{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/owasp"},"x-facet":{"type":"skill","slug":"owasp","display":"Owasp","count":26},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_65b94380-b2c"},"title":"Penetration Tester","description":"<p>As a Penetration Tester, you will conduct penetration testing of web applications, APIs, and microservices architectures aligned with standards such as from OWASP. You will perform advanced security assessments of cloud environments (AWS, Azure, GCP), hybrid, and on-prem infrastructure. You will also perform security validation of Infrastructure as Code (IaC) implementations, identifying misconfigurations and compliance gaps.</p>\n<p>You will conduct mobile application security assessments for Android and iOS platforms. You will author detailed technical reports documenting vulnerabilities, risk analysis, and remediation recommendations. You will present findings to stakeholders and technical teams. You will mentor colleagues and contribute to team skill development. You will handle the development of testing methodologies and processes through automation and innovation.</p>\n<p><strong>Key Responsibilities:</strong></p>\n<ul>\n<li>Conduct penetration testing of web applications, APIs, and microservices architectures</li>\n<li>Perform advanced security assessments of cloud environments, hybrid, and on-prem infrastructure</li>\n<li>Validate Infrastructure as Code (IaC) implementations</li>\n<li>Conduct mobile application security assessments for Android and iOS platforms</li>\n<li>Author detailed technical reports</li>\n<li>Present findings to stakeholders and technical teams</li>\n<li>Mentor colleagues and contribute to team skill development</li>\n<li>Develop testing methodologies and processes through automation and innovation</li>\n</ul>\n<p><strong>Requirements:</strong></p>\n<ul>\n<li>Proven track record in web application security testing with Burp Suite proficiency</li>\n<li>Good understanding of IT architectures and security concepts</li>\n<li>Security assessment and testing certifications (e.g., OSCP, OSWE, WAPTX) or cloud security certs</li>\n<li>Experience with Infrastructure as Code (Terraform, Ansible)</li>\n<li>Experience writing clear, actionable reports</li>\n<li>Demonstrated experience in cloud security for at least one major platform (AWS/Azure/GCP)</li>\n</ul>\n<p><strong>Benefits:</strong></p>\n<ul>\n<li>Support and appreciation for colleagues as they are and celebrate successes together</li>\n<li>Welcome creativity and new impulses</li>\n<li>Opportunity to grow in tasks, knowledge, and responsibility</li>\n<li>Comprehensive overview of benefits available</li>\n</ul>\n<p><strong>Work Arrangements:</strong></p>\n<ul>\n<li>Start date by arrangement, always on the 1st and 15th of the month</li>\n<li>Full-time (40h) working hours</li>\n<li>27 vacation days</li>\n<li>Unlimited employment contract</li>\n<li>Flexibility and willingness to travel</li>\n<li>Valid work permit required</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_65b94380-b2c","directApply":true,"hiringOrganization":{"@type":"Organization","name":"MHP","sameAs":"http://www.mhp.com/","logo":"https://logos.yubhub.co/mhp.com.png"},"x-apply-url":"https://jobs.porsche.com/index.php?ac=jobad&id=17643","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Burp Suite","OWASP","Cloud security","Infrastructure as Code","Mobile application security"],"x-skills-preferred":[],"datePosted":"2026-04-22T17:28:23.747Z","employmentType":"FULL_TIME","occupationalCategory":"IT","industry":"Consulting","skills":"Burp Suite, OWASP, Cloud security, Infrastructure as Code, Mobile application security"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_6a75ea8b-5b4"},"title":"Application Security Engineer","description":"<p>We are seeking an experienced Application Security Engineer to join our team. As a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies, you will play a key role in building toolsets and processes to drive adoption of secure practices across the enterprise.</p>\n<p>The successful candidate will have a proven understanding in enterprise security and AI security and will focus on defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.</p>\n<p>Key responsibilities include:</p>\n<ul>\n<li>Defining and implementing security guardrails for Generative AI, LLMs, and Agentic frameworks</li>\n<li>Conducting specialized threat modeling, red teaming, and risk assessments for AI/ML models</li>\n<li>Leading risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects</li>\n<li>Engaging throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards</li>\n<li>Evangelizing AppSec and AI security best practices through developer education, training materials, and outreach</li>\n</ul>\n<p>Qualifications include:</p>\n<ul>\n<li>Bachelor&#39;s degree or higher in Computer Science, Computer Engineering, IT Security or related field</li>\n<li>5+ years&#39; experience working as an Application Security Engineer, Software Engineer, or similar role</li>\n<li>Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs</li>\n<li>Experience working with AI models, Agentic frameworks and security risks associated with AI</li>\n<li>Experience in working with global teams, collaborating on code and presentations</li>\n</ul>\n<p>Preferred qualifications include:</p>\n<ul>\n<li>Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)</li>\n<li>Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols</li>\n<li>Experience with common SCM &amp; CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines</li>\n<li>Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions</li>\n<li>Hands on experience with Secrets Management &amp; Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.</li>\n<li>Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar</li>\n<li>Familiarity with Infrastructure as Code tools (CloudFormation, Terraform, Ansible, etc.)</li>\n<li>Familiarity with web application security testing tools and methodologies</li>\n<li>Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.</li>\n<li>Knowledge of Linux, OS internals and containers is a plus</li>\n<li>Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous</li>\n</ul>\n<p>We offer a competitive salary and benefits package, as well as opportunities for professional growth and development.