Product Security Engineer

1 Week ago • 5-8 Years • Cyber Security

Job Summary

Job Description

Sinch seeks a Product Security Engineer to build secure products. Responsibilities include collaborating with software engineering teams to enforce secure coding standards, creating application threat models and implementing security controls, monitoring application security scanning systems, and remediating identified issues. The role involves planning and delivering application development security training, explaining vulnerabilities and remediation options, and occasionally interacting with customers. This requires 5+ years of web application development experience (Java, C#, Python, Javascript) and 3+ years in application security, including threat modeling, risk assessment, and implementing security controls. Experience with RDBMS and strong understanding of OWASP Top 10 are vital. Strong communication, problem-solving, and collaboration skills are essential.
Must have:
  • 5+ years web application development (Java, C#, Python, Javascript)
  • 3+ years application security experience
  • Threat modeling & security control implementation
  • RDBMS experience (MySQL, MS SQL, DB2, Oracle, PostgreSQL)
  • OWASP Top 10 knowledge
  • Excellent communication & collaboration skills
Good to have:
  • 4+ years SAST/DAST/SCA tooling experience
  • Telecommunications industry experience
  • Experience with Pro and other application security testing tools
  • Public cloud (AWS, GCP, Azure) and cloud security framework experience

Job Details

Description

Sinch is looking for a product security engineer to ensure we are building the most secure products possible. We are looking for someone who has experience with software development and would like to take the next step and specialize in application security. You will be learning to use application security testing tools and will be working closely with team members across engineering and product to help shift security to the left.

The essence of the role

  • Working with software engineering teams to ensure standard methodologies are followed in constructing application code.
  • Creating application threat models and validating that the appropriate security controls are properly implemented.
  • Monitor application security scanning systems output to help identify and remediate issues in applications.
  • Planning and coordinating Application Development Security training including advising and training development teams on secure coding practices.
  • Explain the nature of software vulnerabilities and options to remediate those vulnerabilities.
  • Occasionally work directly with customers.

In order to contribute in this role you have:

  • 5+ years' experience constructing web application software with modern software languages such as Java, C#, Python, and Javascript.
  • 3+ years' experience in an application security role.
  • Experience building application threat models, threat assessments, and providing compensating security controls for those threats.
  • Experience in working with RDBMS such as MySQL, MS SQL Server, DB2, Oracle and PostgreSQL.
  • Excellent understanding of the OWASP Top 10 web application security risks.
  • Excellent communication, innovation, critical thinking, problem-solving, planning, prioritization, project management, collaboration and organization skills.
  • Conflict management and resolution skills.
  • Solid experience with techniques, standards and methods for authentication and authorization, applied cryptography, security vulnerabilities and remediation.
  • Knowledge of Source Code Management systems such as Github or Gitlab.
  • Occasional experience working directly with customers.

Big plus!

  • 4+ years' experience using SAST/DAST/SCA application security tooling.
  • Experience in the telecommunications industry.
  • Experience performing application security assessments using Pro and other application security testing tools.
  • Experience with public clouds such as AWS, GCP, and Azure and cloud security frameworks such as AWS Well-Architected.

Being you at Sinch:

  • We're a worldwide group of people, committed to diversity. We're working to offer an increasingly inclusive workplace wherever you are. No matter who you are, you'll be able to explore new career and growth options - sharing your voice, building your path and making it happen with us.
  • We’re proud to be an equal opportunity employer, and all qualified applicants will be considered to join our team regardless of race, colour, religion, gender identity or expression, sexual orientation, pregnancy, disability, age, veteran status, and more.

Your life at Sinch:

  • Being a Sincher is all about learning and being in pursuit of new challenges. Working in the offices, at home, or in a hybrid model, that means celebrating change and the unknown, rolling up your sleeves and seeing what impact you can have on the world. The only way is up, and you’ll be reaching for the opportunities that match where you want to take your career. It’s closer than you think.
  • It’s time to chase the answers, chase the challenges and chase the dream.

 Are you ready? Join us on our journey!

