Application Security Engineer working with NordVPN's cybersecurity team. Conducting assessments and reviews to secure applications and systems against vulnerabilities.
Responsibilities
Conduct security reviews of application designs, source code, and third-party libraries;
Perform regular application vulnerability assessments using both automated tools and manual testing techniques (e.g., SAST, DAST, SCA, penetration testing);
Collaborate with development teams to design secure architectures and implement security controls;
Help maintain security tools, scripts, and processes to support secure development;
Stay current with industry trends, zero-day vulnerabilities, and best practices in application security;
Develop scripts and security automation tools to enhance application security testing processes;
Design and deliver training for security engineering awareness & adoption;
Actively look for internal security gaps within the product or organization overall;
Ensure mobile/desktop applications are sufficiently tested and support internal and external audits;
Requirements
Proven experience in mobile/desktop application security assessment planning, testing, methodologies, and vulnerability reporting;
Strong understanding of secure coding practices;
Ability to perform manual security code audit;
Proficiency in at least one low-level programming language (e.g. C, C++, Rust, Go).
Solid understanding of networking protocols such as TCP, UDP and the HTTP protocol;
Familiarity with debuggers (e.g. GDB, LLDB, WinDbg).
Familiarity with reverse engineering tools (e.g. Ghidra, IDA).
Solid understanding of memory corruption issues, buffer overflows and related vulnerability classes.
Familiarity with common authentication and authorization protocols (OAuth, SAML, JWT, etc.).
Ability to work with networking tools such as Wireshark and tcpdump.
Ability to quickly assimilate new technologies and tools;
Sense of ownership with strong problem-solving and investigation skills;
Ability to build and maintain relationships, influence key stakeholders across the business;
Bonus points for community contributions like public CVEs, bug bounty recognition, open-source tools, blogs, etc.
Application Engineer at Accu Tech USA supporting automation product portfolio. Engaging with customers and vendors to design solutions and troubleshoot technical issues.
Application Engineer Manager at Prolec - GE Waukesha leading a team for transformer post - sales services. Ensuring clients receive high - quality engineering and commercial proposals throughout the process.
Technical Application Engineering Specialist at S&C Electric, delivering application expertise and managing projects for customer satisfaction in the power industry.
Senior Business Systems Engineer for WMS team at Grainger optimizing supply chain tech. Leading integrations with ConnectShip and FedEx while ensuring operational excellence.
Application Engineer focusing on 2nd line support for business - critical application infrastructure. Working with international teams for application and system stability in a global setting.
Technical Application Engineer supporting the commercial and operations teams in Grid Automation projects. Involves customer interaction and technical support in the UK and Nordics region.
Application Engineer providing technical expertise in Protection & Control including IEC 61850. Collaborating with international teams and representing OMICRON at events and industry conferences.
Associate Application Support Engineer providing top tier application support at Lighthouse. Collaborating with IT for system improvements and handling client relationships in India.
Senior Application Engineer at Baker Hughes leading tendering efforts for subsea production systems. Engaging in design, compliance, and execution phases while collaborating with project teams.
Lead Application Engineer for Gas Power Services Complex focused on global energy technologies. Develop technical solutions and collaborate with commercial and sales teams for ITO process.