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_6a75ea8b-5b4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"IT Infrastructure","sameAs":"https://mlp.eightfold.ai","logo":"https://logos.yubhub.co/mlp.eightfold.ai.png"},"x-apply-url":"https://mlp.eightfold.ai/careers/job/755955629908","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["AI-specific risks","Generative AI","LLMs","Agentic frameworks","Security guardrails","Threat modeling","Red teaming","Risk assessments","Application risk assessments","Design reviews","Mitigation strategies","Secure coding standards","Developer education","Training materials","Outreach","Common SCM & CI/CD technologies","GitHub","Jenkins","Artifactory","Security Scanning","Vulnerability Management","Static and dynamic security analysis tools","SCA/SBOM solutions","Secrets Management & Password Vault technologies","Delinea Secret Server","Hashicorp Vault","Secure programming","Python","Java","C++","C#","Infrastructure as Code tools","CloudFormation","Terraform","Ansible","Web application security testing tools","Methodologies","Security frameworks","Standards","ISO 27001","NIST","OWASP","Linux","OS internals","Containers"],"x-skills-preferred":[],"datePosted":"2026-04-18T22:14:06.620Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, United Kingdom"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"AI-specific risks, Generative AI, LLMs, Agentic frameworks, Security guardrails, Threat modeling, Red teaming, Risk assessments, Application risk assessments, Design reviews, Mitigation strategies, Secure coding standards, Developer education, Training materials, Outreach, Common SCM & CI/CD technologies, GitHub, Jenkins, Artifactory, Security Scanning, Vulnerability Management, Static and dynamic security analysis tools, SCA/SBOM solutions, Secrets Management & Password Vault technologies, Delinea Secret Server, Hashicorp Vault, Secure programming, Python, Java, C++, C#, Infrastructure as Code tools, CloudFormation, Terraform, Ansible, Web application security testing tools, Methodologies, Security frameworks, Standards, ISO 27001, NIST, OWASP, Linux, OS internals, Containers"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_8ded847c-cd1"},"title":"Security Engineer Intern (Summer 2026)","description":"<p>About Us</p>\n<p>Cloudflare is on a mission to help build a better Internet. We protect and accelerate any Internet application online without adding hardware, installing software, or changing a line of code.</p>\n<p>As a Security Engineer Intern, you will work alongside experienced security engineers to identify vulnerabilities, harden our infrastructure, and build tools that protect billions of Internet users. We are looking for interns who are curious, proactive, and able to approach problems with a &#39;security-first&#39; mindset.</p>\n<p>Responsibilities</p>\n<ul>\n<li>Ship and deliver security-focused projects over 12-16 weeks with autonomy and support.</li>\n<li>Work cross-functionally with Product, Infrastructure, and Engineering teams to integrate security into every stage of the development lifecycle.</li>\n<li>Work closely with a mentor to guide you through the internship, develop your security expertise, and help with career goals.</li>\n<li>Build your network across the company through our various in and out of office socials, networking programs, Employee Resource Group (ERG) programs, and Activity Groups.</li>\n<li>Present your security project to the entire company at the end of the internship.</li>\n<li>Connect and learn from our executives and leadership team including our co-founders.</li>\n<li>Write for our Cloudflare blog (e.g., documenting a new security tool or a vulnerability research finding) and be featured on Cloudflare.tv sessions.</li>\n</ul>\n<p>What We&#39;re Looking For</p>\n<ul>\n<li>Education: Currently pursuing a degree in Computer Science, Cybersecurity, Computer Engineering, or a related technical field.</li>\n<li>Security Fundamentals: A solid understanding of the OWASP Top 10, common attack vectors (XSS, SQLi, CSRF), and how to mitigate them.</li>\n<li>Demonstrated critical thinking skills and drive to learn and adapt new technologies.</li>\n<li>Curiosity, empathy and ability to get things done.</li>\n<li>Ability to commit to a minimum 12 week summer internship.</li>\n<li>In office 3-5 days a week in the location of the internship.</li>\n<li>Local to Austin; relocation not provided.</li>\n</ul>\n<p>What Makes Cloudflare Special?</p>\n<p>We&#39;re not just a highly ambitious, large-scale technology company. We&#39;re a highly ambitious, large-scale technology company with a soul. Fundamental to our mission to help build a better Internet is protecting the free and open Internet.</p>\n<p>Project Galileo: Since 2014, we&#39;ve equipped more than 2,400 journalism and civil society organizations in 111 countries with powerful tools to defend themselves against attacks that would otherwise censor their work, technology already used by Cloudflare&#39;s enterprise customers--at no cost.</p>\n<p>Athenian Project: In 2017, we created the Athenian Project to ensure that state and local governments have the highest level of protection and reliability for free, so that their constituents have access to election information and voter registration. Since the project, we&#39;ve provided services to more than 425 local government election websites in 33 states.</p>\n<p>1.1.1.1: We released 1.1.1.1 to help fix the foundation of the Internet by building a faster, more secure and privacy-centric public DNS resolver. This is available publicly for everyone to use - it is the first consumer-focused service Cloudflare has ever released.</p>\n<p>Here’s the deal - we don’t store client IP addresses never, ever. We will continue to abide by our privacy commitment and ensure that no user data is sold to advertisers or used to target consumers.</p>\n<p>Sound like something you’d like to be a part of? We’d love to hear from you!</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_8ded847c-cd1","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Cloudflare","sameAs":"https://www.cloudflare.com/","logo":"https://logos.yubhub.co/cloudflare.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/cloudflare/jobs/7582150","x-work-arrangement":"onsite","x-experience-level":"entry","x-job-type":"internship","x-salary-range":null,"x-skills-required":["Go","Rust","Python","C/C++","OWASP Top 10","XSS","SQLi","CSRF"],"x-skills-preferred":[],"datePosted":"2026-04-18T15:56:57.926Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"In-Office"}},"employmentType":"INTERN","occupationalCategory":"Engineering","industry":"Technology","skills":"Go, Rust, Python, C/C++, OWASP Top 10, XSS, SQLi, CSRF"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_c0df50e1-9cd"},"title":"Consultant, Developer Platform","description":"<p>About Us</p>\n<p>At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies.</p>\n<p>As a Cloud Engineer for Developer Platform, you are an individual contributor working in the post-sales landscape, responsible for the technical execution of solutions and guidance to our customers, following a consultative approach, to get the most value possible from their Cloudflare investment.</p>\n<p>Key Responsibilities:</p>\n<ul>\n<li>Plan and deliver timely and organized services for customers, ensure customers see the full value in Cloudflare’s products and advice on product best practices.</li>\n</ul>\n<ul>\n<li>Gather business and technical requirements, use cases and any other information required to build, migrate and deliver a solution on behalf of the customer and transition the Cloudflare working environment to the customer.</li>\n</ul>\n<ul>\n<li>Produce a Solution Design, HLD, LLD, databuilds, procedures, scripts, test plans, drawings, deployment plan, migration plan, as-builts, and any other artifacts necessary to deliver the solution and transition smoothly into the customer’s technical teams.</li>\n</ul>\n<ul>\n<li>Implement changes on behalf of the customer in the Cloudflare environment following the customer’s change management process.</li>\n</ul>\n<ul>\n<li>Troubleshoot implementation issues and collaborate with Customer Support, Engineering and other teams to assist technical escalations.</li>\n</ul>\n<ul>\n<li>Contribute towards the success of the organization through knowledge sharing activities such as contributing to internal and external documentation, answering technical Q&amp;A, and helping to iterate on best practices.</li>\n</ul>\n<p>Support building operational assets like templates, automation scripts, procedures, workflows, etc.</p>\n<p>Requirements:</p>\n<ul>\n<li>3+ years of experience in a customer facing position as a Consultant delivering services.</li>\n</ul>\n<ul>\n<li>Demonstrated experience with:</li>\n</ul>\n<ul>\n<li>Developing serverless code in a CI/CD pipeline using an Agile methodology.</li>\n</ul>\n<ul>\n<li>Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP.</li>\n</ul>\n<ul>\n<li>Scripting languages.</li>\n</ul>\n<ul>\n<li>A scripting language (e.g. Python, JavaScript, Bash) and a desire to expand those skills.</li>\n</ul>\n<ul>\n<li>Infrastructure as code tools like Terraform.</li>\n</ul>\n<ul>\n<li>Strong experience with APIs.</li>\n</ul>\n<ul>\n<li>CI/CD pipelines using Azure DevOps or Git.</li>\n</ul>\n<ul>\n<li>Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc.</li>\n</ul>\n<ul>\n<li>Good understanding and knowledge of:</li>\n</ul>\n<ul>\n<li>Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs.</li>\n</ul>\n<ul>\n<li>Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP.</li>\n</ul>\n<ul>\n<li>Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3.</li>\n</ul>\n<p>Preferred Qualifications:</p>\n<ul>\n<li>You have worked with a Cybersecurity company or products and have performed migrations using migration tools.</li>\n</ul>\n<ul>\n<li>You have developed application security and performance capabilities.</li>\n</ul>\n<ul>\n<li>Ability to manage a project, work to deadlines, prioritize between competing demands and manage uncertainty.</li>\n</ul>\n<ul>\n<li>The work will be performed in English. Fluency in a second regional European language is a strong advantage.</li>\n</ul>\n<p>What Makes Cloudflare Special?</p>\n<p>We’re not just a highly ambitious, large-scale technology company. We’re a highly ambitious, large-scale technology company with a soul. Fundamental to our mission to help build a better Internet is protecting the free and open Internet.</p>\n<p>Project Galileo: Since 2014, we&#39;ve equipped more than 2,400 journalism and civil society organizations in 111 countries with powerful tools to defend themselves against attacks that would otherwise censor their work, technology already used by Cloudflare’s enterprise customers--at no cost.</p>\n<p>Athenian Project: In 2017, we created the Athenian Project to ensure that state and local governments have the highest level of protection and reliability for free, so that their constituents have access to election information and voter registration. Since the project, we&#39;ve provided services to more than 425 local government election websites in 33 states.</p>\n<p>1.1.1.1: We released 1.1.1.1 to help fix the foundation of the Internet by building a faster, more secure and privacy-centric public DNS resolver. This is available publicly for everyone to use - it is the first consumer-focused service Cloudflare has ever released.</p>\n<p>Here’s the deal - we don’t store client IP addresses never, ever. We will continue to abide by our privacy commitment and ensure that no user data is sold to advertisers or used to target consumers.</p>\n<p>Sound like something you’d like to be a part of? We’d love to hear from you!</p>\n<p>This position may require access to information protected under U.S. export control laws, including the U.S. Export Administration Regulations. Please note that any offer of employment may be conditioned on your authorization to receive software or technology controlled under these U.S. export laws without sponsorship for an export license.</p>\n<p>Cloudflare is proud to be an equal opportunity employer. We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to their, or any other person&#39;s, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA/Veterans/Disabled Employer. Cloudflare provides reasonable accommodations to qualified individuals</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_c0df50e1-9cd","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Cloudflare","sameAs":"https://www.cloudflare.com/","logo":"https://logos.yubhub.co/cloudflare.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/cloudflare/jobs/7383015","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Developing serverless code in a CI/CD pipeline using an Agile methodology","Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP","Scripting languages","Infrastructure as code tools like Terraform","Strong experience with APIs","CI/CD pipelines using Azure DevOps or Git","Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc","Good understanding and knowledge of Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs","Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP","Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3"],"x-skills-preferred":["You have worked with a Cybersecurity company or products and have performed migrations using migration tools","You have developed application security and performance capabilities","Ability to manage a project, work to deadlines, prioritize between competing demands and manage uncertainty","The work will be performed in English. Fluency in a second regional European language is a strong advantage"],"datePosted":"2026-04-18T15:54:26.532Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Hybrid"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Developing serverless code in a CI/CD pipeline using an Agile methodology, Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP, Scripting languages, Infrastructure as code tools like Terraform, Strong experience with APIs, CI/CD pipelines using Azure DevOps or Git, Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc, Good understanding and knowledge of Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs, Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP, Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3, You have worked with a Cybersecurity company or products and have performed migrations using migration tools, You have developed application security and performance capabilities, Ability to manage a project, work to deadlines, prioritize between competing demands and manage uncertainty, The work will be performed in English. Fluency in a second regional European language is a strong advantage"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_bec4e006-74f"},"title":"Consultant, Developer Platform","description":"<p>About the role: Cloudflare provides advisory and hands-on-keyboard implementation and migration services for enterprise customers. As a Consultant for Developer Platform, you are an individual contributor working in the post-sales landscape, responsible for the technical execution of solutions and guidance to our customers, following a consultative approach, to get the most value possible from their Cloudflare investment.</p>\n<p>You are an expert in Developer Platform products or equivalent and will focus on building and deploying serverless applications with scale, performance, security and reliability leveraging: Workers, Workers KV, Workers AI, D1, R2, Images, and many other products.</p>\n<p>This position has working hours Monday to Friday 09:00 a.m. to 06:00 p.m. Occasionally, we support our customers during the weekends for specific changes that need to be done outside of their business hours. Travel is expected to be around 40%.</p>\n<p>Experience might include a combination of the skills below:</p>\n<ul>\n<li>Plan and deliver timely and organized services for customers, ensure customers see the full value in Cloudflare’s products and advice on product best practices.</li>\n<li>Gather business and technical requirements, use cases and any other information required to build, migrate and deliver a solution on behalf of the customer and transition the Cloudflare working environment to the customer.</li>\n<li>Produce a Solution Design, HLD, LLD, databuilds, procedures, scripts, test plans, drawings, deployment plan, migration plan, as-builts, and any other artifacts necessary to deliver the solution and transition smoothly into the customer’s technical teams.</li>\n<li>Implement changes on behalf of the customer in the Cloudflare environment following the customer’s change management process.</li>\n<li>Proven experience with Cloudflare or similar with Workers, Javascript/Typescript and Workers APIs.</li>\n<li>Troubleshoot implementation issues and collaborate with Customer Support, Engineering and other teams to assist technical escalations.</li>\n<li>Contribute towards the success of the organization through knowledge sharing activities such as contributing to internal and external documentation, answering technical Q&amp;A, and helping to iterate on best practices.</li>\n</ul>\n<p>Support building operational assets like templates, automation scripts, procedures, workflows, etc.</p>\n<p>Experience might include a combination of the skills below:</p>\n<ul>\n<li>3+ years of experience in a customer facing position as a Consultant delivering services.</li>\n<li>Demonstrated experience with:</li>\n</ul>\n<p>Developing serverless code in a CI/CD pipeline using an Agile methodology. Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP Scripting languages A scripting language (e.g. Python, JavaScript, Bash) and a desire to expand those skills. Infrastructure as code tools like Terraform. Strong experience with APIs. CI/CD pipelines using Azure DevOps or Git. Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc. Good understanding and knowledge of:</p>\n<p>Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs. Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP. Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3.</p>\n<p>Strong advantage if:</p>\n<p>You have worked with a Cybersecurity company or products and have performed migrations using migration tools. You have developed application security and performance capabilities. Ability to manage a project, work to deadlines, prioritize between competing demands and manage uncertainty.</p>\n<p>The work will be performed in English. Fluency in a second regional European language is a strong advantage.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_bec4e006-74f","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Cloudflare","sameAs":"https://www.cloudflare.com/","logo":"https://logos.yubhub.co/cloudflare.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/cloudflare/jobs/7383013","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Developing serverless code in a CI/CD pipeline using an Agile methodology","Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP","Scripting languages","Infrastructure as code tools like Terraform","Strong experience with APIs","CI/CD pipelines using Azure DevOps or Git","Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc","Good understanding and knowledge of Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs","Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP","Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3"],"x-skills-preferred":[],"datePosted":"2026-04-18T15:53:29.137Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Hybrid"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Developing serverless code in a CI/CD pipeline using an Agile methodology, Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP, Scripting languages, Infrastructure as code tools like Terraform, Strong experience with APIs, CI/CD pipelines using Azure DevOps or Git, Implementation and troubleshooting experience, knowledge of tools to troubleshoot, observability, logs, etc, Good understanding and knowledge of Internet and Security technologies such as DDoS, Web Application Firewall, Certificates, DNS, CDN, Analytics and Logs, Security aspects of an internet property, such as DNS, WAFs, Bot Management, Rate Limiting, (M)TLS, certificates, OWASP, Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/3, TLSv1.3"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_45a87931-4a2"},"title":"Security Engineer - Platform Security","description":"<p>We&#39;re seeking a talented and driven Security Engineer to join our Platform Security team. You will build cutting-edge security solutions to protect our Kubernetes-based infrastructure and advance secure AI-driven systems.</p>\n<p>In this role, you will design and implement AI-powered security tools, proactively address vulnerabilities, and champion secure engineering practices across the organisation.</p>\n<p>Ideal candidates are passionate about impactful innovation, excel at writing clean, efficient code, and thrive in fast-paced environments to support xAI&#39;s mission of creating a trusted and secure global digital platform.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Design and build AI-driven security tooling and agents using Grok to identify, analyse, and mitigate vulnerabilities in the platform infrastructure and customer-facing application(s)</li>\n</ul>\n<ul>\n<li>Proactively identify security problems to solve and own the design and implementation end-to-end</li>\n</ul>\n<ul>\n<li>Collaborate and be a security champion while driving technical decisions across the organisation</li>\n</ul>\n<p>Basic Qualifications:</p>\n<ul>\n<li>3+ years of experience in fast-paced, high-impact environments, ideally at startups or tech-driven companies.</li>\n</ul>\n<ul>\n<li>Expertise in Python, Rust, or Go, with strong problem-solving skills and a focus on clean, efficient code.</li>\n</ul>\n<ul>\n<li>Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred.</li>\n</ul>\n<ul>\n<li>Proven experience building tools or systems from scratch, with a focus on scalable solutions.</li>\n</ul>\n<ul>\n<li>Proficiency in designing scalable backend architectures to support secure systems.</li>\n</ul>\n<ul>\n<li>Familiarity with security testing frameworks (e.g., Burp Suite, OWASP ZAP, SAST/DAST).</li>\n</ul>\n<ul>\n<li>Experience with Docker and Kubernetes for deploying and securing containerized applications.</li>\n</ul>\n<ul>\n<li>Knowledge of software supply chain tools, including SBOM management and dependency scanning.</li>\n</ul>\n<p>Preferred Skills and Experience:</p>\n<ul>\n<li>Experience developing AI-driven security tools or integrating AI into security workflows.</li>\n</ul>\n<ul>\n<li>Familiarity with Kubernetes-based environments and securing cloud-native infrastructure.</li>\n</ul>\n<ul>\n<li>Proven ability to drive technical decisions and influence security practices across teams.</li>\n</ul>\n<ul>\n<li>A passion for challenging the status quo and building transformative security solutions.</li>\n</ul>\n<ul>\n<li>Strong collaboration skills, with experience working in dynamic, cross-functional teams.</li>\n</ul>\n<ul>\n<li>A sense of humour and adaptability to thrive in a fast-paced, mission-driven environment.</li>\n</ul>\n<p>ITAR Requirements:</p>\n<p>To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorisations from the U.S. Department of State. Learn more about the ITAR here.</p>\n<p>Compensation and Benefits:</p>\n<p>$180,000 - $440,000 USD</p>\n<p>Base salary is just one part of our total rewards package at xAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short &amp; long-term disability insurance, life insurance, and various other discounts and perks.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_45a87931-4a2","directApply":true,"hiringOrganization":{"@type":"Organization","name":"xAI","sameAs":"https://www.xai.com/","logo":"https://logos.yubhub.co/xai.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/xai/jobs/4835611007","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$180,000 - $440,000 USD","x-skills-required":["Python","Rust","Go","Grok","Docker","Kubernetes","Burp Suite","OWASP ZAP","SAST/DAST","SBOM management","dependency scanning"],"x-skills-preferred":["AI-driven security tools","integrating AI into security workflows","Kubernetes-based environments","securing cloud-native infrastructure","driving technical decisions","influencing security practices","challenging the status quo","transformative security solutions","collaboration skills","dynamic cross-functional teams"],"datePosted":"2026-04-18T15:51:56.952Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Palo Alto, CA"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Python, Rust, Go, Grok, Docker, Kubernetes, Burp Suite, OWASP ZAP, SAST/DAST, SBOM management, dependency scanning, AI-driven security tools, integrating AI into security workflows, Kubernetes-based environments, securing cloud-native infrastructure, driving technical decisions, influencing security practices, challenging the status quo, transformative security solutions, collaboration skills, dynamic cross-functional teams","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":180000,"maxValue":440000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_1e992e68-7cd"},"title":"Staff Engineer, Offensive Security","description":"<p>As a Staff Engineer, Offensive Security at Twilio, you will act as a Technical Lead and design complex attack chains that demonstrate systemic risk. You will spend as much time writing custom code and researching new bypasses as you do executing tests.</p>\n<p>In this role, you will:</p>\n<p>Perform manual and automated testing of web applications, APIs, and mobile apps (iOS/Android). Conduct network and cloud level assessments with various tooling. Triage and validate reports from automated scanners or bug bounty hunters to eliminate false positives and escalate true positives. Perform initial prompt injection and jailbreak tests on AI prototypes, services, and applications using established checklists (OWASP Top 10 for LLMs). Draft high-quality reports that detail the &quot;path to compromise&quot; with clear, reproducible steps for developers. Manage and update the team&#39;s testing infrastructure (e.g., Burp Suite, and basic C2 listeners). Provide direct technical guidance to engineering teams on how to patch vulnerabilities like XSS, SQLi, and IDOR. Design and lead multi-week Red Team operations that mimic specific threat actors (APTs) to test the SIRT detection capabilities. Build custom payloads, droppers, and obfuscated scripts to bypass EDR/AV and maintain stealth. Build automated testing frameworks for AI systems (e.g., using PyRIT, Promptfoo, or Garak) to test for models related to sensitive data leakage. Execute sophisticated attacks against AWS/Azure/K8s, focusing on IAM misconfigurations and container escapes. Collaborate with SIRT and Detection Engineering to tune SIEM alerts based on the techniques used during an engagement. Oversee the organization&#39;s bug bounty program, identifying trends in submissions to suggest broad architectural security changes.</p>\n<p>Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_1e992e68-7cd","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Twilio","sameAs":"https://www.twilio.com/","logo":"https://logos.yubhub.co/twilio.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/twilio/jobs/7622285","x-work-arrangement":"remote","x-experience-level":"staff","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Offensive security","Penetration testing","Bug bounty","AppSec","Vulnerability exploitation","MITRE ATT&CK matrix","OWASP Top 10 for web applications","OWASP Top 10 for LLMs","Post exploitation","Adversarial ML","Burp Suite professional","Nmap","Metasploit","Wireshark","LangChain","TensorFlow","C2 frameworks","Python","Bash","C++"],"x-skills-preferred":["Telecom expertise","Excellent written and verbal communication skills","Ability to influence and build effective working relationships with all levels of the organization","Proficiency in multiple languages applicable to the region"],"datePosted":"2026-04-18T15:49:45.138Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote - Ireland"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Offensive security, Penetration testing, Bug bounty, AppSec, Vulnerability exploitation, MITRE ATT&CK matrix, OWASP Top 10 for web applications, OWASP Top 10 for LLMs, Post exploitation, Adversarial ML, Burp Suite professional, Nmap, Metasploit, Wireshark, LangChain, TensorFlow, C2 frameworks, Python, Bash, C++, Telecom expertise, Excellent written and verbal communication skills, Ability to influence and build effective working relationships with all levels of the organization, Proficiency in multiple languages applicable to the region"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_1bb68827-243"},"title":"Staff Software Engineer, Security","description":"<p>Secure Every Identity ----------------------- Okta secures AI by building the trusted, neutral infrastructure that enables organisations to safely embrace this new era.