Senior Security Engineer

🕒 April 8

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Bitwarden

Bitwarden

51 - 200 employees

Founded 2016

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Cybersecurity • SaaS • Enterprise

Bitwarden is a trusted password manager that provides secure digital solutions for individuals, families, and businesses. It offers tools for securely storing, managing, and sharing sensitive online data such as passwords, passkeys, and credit cards, utilizing zero knowledge, end-to-end encryption technology. Bitwarden's services include enterprise-level security features such as secrets management for development, DevOps, and IT teams, with additional functionalities for passwordless authentication. The platform supports cross-platform access, is open source, and adheres to strict compliance standards including GDPR, SOC 2, and HIPAA.

📋 Description

• Research emerging threats across the surface web, dark web, and deep web • Build threat models, conduct threat hunts, and plan and execute purple team engagements • Coordinate internal red team testing operations that emulate a threat actor • Collaborate with application development teams, platform engineers, and Security Operations Center (SOC) engineers to improve our offensive and defensive security controls • Contribute to vulnerability testing and analysis as well as incident response and analysis • Include testing for web, mobile, CLI, and desktop application security issues across our multi-product portfolio, including Bitwarden Password Manager, Secrets Manager, and Passwordless.dev, our APIs, serverless functions, and database • Participate in code reviews, learning and spreading technical knowledge about security posture • Contribute to resolutions for security-related issues • Coordinate technical validation and leadership review of purple team reports detailing testing results and potential areas of improvement • Conduct internal penetration tests on systems and networks to determine realistic threat vectors • Manage software tools for code scanning, vulnerability identification, and finding reporting • Effectively communicate findings, attack paths, and recommendations to stakeholders • Train others on the adversary simulation tactics and procedures used • Stay informed on current security trends, publications, and advisories • Assist to provide guidance and subject matter expertise as it pertains to all areas of security and technical operations, including analysis of our cloud environments, security testing and documentation, as well as investigations, software research, new technology, services and tools research, and vendor security analysis

🎯 Requirements

• Experience with Penetration Testing Tools, such as Burp Suite, NMAP, Nessus, Metasploit, Kali Linux, SQLMap, Owasp ZAP, and manual testing tools • In-depth knowledge of leading vulnerability management tools and strategies • In-depth understanding and usage of application security testing technologies is a plus • Understanding of authentication concepts, including OpenIDConnect, SAML, OAuth, and SSO flows • Strong working knowledge of vulnerability management tools, data and network security technologies • Collaborative and adaptable mindset • Openness and authenticity combined with excellent communication skills • Excitement and enthusiasm for open source and for better internet security • Excellent problem-solving skills – you might not know all the answers, but you know how to find and communicate the solution • Ability to maintain discretion, handle sensitive information, and maintain security best-practices • Security purple team technocrat at heart, staying current with trends and new technologies

🏖️ Benefits

• Competitive salary • Dedicated to building a diverse and talented team • Learn and grow professionally • Work remotely with motivated and supportive team members across the world

Apply Now

Similar Jobs

🕒 April 8

GuidePoint Security

201 - 500

🔒 Cybersecurity

Senior Security Engineer dedicated to configuring and managing Palo Alto and Checkpoint firewalls. Supporting secure remote access and contributing to the cybersecurity landscape at GuidePoint.

Cloud

Cyber Security

Firewalls

Splunk

Switching

🕒 April 8

EITACIES Inc.

51 - 200

🏢 Enterprise

🔒 Cybersecurity

🤖 Artificial Intelligence

Product Manager for a fast-growing cybersecurity platform team focused on data privacy and security products. Own product lifecycle from vision to execution working closely with engineering and design.

Cyber Security

🕒 April 8

Gainwell Technologies

10,000+ employees

⚕️ Healthcare Insurance

Advisor focused on cybersecurity metrics & reporting at Gainwell Technologies. Specializing in defining frameworks and designing data models for effective decision-making.

Cyber Security

ITSM

ServiceNow

Splunk

🕒 April 8

Hewlett Packard Enterprise

10,000+ employees

🏢 Enterprise

🔧 Hardware

☁️ SaaS

Solutions Enablement Program Manager for HPE Networking, designing and managing enablement programs to boost security sales effectiveness.

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

Switching

🕒 April 8

Prosper Marketplace

501 - 1000

💳 Fintech

💸 Finance

👥 B2C

Senior Manager leading Application Security program at Prosper, an innovative fintech company. Driving application security controls and overseeing a team of engineers to improve customer financial well-being.

Cloud

Google Cloud Platform

SDLC