Talent.com
Software Engineer, Application Security

Software Engineer, Application Security

Glean.infoSan Francisco, CA, United States
Hace más de 30 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

About Glean :

Founded in 2019, Glean is an innovative AI-powered knowledge management platform designed to help organizations quickly find, organize, and share information across their teams. By integrating seamlessly with tools like Google Drive, Slack, and Microsoft Teams, Glean ensures employees can access the right knowledge at the right time, boosting productivity and collaboration. The company's cutting-edge AI technology simplifies knowledge discovery, making it faster and more efficient for teams to leverage their collective intelligence.

Glean was born from Founder & CEO Arvind Jain's deep understanding of the challenges employees face in finding and understanding information at work. Seeing firsthand how fragmented knowledge and sprawling SaaS tools made it difficult to stay productive, he set out to build a better way - an AI-powered enterprise search platform that helps people quickly and intuitively access the information they need. Since then, Glean has evolved into the leading Work AI platform, combining enterprise-grade search, an AI assistant, and powerful application- and agent-building capabilities to fundamentally redefine how employees work.

About the Role :

Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images, ensuring all open-source software (OSS) dependencies are scanned and patched, and integrating cutting-edge security tools into our CI / CD pipeline. The ideal candidate will drive the adoption of solutions like Google's Assured Open Source Software (OSS) and explore alternative approaches to enhance software security.

This role will lead the vulnerability management charter at Glean, identifying, evaluating, and implementing new security technologies and processes to proactively protect our infrastructure.

You will :

  • Own and lead the vulnerability management lifecycle , ensuring our entire tech stack is free from known CVEs.
  • Implement and manage secure base OS images , ensuring all underlying systems remain hardened against security threats.
  • Continuously scan, monitor, and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
  • Research and evaluate trusted open-source security solutions like Google's Assured Open Source Software and recommend their adoption where applicable.
  • Work closely with engineering teams to integrate state-of-the-art SAST, DAST, and dependency scanning tools into the CI / CD pipeline to detect and remediate vulnerabilities early.
  • Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
  • Develop automated security validation tests to enforce vulnerability-free deployments across the stack.
  • Lead the adoption and, if necessary, develop custom security solutions to manage and mitigate security risks at scale.
  • Provide security guidance, training, and mentorship to engineering teams to foster a security-first culture at Glean.

About you :

  • BA / BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience).
  • 5+ years of experience in application security and vulnerability management.
  • Deep understanding of software security vulnerabilities , including CVEs, OWASP Top 10, and supply chain risks.
  • Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, GitHub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP).
  • Strong familiarity with package managers (npm, pip, Maven, Go modules) and securing open-source dependencies.
  • Coding experience in languages such as Go, Python, Java, or C++ to develop security test cases and tooling.
  • Hands-on experience with cloud-native security best practices across AWS, GCP, or Azure.
  • Knowledge of container security, Kubernetes security, and securing microservices architectures.
  • Ability to lead cross-functional initiatives and drive security adoption within engineering teams.
  • Key Knowledge & Skills :

  • A strong proactive approach to security, identifying risks before they become problems.
  • Excellent problem-solving skills and the ability to balance security with performance and usability.
  • Experience working in fast-paced, highly collaborative environments where security is a shared responsibility.
  • Passion for open-source security and keeping up with the latest trends in software vulnerability management.
  • Why Join Us?

    At Glean, we believe in empowering individuals to do their best work in an inclusive and diverse environment. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race. We're building a culture that values curiosity, collaboration, and impact.

    If you're excited about leading the charge in securing a cutting-edge AI-powered search platform, we'd love to hear from you!

    Benefits

  • Competitive compensation
  • Medical, Vision and Dental coverage
  • Flexible work environment and time-off policy
  • 401k
  • Company events
  • A home office improvement stipend when you first join
  • Annual education stipend
  • Wellness stipend
  • Healthy lunches and dinners provided daily
  • Location :

  • This role is hybrid (3-4 days a week in one of our SF Bay Area offices)
  • For California based applicants :

    The standard base salary range for this position is $185,000 - $280,000 annually. Compensation offered will be determined by factors such as location, level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits.

    We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. We're committed to an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.

    #LI-HYBRID

    Crear una alerta de empleo para esta búsqueda

    Application Security Engineer • San Francisco, CA, United States

    Ofertas relacionadas
    • Oferta promocionada
    Associate Application Security Engineer

    Associate Application Security Engineer

    PG ForstaEmeryville, CA, United States
    A tiempo completo
    PG Forsta is the leading experience measurement, data analytics, and insights provider for complex industries-a status we earned over decades of deep partnership with clients to help them understan...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Sr. Application Security Engineer

    Sr. Application Security Engineer

    Bridge Technologies and SolutionsSan Francisco, CA, United States
    A tiempo completo
    We need a resource who has experience working within a Vulnerability Management Program that understands Application Security with 5-7 years of security experience. Experience with commercial applic...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Software Engineer - Security Platform

