Full-Time Senior Application Security Engineer

Emburse is hiring a remote Full-Time Senior Application Security Engineer. The career level for this job opening is Senior Manager and is accepting Canada based applicants remotely. Read complete job description before applying.

This job was posted 8 months ago and is likely no longer active. We encourage you to explore more recent opportunities on our site. However, you may still try your luck using 'Apply Now' link below. We recommend focusing on newer listings available here.

Emburse

Job Title

Senior Application Security Engineer

Posted

Career Level

Full-Time

Career Level

Senior Manager

Locations Accepted

Canada

Job Details

Who We Are: At Emburse, you’ll not just imagine the future – you’ll build it. As a leader in travel and expense solutions, we are creating a future where technology drives business value and inspires extraordinary results. The Senior Application Security Engineer will oversee the application security initiatives across Emburse products. This role will be part of the Information Security team and work closely with the engineering and DevOps to integrate security best practices throughout the software development lifecycle (SDLC). This role will also involve conducting security assessments and providing remediation guidance.

What You Will Do

  • Lead "shift left" security efforts to build security into the software development lifecycle.
  • Build relationships and work directly with engineering teams on security best practices and to remediate identified vulnerabilities. Work with product teams to ensure the vulnerabilities are remediated within procedural timeframes.
  • Partner with product teams to establish and prioritize a technical roadmap for 3rd party and open source frameworks and libraries to ensure products are up to date and can respond effectively to zero day threats
  • Triage and prioritize bug bounty submissions, code scanning results, and engineering audit vulnerability findings, track remediation, and validate fixes.
  • Assist with internal vulnerability scanning, external vulnerability scanning, segmentation testing, and management of penetration testing.
  • Conduct secure design reviews and threat modeling. Identify and prioritize risks, attack surfaces, and vulnerabilities.
  • Create metrics and reporting of the application security program.

What You Will Bring

  • 7+ years of industry experience in application security, security architecture, secure software development, software vulnerability management for multiple technology platforms, frameworks and languages.
  • Expertise with application security implementations and standard methodologies.
  • Extensive knowledge and comfort with the OWASP Top 10 and common web application exploitation techniques, and their respective countermeasures.
  • Experience with DevSecOps, DevOps, CICD pipelines, and secure code development.
  • Use of security tools (ex: SAST, IAST, CSPM, SIEM) SaaS experience working with web and mobile solutions to provide security
  • Experience working with Snyk, Bug Bounty, Wiz, Hacker Guardian, Hunters strongly preferred
  • Experience working with compliance frameworks (i.e. PCI, SOC 2, ISO 27001, NIST)
  • Experience performing and coordinating security assessments: internal vulnerability scans, external vulnerability scans, network segmentation testing, and web application penetration testing.
  • Relevant certifications such as CISSP, CCSP, GWEB, GWAPT, GMOB, CompTIA Security+, etc.
  • Experience working on large cross functional teams, representing IT compliance on initiatives such as change management, identity and access management, policy management and data retention.
  • Strong communication skills to effectively solve complex issues to stakeholders in a clear and easy to understand way
  • Ability to develop creative and adaptive solutions to unique and complex security items
  • Comfortable with a rapid-paced working environment and meeting deadlines
  • Bachelor’s degree in Computer Science, Information Systems, or equivalent work experience

FAQs

What is the last date for applying to the job?

The deadline to apply for Full-Time Senior Application Security Engineer at Emburse is 10th of April 2025 . We consider jobs older than one month to have expired.

Which countries are accepted for this remote job?

This job accepts [ Canada ] applicants. .

Related Jobs You May Like

Cortex Cloud Sales Specialist - Public Sector

Paris, France
1 day ago
Channel Partnerships
Cloud Solutions
Customer Relationship Management
Palo Alto Networks
Full-Time
Experienced

Senior Product Manager (Security Domain)

São Paulo, Brazil
1 day ago
Agile Methodologies
Product Management
Security Management
Sigma Software
Full-Time
Experienced

Senior Director, Technical Services (NAM)

Plano, TX
1 day ago
Customer Success
Cybersecurity
Stakeholder Management
Palo Alto Networks
Full-Time
Senior Manager
YEAR $270000 - $315000

Sr. Ethics & Compliance Manager- Global Public Sector

Ottawa, Canada
1 day ago
Canadian Contract Security
Government Contract Compliance
Policy Development
ServiceNow
Full-Time
Manager

Solutions Engineer, Identity

Santa Clara, CALIFORNIA
1 day ago
IAM
IGA
REST APIs
Cyberark
Full-Time
Experienced
YEAR $107000 - $158000

Principal Product Manager - Security Center

Santa Clara, CALIFORNIA
1 day ago
AI Integration
Cloud Security
Product Management
ServiceNow
Full-Time
Manager

Senior Safety & Security Officer

Austin, TX
1 day ago
FRA System Safety For Passenger Rail
FTA System Safety And Security Certification (SSC)
PTASP Development
AECOM
Full-Time
Experienced

Sr. Manager, Global Certifications (Federal)

Santa Clara, CA
1 day ago
Cloud Security
DoD SRG
FedRAMP
Palo Alto Networks
Full-Time
Senior Manager
YEAR $180000 - $220000

IAM Engineering Specialist

São Paulo, Brazil
1 day ago
Access Control
Identity Governance And Administration (IGA)
One Identity
Experian
Full-Time
Experienced

Accreditation Specialist Lead (Remote)

United States
1 day ago
HIPAA
ISO 27001
PCI
Experian
Full-Time
Experienced

Embedded Senior Analyst, Threats and Intelligence

Remote
1 day ago
Data Analysis
OSINT
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $125000 - $125000

Embedded Intelligence Analyst

Remote
1 day ago
Intelligence Analysis
Risk Assessment
Security Investigations
Sibylline Ltd
Full-Time
Experienced
YEAR $76858 - $76858

Looking for a specific job?