Senior Application Security Engineer
United States - Remote Opportunity
Introduction to the Role
Join our dynamic team as a Senior Application Security Engineer, where you'll play a pivotal role in securing the Temporal development pipeline and product. In this position, you'll directly contribute by working closely with our software engineering teams and customers, empowering you to substantially impact our technology and community. We're looking for individuals who are ready to innovate and build the most supportive and inclusive developer ecosystem in the industry.
What You’ll Do
- Collaborate with product and engineering teams to integrate security principles into the design and architecture of products.
- Conduct threat modeling and risk assessments to identify vulnerabilities and potential attack vectors.
- Manage the Secure Development pipeline including code security and 3rd party library supply chain security.
- Act as a security advocate, fostering a culture of security within the organization.
- Triage Bug Bounty findings and responsibility disclosed vulnerabilities.
- Able to participate in on-call rotation.
What You’ll Bring
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- 5+ years in application or product security or a related role.
- Proven partnership with engineering teams, bringing security expertise to the planning and development process.
- Knowledge of encryption, authentication, and secure communication protocols.
- Familiarity with tools like SAST, DAST, and penetration testing frameworks.
- A deep understanding of application architecture and design principles, ability to effectively identify vulnerabilities across multiple programming languages
- Excellent communication and ability to explain complex security concepts to non-technical stakeholders.
- Ability to work in a self-directed manner in a fast-paced environment.
- Excellent collaboration and communication skills.
- Familiarity with Python and Go.
Nice to Have
- Distributed computing and related vulnerability experience.
- Running a Security Champions program.
- Kubernetes security posture and auditing.
- Open Source automation or automation projects.
- AI security knowledge.
- The estimated pay range for this role is $150,000 - $210,000, depending on qualifications and location.
- This role is eligible to participate in Temporal's equity plan.
- Unlimited PTO, 12 Holidays + 2 Floating Holidays
- 100% Premiums Coverage for Medical, Dental, and Vision
- AD&D, LT & ST Disability, and Life Insurance (Standard & Supplemental Available)
- Empower 401K Plan
- Additional Perks for Learning & Development, Lifestyle Spending, In-Home Office Setup, Professional Memberships, WFH Meals, Internet Stipend and more!
- Paid Time Off (PTO) and Benefits outside the United States vary by country, and are issued in partnership with Remote.com. Additionally, Temporal offers perks to all international employees for learning & career development, a lifestyle spending account, in-home office setup (in addition to company-issued hardware), professional memberships, work-from-home meals, and access to the Calm app for mental wellness.
- $3,600 / Year Work from Home Meals
- $1,500 / Year Career Development & Learning
- $1,200 / Year Lifestyle Spending Account
- $1,000 / Year In-Home Office Setup (In addition to Temporal issued equipment - laptop, monitor, keyboard, mouse, trackpad, and extension power cable at no cost to you)
- $500 / Year Professional Memberships
- $74 / Month Reimbursement for Internet
- Calm App Subscription for Mental Health & Wellness
Job Profile
Remote Opportunity
Benefits/Perks12 holidays 2 floating holidays Equity plan Home office setup In-home office setup Internet Stipend Unlimited PTO
Tasks- Act as security advocate
- Collaborate cross-functionally
- Collaboration
- Conduct threat modeling
- Integrate security principles
- Manage secure development pipeline
- On-Call Rotation
- Participate in on-call rotation
- Triage bug bounty findings
3rd party library security AI security Application Security Authentication Automation Code security Collaboration Communication DAST Encryption Go Kubernetes Kubernetes security Open Source Open source automation Penetration Testing Product Security Programming languages Python Risk Assessment SaaS SAST Secure communication Secure Development Security Software Engineering Threat modeling
Experience5 years
EducationBachelor's degree Business Computer Science Cybersecurity Engineering Equivalent experience Related Field
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9