    Software Engineer - Security Platform

    Cloudflare IncSan Francisco, CA, United States
    A tiempo completo
    At Cloudflare, we are on a mission to help build a better Internet.Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for cust...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Application Security Engineer (Hybrid - US)

    Senior Application Security Engineer (Hybrid - US)

    Energy SolutionsOakland, CA, United States
    A tiempo completo
    Interested in joining a growing company where you will work with talented colleagues, enhance a supportive and energetic culture, and be part of the climate solution? At Energy Solutions, we focus ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Security Engineer, Application Security

    Senior Security Engineer, Application Security

    PostmanSan Francisco, CA, United States
    A tiempo completo
    Postman is the world's leading API platform, used by more than 40 million developers and 500,000 organizations, including 98% of the Fortune 500. Postman is helping developers and professionals acro...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Application Security Engineer

    Senior Application Security Engineer

    KubeltSan Francisco, CA, United States
    A tiempo completo
    World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all....Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Software Engineer II - Security and Compliance

    Software Engineer II - Security and Compliance

    RipplingSan Francisco, CA, United States
    A tiempo completo
    Design and develop software for multiple key initiatives to help us execute our 2025 vision and beyond.Work closely with the product and design teams to define feature specifications and build the ...Mostrar másÚltima actualización: hace 1 día
    • Oferta promocionada
    Application Security Engineer II (AI Security)

    Application Security Engineer II (AI Security)

    AmplitudeSan Francisco, CA, United States
    A tiempo completo
    Application Security Engineer II (AI Security).Amplitude is the leading digital analytics platform that helps companies unlock the power of their products. Over 4,300 customers, including Atlassian,...Mostrar másÚltima actualización: hace 26 días
    • Oferta promocionada
    Software Engineer - Security

    Software Engineer - Security

    Modern TreasurySan Francisco, CA, United States
    A tiempo completo
    This position can be based out of San Francisco, New York, or remote (we accept candidates from many states).Modern Treasury’s mission is to build the most trusted financial infrastructure for glob...Mostrar másÚltima actualización: hace 14 días
    • Oferta promocionada
    Senior Security Engineer, Application & Platform Security

    Senior Security Engineer, Application & Platform Security

    SentrySan Francisco, CA, United States
    A tiempo completo
    Bad software is everywhere, and we're tired of it.Sentry is on a mission to help developers write better software faster so we can get back to enjoying technology. With more than $217 million in fun...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Application Security Engineer

    Senior Application Security Engineer

    ImprintSan Francisco, CA, United States
    A tiempo completo
    Imprint is reimagining co-branded credit cards & financial products to be smarter, more rewarding, and truly brand-first. We partner with companies like Rakuten, Booking.H-E-B, Fetch, and Brooks Bro...Mostrar másÚltima actualización: hace 14 días
    • Oferta promocionada
    Senior Software Engineer, Security (Remote)

    Senior Software Engineer, Security (Remote)

    MAP SSG IncSan Francisco, CA, United States
    Teletrabajo
    A tiempo completo
    We are seeking an experienced Software Engineer to join our security team.This role focuses on designing, implementing, and deploying security solutions and guardrails across our applications and s...Mostrar másÚltima actualización: hace 1 día
    • Oferta promocionada
    Software Engineer, Security Observability

    Software Engineer, Security Observability

    OpenAISan Francisco, CA, United States
    A tiempo completo
    Software Engineer, Security Observability.Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Application Security Engineer

    Application Security Engineer

    MonographSan Francisco, CA, United States
    A tiempo completo
    Notion helps you build beautiful tools for your life’s work.In today’s world of endless apps and tabs, Notion provides one place for teams to get everything done, seamlessly connecting docs, notes,...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Software Engineer I (Security)

    Software Engineer I (Security)

    DigitalOceanSan Francisco, CA, United States
    A tiempo completo
    Dive in and do the best work of your career at DigitalOcean.Journey alongside a strong community of top talent who are relentless in their drive to build the simplest scalable cloud.If you have a g...Mostrar másÚltima actualización: hace 1 día
    • Oferta promocionada
    Security Engineer, Application Security

    Security Engineer, Application Security

    OpenAISan Francisco, CA, United States
    A tiempo completo
    Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products.We are...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Application Security Engineer

    Senior Application Security Engineer

    AirwallexSan Francisco, CA, United States
    A tiempo completo
    Airwallex is the only unified payments and financial platform for global businesses.Powered by our unique combination of proprietary infrastructure and software, we empower over 150,000 businesses ...Mostrar másÚltima actualización: hace 14 días
    • Oferta promocionada
    SaaS Security Engineer - Cloud Application Security Specialist

    SaaS Security Engineer - Cloud Application Security Specialist

    YohMountain View, CA, United States
    A tiempo completo
    SaaS Security Engineer - Cloud Application Security Specialist.SaaS Security Engineer - Cloud Application Security Specialist. The SaaS Security Engineer will be responsible for ensuring the securit...Mostrar másÚltima actualización: hace 1 día