Join NordVPN's Risk Department as Application Security Engineer conducting mobile/desktop security assessments and collaborating with development teams to enhance security architecture.
Responsibilities
Conduct security reviews of application designs, source code, and third-party libraries;
Perform regular application vulnerability assessments using automated tools and manual testing techniques;
Collaborate with development teams to design secure architectures and implement security controls;
Help maintain security tools, scripts, and processes to support secure development;
Stay current with industry trends, zero-day vulnerabilities, and best practices in application security;
Develop scripts and security automation tools to enhance application security testing processes;
Design and deliver training for security engineering awareness & adoption;
Actively look for internal security gaps within the product or organization overall;
Ensure mobile/desktop applications are sufficiently tested and support internal and external audits;
Requirements
Proven experience in mobile/desktop application security assessment planning, testing, methodologies, and vulnerability reporting
Strong understanding of secure coding practices
Ability to perform manual security code audit
Proficiency in at least one low-level programming language (e.g. C, C++, Rust, Go)
Solid understanding of networking protocols such as TCP, UDP and HTTP
Familiarity with debuggers (e.g. GDB, LLDB, WinDbg)
Familiarity with reverse engineering tools (e.g. Ghidra, IDA)
Solid understanding of memory corruption issues, buffer overflows and related vulnerability classes
Familiarity with common authentication and authorization protocols (OAuth, SAML, JWT, etc.)
Ability to work with networking tools such as Wireshark and tcpdump
Ability to quickly assimilate new technologies and tools
Sense of ownership with strong problem-solving and investigation skills
Ability to build and maintain relationships, influence key stakeholders across the business
Bonus points for community contributions like public CVEs, bug bounty recognition, open-source tools, blogs, etc.
Benefits
Innovate with industry leaders
Boost your skills via extensive training programs
Enjoy flexibility with 3 office days and working from home for the remaining 2
Work from any location when you feel a need to recharge
Fuel your active lifestyle with online workouts
Nurture your mind with free psychologist consultations
Celebrate life’s big moments with special gifts on your birthday, anniversary, etc.
Experience iconic celebrations, team-buildings, and knowledge-sharing events
Field Application Engineer supporting high - tech products and customer service in industrial measurements at Vaisala. Working independently on technical challenges and collaboration with sales and R&D teams.
Application Support Engineer supporting client - facing operations and product implementations for financial technology. Responsible for handling operational issues and providing support across various channels.
Quantum Applications Engineer developing quantum algorithms and applications, mapping them to Atom Computing hardware. Collaborating with partners to advance quantum computing solutions.
Application Engineer responsible for creating bids and coordinating technical offers in water transport projects at Xylem. Collaboration with engineering firms and project management for optimal cost calculations.
Electrical Application Engineer providing power transmission and Motion Control expertise for SEW - EURODRIVE. Driving sales activity and maintaining customer relationships in the Boston area.
Manager leading data engineering and applications for Xcel Energy, ensuring reliability and scalability of pipelines. Overseeing a team to deliver data services and maintain standards.
Applications Engineer for Test & Measurement platform at Pico, acting as a link between engineering and global customers. Responsible for product integration, customer support, and training.
Principal Application Development Engineer at NCR Voyix developing solutions in Oracle Fusion Cloud/EBS. Working on integrations, data migration, and ERP technical architecture with a global team.
Field Application Engineer supporting OPAL - RT's real - time simulation tools and providing customer training. Involves international travel and collaboration across multiple sectors in China.
Director seeking mechanical SDA application engineering team leadership within Cadence. Overseeing staffing, technical vision, and customer engagement.