</p>\n<p>We are looking for a Staff Software Engineer, Security to join our Security Engineering group. As a Staff Software Engineer, Security, you will act as a liaison between the Security org and the engineering org to build technical leverage and influence the security roadmap and direction.</p>\n<p>Responsibilities ---------------</p>\n<ul>\n<li>Act as a liaison between the engineering and security org to develop innovative requirements for the security roadmap.</li>\n<li>Evangelize security best practices across the engineering org.</li>\n<li>Research, design, implement and own security oriented frameworks and features with the common goal of protecting Okta’s customers.</li>\n<li>Routinely participate in cross-vertical code reviews with emphasis on Security.</li>\n<li>Break down complex problems into sub-tasks while prototyping rapidly and iteratively contributing to security initiatives using agile practices.</li>\n<li>Coach and mentor junior engineers in the team.</li>\n</ul>\n<p>Preferred Qualification and Abilities -----------------------------------</p>\n<ul>\n<li>7+ years of development experience in designing and implementing software systems in Java, building highly reliable and mission-critical software.</li>\n<li>3+ years of work experience in designing and implementing security solutions for applications and distributed systems.</li>\n<li>Work experience and excellent understanding in mitigating OWASP Top 10 attacks on applications, Application Security, Cryptography, Authentication, Authorization using Role-Based and Attribute-Based access controls.</li>\n<li>Strong understanding of concepts such as Test-Driven development, Secure SDLC, Secure code reviews and the ability to identify and mitigate threat vectors and vulnerabilities in code and infrastructure.</li>\n<li>Good understanding and experience in using cloud service providers such as AWS and GCP.</li>\n<li>Developing and maintaining technical documentation such as cookbooks, design and architecture docs.</li>\n<li>Troubleshooting and fixing production issues to ensure reliability, security and performance.</li>\n<li>Work experience in using RDBMS like MySQL, good grasp of concepts such as replication and clustering along with familiarity in data stores such as Redis and Elasticsearch.</li>\n<li>Excellent grasp of software engineering principles coupled with strong written and verbal communication skills.</li>\n<li>B.S or M.S in Computer Science or related fields.</li>\n</ul>\n<p>The Okta Experience ------------------ Supporting Your Well-Being Driving Social Impact Developing Talent and Fostering Connection + Community</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_1bb68827-243","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Okta","sameAs":"https://www.okta.com/","logo":"https://logos.yubhub.co/okta.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/okta/jobs/6687504","x-work-arrangement":"hybrid","x-experience-level":"staff","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Java","Software Systems Design","Security Solutions","OWASP Top 10 Attacks","Application Security","Cryptography","Authentication","Authorization","Test-Driven Development","Secure SDLC","Secure Code Reviews","Cloud Service Providers","AWS","GCP","Technical Documentation","RDBMS","MySQL","Redis","Elasticsearch"],"x-skills-preferred":["Agile Practices","Mentoring","Communication Skills"],"datePosted":"2026-04-18T15:46:50.924Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Bengaluru, India"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Java, Software Systems Design, Security Solutions, OWASP Top 10 Attacks, Application Security, Cryptography, Authentication, Authorization, Test-Driven Development, Secure SDLC, Secure Code Reviews, Cloud Service Providers, AWS, GCP, Technical Documentation, RDBMS, MySQL, Redis, Elasticsearch, Agile Practices, Mentoring, Communication Skills"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_bdf949b3-c66"},"title":"Databricks Enterprise Lead Security Architect -   Principal IT Software Engineer","description":"<p>We are seeking a highly skilled Lead Security Architect to join our team within Databricks IT. As a Lead Security Architect, you will be responsible for designing and implementing a secure and scalable architecture to protect our corporate assets. You will focus on key areas of IT security, including Identity and Access Management, Zero Trust architecture, and endpoint security, while also working to secure critical business applications and sensitive data.</p>\n<p>Your expertise will be crucial in building proactive security strategies that align with our business goals and protect the company from an ever-evolving threat landscape. This position demands deep expertise in security principles and a comprehensive understanding of the entire infrastructure stack and IAM systems to design robust, future-ready security solutions.</p>\n<p>You will be instrumental in safeguarding our systems&#39; resilience and integrity against ever-evolving cyber threats. You will play a critical role in shaping our security strategy for modern platforms across AWS, Azure, GCP, network infrastructure, storage, and SaaS solutions, help establish a strong least privilege (PoLP) model, providing specialized IAM expertise, and securely supporting SaaS with sensitive information (NHI).</p>\n<p>You will also be a key contributor in building our internal strategy for secure AI development. Additionally, you will support the secure integration of SaaS platforms such as Google Workspace, collaboration tools, and GTM systems, maintaining alignment with enterprise security standards.</p>\n<p>Close collaboration with cross-functional teams is essential to embed security throughout the technology stack.</p>\n<p>The impact you will have:</p>\n<ul>\n<li>Design and implement secure, scalable reference architectures for the Databricks IT across Cloud Infra (Compute, DBs, Network, Storage), SaaS, Custom Built Applications, Data &amp; AI systems.</li>\n<li>Establish and enforce security controls for: Core Security Areas: - Databricks Workspace Management: Workspace isolation, Unity Catalog for data governance.</li>\n<li>Secure Networking: VPC configs, PrivateLink, IP Allow Lists.</li>\n<li>Identity and Access Management (IAM): SSO, SCIM user provisioning, RBAC via Un, Strong MFA best practices for enterprise identities and customers.</li>\n<li>Data Encryption: At rest and in transit, customer-managed keys for critical assets.</li>\n<li>Data Exfiltration Prevention: Admin console settings, VPC endpoint controls.</li>\n<li>Cluster Security: User isolation, compliance with enhanced security monitoring/Compliance Security Profiles (HIPAA, PCI-DSS, FedRAMP).</li>\n<li>Offensive Security: Test and challenge the effectiveness of the organization’s security defenses by mimicking the tactics, techniques, and procedures used by actual attackers.</li>\n<li>Specialized Security Functions: - Non-human Identity Management: Design and implement secure authentication and authorization for automated systems (service accounts, API keys, machine identities), focusing on automation and integration with existing identity management systems.