 

Similar Jobs

Canva - Staff Frontend Engineer - Growth - Monetization

Canva

Melbourne, Victoria, Australia (Remote)
1 Month ago
Ubisoft - Tech Lead in Detection and Response

Ubisoft

Montreal, Quebec, Canada (On-Site)
4 Weeks ago
Sporty Group - Software Engineering Team Lead- LatAm

Sporty Group

(Remote)
2 Months ago
Glean - Solutions Architect - Central

Glean

(Remote)
2 Months ago
Hasbro - Senior Backend Software Engineer - D&D Beyond

Hasbro

Canada (Remote)
3 Months ago
PwC - Cloud Security | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
ByteDance - Security Engineer (Penetration Tester) - 2025 Start

ByteDance

Singapore (On-Site)
3 Months ago
Warner Bros Discovery - Sr. Cybersecurity Engineer

Warner Bros Discovery

Georgia, United States (Hybrid)
2 Months ago
PearlAbyss - Game Security Technical Support

PearlAbyss

(On-Site)
1 Month ago
PwC - Seniors Sustainability Assurance - US CLIENT

PwC

Olivos, Buenos Aires Province, Argentina (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Zynga - Senior Software Engineer (Server) - Game Of Thrones

Zynga

Austin, Texas, United States (On-Site)
2 Months ago
SparkCognition - Software Engineer (Backend)

SparkCognition

Bengaluru, Karnataka, India (On-Site)
5 Months ago
CloudHire - Full Stack Developer

CloudHire

Pune, Maharashtra, India (Remote)
4 Months ago
DEVOTEAM - SysOps Engineer H/F

DEVOTEAM

Levallois-Perret, Île-de-France, France (Remote)
4 Months ago
Rackspace Technology - Sr. Datadog Developer

Rackspace Technology

Mexico City, Mexico City, Mexico (Remote)
1 Week ago
ByteDance - Senior Software Development Engineer - NoSQL-DocumentDB

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
LSEG (London Stock Exchange Group) - DevOps Engineer

LSEG (London Stock Exchange Group)

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Keywords Studios (Player Support) - Software Engineering II - Developer Productivity

Keywords Studios (Player Support)

Maharashtra, India (Hybrid)
1 Month ago
Fortis Games - Staff Security Operations Engineer

Fortis Games

Spain (On-Site)
1 Month ago
Nielsen Holdings - Scala Developer

Nielsen Holdings

Bengaluru, Karnataka, India (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Jobs in India

Simplify 360 - Tech Lead Full Stack (Java + React)

Simplify 360

Chennai, Tamil Nadu, India (Hybrid)
4 Months ago
Zeta - Software Development Engineer In Test II

Zeta

Mumbai, Maharashtra, India (On-Site)
4 Months ago
CleverTap - Solutions Engineer

CleverTap

Gurugram, Haryana, India (Hybrid)
4 Months ago
Nagarro - Senior Staff Consultant ,SAP Sales Service

Nagarro

India (Remote)
4 Months ago
Sportskeeda - Social Media Manager - News

Sportskeeda

India (Remote)
1 Week ago
Doctor Detox Wellness   - Content Creator

Doctor Detox Wellness

Ahmedabad, Gujarat, India (On-Site)
5 Months ago
Eightfold - Lead Front-End Engineer

Eightfold

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
STAGE - Creators & Artist Relationship Manager

STAGE

Noida, Uttar Pradesh, India (On-Site)
4 Months ago
Wind River Systems - Senior Member of Technical Staff - V&V

Wind River Systems

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Hitachi - MS-D365 CE Functional Consultant

Hitachi

Pune, Maharashtra, India (Remote)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Assystems - SOC L1 Analyst

Assystems

Gurugram, Haryana, India (On-Site)
3 Months ago
SmileGate - Security Threat and Incident Analysis Specialist

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
2 Weeks ago
PwC - Oracle EPM - Associate

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
IGT - Security Architect

IGT

London, England, United Kingdom (On-Site)
2 Months ago
Lirio - Security Engineer

Lirio

(Remote)
2 Months ago
PwC - Cyber Incident & Crisis Management | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
Take-Two Interactive - Senior Information Security Analyst

Take-Two Interactive

New York, New York, United States (On-Site)
2 Weeks ago
Rackspace Technology - Cloud Security Engineer IV

Rackspace Technology

United States (Remote)
6 Days ago

Get notifed when new similar jobs are uploaded

About The Company

United States (Remote)

Bogotá, Bogota, Colombia (Remote)

United States (Remote)

Mexico City, Mexico City, Mexico (Remote)

United States (Remote)

Georgia, United States (Remote)

United States (Remote)

View All Jobs

Get notified when new jobs are added by Sinch

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug