
Security Engineer
Posted Aug 5

Posted Aug 5
This is a fully remote position, open to applicants in Ohio.
• Employ automated scanners and internal risk assessment processes to detect security vulnerabilities.
• Revise outdated libraries, rework legacy components, and address technical debt.
• Enhance the codebase by eliminating vulnerabilities from obsolete packages and dependencies.
• Collaborate with engineering teams to assess security posture and implement defect remediation.
• Diagnose issues and remove remediation obstacles for engineering groups.
• Compose security playbooks, guidelines for coding standards, and documentation for remediation.
• Establish a knowledge repository for secure coding methods and defect resolution.
• Incorporate automated security scanning and guardrails within the software development lifecycle.
• Execute a continuous shift-left security strategy.
• Preserve protections for cloud infrastructure, including firewalls, intrusion detection systems, and encryption.
• Segment and protect essential infrastructure assets.
• Oversee and implement incident response lifecycles.
• Develop automated systems to identify, flag, and contain anomalies within the system.
• Provide quick technical resolutions during security incidents.
• 5–8+ years of experience in an Application Security or Security Engineering position.
• Capability to read code, spot architectural weaknesses, and develop fixes or scripts.
• Demonstrated experience in managing technical debt and navigating legacy code paths.
• Experience in safely updating third-party libraries and dependencies without disrupting production features.
• Exceptional writing skills for crafting security playbooks.
• Experience working alongside developers and pairing to troubleshoot technical challenges.
• Familiarity with cloud-native architectures.
• Knowledge of containerized applications.
• Understanding of CI/CD integrations.
• Experience in configuring automated security testing tools, including SAST, DAST, and SCA.
• Strong builder mentality and proactive problem-solving skills.
• Exposure to application security principles, particularly OWASP, is required or preferred.
• Preferred experience with network configuration and application deployment.
• Opportunities for continuous learning and professional development.
• Subsidized course fees.
• Access to certifications.
• Participation in conferences.
• Complimentary access to Udemy and additional resources.
• People-first employer culture.
• A high-caliber and diverse team.
• A strong mission with the chance to make a global impact on education.
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.