</li>\n<li>IAM Best Practices: Develop and document comprehensive Identity and Access Management policies, including user provisioning, de-provisioning, access reviews, privileged access management, and multi-factor authentication, ensuring security and compliance.</li>\n<li>Data Loss Prevention (DLP): Implement DLP solutions to identify, monitor, and protect sensitive data across endpoints, networks, and cloud environments, preventing unauthorized access, use, or transmission.</li>\n<li>SaaS Proxy Design and Implementation: Design and implement cloud-based proxies for SaaS applications (SASE solutions) to provide secure access, enforce security policies, monitor user activity, and protect against threats.</li>\n<li>Cloud Infrastructure Best Practices: Establish and document best practices for VPC configurations, cloud networking, and infrastructure as code using Terraform, ensuring secure network segmentation, routing, firewalls, and VPNs for consistent, automated, and secure deployments.</li>\n<li>Least Privilege Access for Data Security: Design and implement data security controls based on the principle of least privilege, ensuring users and systems have only the minimum necessary access through fine-grained controls, data classification, and regular access reviews.</li>\n<li>Guide internal IT on Databricks’ security and compliance certifications (SOC 2, ISO 27001/27017/27018, HIPAA, PCI-DSS, FedRAMP), and support security reviews/audits.</li>\n<li>Support incident response, vulnerability management, threat modeling, and red teaming using audit logs, cluster policies, and enhanced monitoring.</li>\n<li>Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs to enhance security posture.</li>\n<li>Advise executive leadership on security architecture, risks, and mitigation.</li>\n<li>Mentor security engineers and developers on secure design and best practices.</li>\n</ul>\n<p>What we look for:</p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field</li>\n<li>Master’s degree in Computer Science specifically in Information Security or a related discipline is strongly preferred</li>\n<li>Minimum 12 years in cybersecurity, with 5+ in security architecture or senior technical roles.</li>\n<li>Experience in FedRAMP High systems/ GovCloud preferred.</li>\n<li>Must have direct experience designing and securing enterprise platforms in complex multi-cloud environments, deep knowledge of enterprise architecture and security features (control plane/data plane separation, network infra, workspace hardening, network segmentation/ isolation), and hands-on experience automating security controls with Terraform and scripting.</li>\n<li>Proven expertise securing data analytics pipelines, SaaS integrations, and workload isolation in enterprise ecosystems.</li>\n<li>Experience with Enterprise Security Analysis Tools and monitoring/security policy optimization.</li>\n<li>Deep experience in threat modeling, design, PoC, and implementing large-scale enterprise solutions.</li>\n<li>Extensive hands-on experience in AWS cloud security, network security, with knowledge of Zero Trust, Data Protection, and Appsec.</li>\n<li>Strong understanding of enterprise IAM systems (Okta, SailPoint, VDI, Entra ID) and Data Protection.</li>\n<li>Expert experience with SIEM platforms, XDR, and cloud-native threat detection tools.</li>\n<li>Expert in web application security, OWASP, API security, and secure design and testing.</li>\n<li>Hands-on experience with security automation is required, with proficiency in AI-assisted development, Python, Cursor, Lambda, Terraform, or comparable scripting/IaC tools for operational efficiency.</li>\n<li>Industry certifications like CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, or AWS Certified Advanced Networking – Specialty (or equivalent) are preferred.</li>\n<li>Ability to influence stakeholders and drive alignment.</li>\n<li>Strategic thinker with a passion for security innovation, continuous improvement, and building scalable defenses.</li>\n</ul>\n<p>Pay Range Transparency</p>\n<p>Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_bdf949b3-c66","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Databricks","sameAs":"https://databricks.com","logo":"https://logos.yubhub.co/databricks.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/databricks/jobs/8207910002","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Security Architecture","Identity and Access Management","Zero Trust","Endpoint Security","Data Encryption","Data Exfiltration Prevention","Cluster Security","Offensive Security","Non-human Identity Management","IAM Best Practices","Data Loss Prevention","SaaS Proxy Design and Implementation","Cloud Infrastructure Best Practices","Least Privilege Access for Data Security","Guide internal IT on Databricks’ security and compliance certifications","Support incident response, vulnerability management, threat modeling, and red teaming","Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs","Advise executive leadership on security architecture, risks, and mitigation","Mentor security engineers and developers on secure design and best practices"],"x-skills-preferred":["Terraform","Python","Cursor","Lambda","AWS cloud security","Network security","Data Protection","Appsec","SIEM platforms","XDR","cloud-native threat detection tools","Web application security","OWASP","API security","Secure design and testing","AI-assisted development","Security automation","Scripting/IaC tools","CISSP","CCSP","CEH","AWS Certified Security – Specialty","AWS Certified Solutions Architect – Professional","AWS Certified Advanced Networking – Specialty"],"datePosted":"2026-04-18T15:45:19.828Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Mountain View, California; San Francisco, California"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Security Architecture, Identity and Access Management, Zero Trust, Endpoint Security, Data Encryption, Data Exfiltration Prevention, Cluster Security, Offensive Security, Non-human Identity Management, IAM Best Practices, Data Loss Prevention, SaaS Proxy Design and Implementation, Cloud Infrastructure Best Practices, Least Privilege Access for Data Security, Guide internal IT on Databricks’ security and compliance certifications, Support incident response, vulnerability management, threat modeling, and red teaming, Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs, Advise executive leadership on security architecture, risks, and mitigation, Mentor security engineers and developers on secure design and best practices, Terraform, Python, Cursor, Lambda, AWS cloud security, Network security, Data Protection, Appsec, SIEM platforms, XDR, cloud-native threat detection tools, Web application security, OWASP, API security, Secure design and testing, AI-assisted development, Security automation, Scripting/IaC tools, CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, AWS Certified Advanced Networking – Specialty"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_0ae6f8dc-4fd"},"title":"Staff Engineer, AI Security","description":"<p>Join the team as Twilio&#39;s next Staff Engineer, AI Security.