Related skills
github actions go threat modeling gitlab ci sast๐ Description
- Partner with Engineering to embed security into the SDLC (threat modeling, secure design)
- Triage findings from security tooling and guide remediation with clear priorities
- Define secure-by-default patterns for libraries, templates, and CI checks
- Improve supply chain security across build/release workflows (signing, provenance, policy)
- Help teams ship secure changes quickly with clear, repeatable guidance
๐ฏ Requirements
- 3+ years in product security or a similar engineering security role
- Strong app security fundamentals and knowledge of common vulnerabilities
- Hands-on experience securing CI/CD workflows (GitHub Actions, GitLab CI)
- Familiar with SAST, SCA, dependency scanning, and secret scanning
- Ability to collaborate with engineers and communicate tradeoffs clearly
- Bonus: Go or Python programming; AI tooling experience
๐ Benefits
- Remote-friendly role with a distributed, global team
- Transparent interview process with clear timelines
- Casual, upbeat culture with light taco ice-breakers
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest โ finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!