Friday, September 26, 2014

Box - Application Security Engineer

Apply to this job

Application Security Engineer

Los Altos, CA
Technical Operations
Full-Time

Box is expanding it's next generation security program for the cloud, and you can be a critical part of this creative, fast-paced, and exciting team. We are seeking information security specialists who have expertise building, executing, and improving application security initiatives within dev and qa. As an application security engineer you will assist the team responsible for application security by working closely with development to secure our applications, and environment.

RESPONSIBILITIES

    • Vulnerability detection, assessment, and mitigation
    • Participating in Box's application store security program to make our customer applications safer
    • Create secure development security standards
    • Tracking and researching the latest attacks and how they might apply to our environments
    • Building and deploying Box's security static analysis tools
    • Threat/Attack Modeling

QUALIFICATIONS

    • Bachelor's degree in a technical engineering or equivalent and 3+ years related experience.
    • Experience with Static Analysis or Dynamic Application Security Testing
    • Requires experience with at least 3 of the following: Development in PHP, Java, Python, HTML/JavaScript, Perl, Scala, Node.js, experience with Unix or windows shell scripting, experience with blackbox security testing, experience with security code review, experience with static analysis security testing (SAST), experience with dynamic application security testing (DAST), mobile security (iOS, Android, other), threat/attack modeling

OTHER REQUIREMENTS

    • Excellent communications skills 
    • Strong analytical skills
    • Published original security advisories, articles, or whitepapers
    • Presented at a security conference
    • Experience with Web Application Firewalls
    • Experience with IDS/IPS signature development
    • Experience performing penetration testing
    • Experience with crawlers, parsers, web services 
    • Experience with developing security training materials and courses
    • You want to work on innovative projects, not just status quo level tasks

About Box: Box provides a secure way to share content and improve collaboration on any device. Desktop, tablet or mobile. From huge corporations to mom and pop stores, Box believes technology should never limit anything you do. Businesses of any size can be more productive, inventive and powerful on Box. The company is well funded by top VC firms like Andreessen Horowitz, Draper Fisher Jurvetson and U.S. Venture Partners. Box is proud to be on Forbes’ list of America’s Most Promising Companies, is used in 240,000 businesses - including 99% of the Fortune 500 – and is the go-to product of 27 million people.

No comments:

Post a Comment