusion, and empathetic cooperation.

Our Core Values are Transparency, People Driven, Empowered, Quality focused and socially responsible. Our values direct our company in how we do business and enhance the lives of our employees. Do our values speak to you?

Benefits

  • Kitestring offers excellent benefits to its employees including:
  • Unlimited PTO
  • Maternal/Paternal Leave Policy 
  • Healthcare Benefits for Spouse, Domestic Partner, and Dependents
  • Matching 401k 2-1 up to 4%
  • H1B and Perm Sponsorship

The Senior Application Security Engineer is a technical subject matter expert for multiple areas of application and product security. The Senior Application Security Engineer is responsible for performing design reviews, technical security assessments, and code reviews to highlight risk and help engineering teams improve the overall security of our products. The Senior Application Security Engineer is a security leader within the company, gaining a solid understanding of our products and systems and ensuring that security is built into development projects. This position requires both deep and broad technical knowledge across various disciplines, and the ability to work hands-on across various software designs and technology stacks.

In addition to having strong technical skills, the Senior Application Security Engineer must be comfortable in effectively communicating with business end users, technical IT teams, business partners, network providers, and business process outsourced vendors, all while being sensitive to a wide diversity of cultural and technical backgrounds in a global business environment.

  • Serve as a primary technical security resource on product development
  • Perform design reviews and technical security assessments to highlight risk and help engineering teams improve the overall security of our products
  • Design and implement security best practices and standards across varied engineering teams and environments
  • Implement and conduct code reviews with a combination of static testing, manual reviews, and dynamic analysis / pen-testing
  • Conduct threat modeling, identify & drive risk decisions, and influence technical designs and architectures
  • Engage with developers to initiate and support remediation
  • Perform security reviews of new services and features
  • Build tools to simplify and automate Vulnerability Management processes
  • Provide engineering designs to mitigate security vulnerabilities in new software solutions
  • Design and implement tooling and automation for application security (e.g. SAST/DAST in CI/CD)
  • Perform regular security testing as well as code reviews to improve software security
  • Maintain technical documentation related to software security
  • Ensure software security at all levels of architecture
  • Stay updated with the latest tools and advanced industry practices for software security
  • Advocate for security culture and educate colleagues across all parts of the company

Skills:

This is a senior position, and experience in the application security domain with an identity focus is key

Essential:

  • Develop and implement advanced security techniques according to the technical architecture of our firm
  • Perform regular security testing as well as code reviews to improve software security
  • Troubleshoot and debug issues as soon as they arise
  • Maintain technical documentation related to software security
  • Provide engineering solutions to mitigate security vulnerabilities in new software initiatives
  • Ensure software security at all levels of architecture
  • Continuous alignment with the latest tools and advanced industry practices for software security
  • Industry certifications such as OSCP, CCSP, SSCP, CISSP

Desirable:

  • Bachelor’s Degree in Computer Science, Engineering, Network Security, or a related field with 10+ years of related industry experience
  • Demonstrated excellent technical writing skills and project/program management experience
  • Multiple language skills are a plus.
Share

Apply for this position

Required*
Apply with Indeed
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*