
Engineer II, Software Assurance, Product Security
Posted Jul 25

Posted Jul 25
This is a fully remote position, open to applicants in United States.
• Assist in safeguarding CrowdStrike and its clients from sophisticated threats by evaluating, designing, and implementing security measures and systems related to every facet of the software supply chain.
• The Product Security team at CrowdStrike innovates beyond conventional internal security, concentrating on active threats to CrowdStrike's products.
• In your role as a Security Engineer II, you will prioritize securing our open-source presence and upstream dependencies.
• Your responsibilities will include conducting technical security evaluations of GitHub organizations and open-source integrations, monitoring for harmful packages, developing tools to address known vulnerabilities, and creating automations to enhance operational efficiency.
• Furthermore, you will engage in collaborative projects aimed at strengthening both internal and public-facing source code repositories against current and emerging threats.
• Proven experience in an engineering role focused on the implementation, support, and monitoring of software security systems.
• Extensive experience with GitHub, covering repository administration, GitHub Actions, branch protection policies, and access management.
• Knowledge of other source control management platforms (e.g., BitBucket, GitLab).
• Familiarity with artifact storage solutions such as Artifactory and S3.
• Demonstrated experience in identifying and mitigating open-source risks (SCA, dependency management, licensing concerns).
• Experience in configuring and securing Linux and/or other Unix-like systems.
• Proficient in one or more widely-used scripting languages, such as Python, Golang, Shell, or JavaScript, to automate security assessments.
• Understanding of the software development lifecycle (SDLC), secure coding principles, code reviews, and source control security.
• A collaborative approach with experience in contributing to cross-team security initiatives and projects.
• Experience leveraging AI technologies to improve decision-making, optimize workflows, or automate the vulnerability triage process.
• Strong communication skills with excellent writing abilities, and comfortable working in a remote setting.
• Health insurance
• 401(k)
• Paid time off
• Competitive vacation and holidays for recovery
• Opportunities for professional development
• Paid parental and adoption leave
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.