</p>\n<p>As a Staff Engineer, AI Security on the AppSec team, you&#39;ll lead autonomous defense for the AI lifecycle. Build multi-agent frameworks and secure gateways while integrating real-time security gates and identity standards. By mentoring Security and R&amp;D to define the MLSecOps roadmap, you&#39;ll ensure a &#39;secure-by-default&#39; future for agentic workflows and resilient AI innovation.</p>\n<p>Responsibilities:</p>\n<p>Serve as the primary subject matter expert for all AI and machine learning security initiatives across security and R&amp;D.</p>\n<p>Design and manage AI gateways to provide a centralized control plane for authentication and authorization and rate limiting across all model and tool interactions.</p>\n<p>Build and maintain an autonomous security agentic framework that utilizes multi agent orchestration for end to end investigation and alert triage and remediation.</p>\n<p>Develop agentic identity models using OAuth 2.1 to propagate identity across trust boundaries and prevent the confused deputy problem.</p>\n<p>Help govern the AI augmented software development lifecycle by integrating real time security gates into the developer environment and CI/CD pipeline.</p>\n<p>Manage Agentic Security Solutions that secure AI lifecycle and manage AI workloads at runtime.</p>\n<p>Author company wide AI security standards and implement these security checks across Twilio&#39;s stack.</p>\n<p>Implement human in the loop checkpoints and transactional safety protocols for high impact or destructive agentic actions.</p>\n<p>Partner with engineering leadership to set the long term roadmap for identity centric security and automated posture management.</p>\n<p>Act as a knowledge multiplier by mentoring security engineers and developing secure by default paved road templates for R&amp;D teams</p>\n<p>Qualifications:</p>\n<p>8+ years of experience in security engineering with at least 3 years focused on AI or machine learning security operations (MLSecOps).</p>\n<p>Expertise in orchestrating multi-agent systems with AWS Strands, LangGraph, and CrewAI, specializing in runtime isolation, PII redaction, and defending against indirect prompt injection in agentic environments.</p>\n<p>Hands-on experience with AI-specific frameworks (e.g., MITRE ATLAS, MAESTRO, OWASP Top 10 for LLMs/Agents/MCP) to threat model and defend against a wide spectrum of risks, including direct/indirect prompt injection, training data poisoning, tool poisoning, and data exfiltration within agentic workflows.</p>\n<p>Proficiency in securing end-to-end AI pipelines, from data ingestion and training to model deployment and monitoring.</p>\n<p>Strong communication skills to translate complex AI risks into actionable business logic for stakeholders.</p>\n<p>Desired:</p>\n<p>Hands-on experience in modern application security tooling including SAST and SCA and DAST with experience adapting these tools to catch AI specific vulnerabilities like indirect prompt injection.</p>\n<p>Expertise in identity standards including OAuth 2.1 and PKCE.</p>\n<p>Experience with AI Red Teaming and conducting adversarial simulations against Large Language Models (LLMs) and agentic systems.</p>\n<p>Proficiency in at least one general programming language (Python, Go, etc) with experience in container security and workload isolation.</p>\n<p>Proven ability to operate with autonomy and drive high impact outcomes in ambiguous environments by identifying and executing on critical projects without predefined roadmaps or direct supervision.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_0ae6f8dc-4fd","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Twilio","sameAs":"https://www.twilio.com/","logo":"https://logos.yubhub.co/twilio.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/twilio/jobs/7821462","x-work-arrangement":"remote","x-experience-level":"staff","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["security engineering","AI and machine learning security","multi-agent systems","AWS Strands","LangGraph","CrewAI","runtime isolation","PII redaction","indirect prompt injection","AI-specific frameworks","MITRE ATLAS","MAESTRO","OWASP Top 10 for LLMs/Agents/MCP","end-to-end AI pipelines","data ingestion","training","model deployment","monitoring","strong communication skills"],"x-skills-preferred":["modern application security tooling","SAST and SCA and DAST","identity standards","OAuth 2.1","PKCE","AI Red Teaming","adversarial simulations","Large Language Models","container security","workload isolation"],"datePosted":"2026-04-18T15:44:10.579Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote - Ireland"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"security engineering, AI and machine learning security, multi-agent systems, AWS Strands, LangGraph, CrewAI, runtime isolation, PII redaction, indirect prompt injection, AI-specific frameworks, MITRE ATLAS, MAESTRO, OWASP Top 10 for LLMs/Agents/MCP, end-to-end AI pipelines, data ingestion, training, model deployment, monitoring, strong communication skills, modern application security tooling, SAST and SCA and DAST, identity standards, OAuth 2.1, PKCE, AI Red Teaming, adversarial simulations, Large Language Models, container security, workload isolation"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_777a6e79-5d9"},"title":"Senior Software Engineer, Security Engineering","description":"<p>Secure Every Identity ----------------------- Okta secures AI by building the trusted, neutral infrastructure that enables organisations to safely embrace this new era.</p>\n<p>We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work.</p>\n<p>The Role -------- We seek a knowledgeable and development-focused Security Engineer, who will build micro-services to secure Customer Identity Products and Infrastructure.</p>\n<p>Responsibilities --------------- Work across a globally distributed product-aligned team of security engineers Establish a deep understanding of Okta Customer Identity products and infrastructure Collaborate when necessary with the Okta Security team on security operations Build, deploy &amp; maintain scalable and reliable infrastructure services as well as security solutions for customer identity products Build, deploy &amp; maintain automation to improve platform security capabilities at scale including logging, threat detection and compliance benchmarks to increase our security posture Help meet our operational security commitments by thinking like an attacker, assessing the risk, and advising on mitigation strategies Support security investigations in coordination with the Okta Security team, participate in root cause analysis and perform necessary remediations. Support stakeholders by proposing mitigation strategies for end-of-life software and security vulnerability and patch management</p>\n<p>Requirements ----------- You have 3+ years of hands-on development experience writing microservices with Golang You have 3+ years of experience in cloud infrastructure security, product security You have working knowledge and hands on development experience with one or more of the following: AWS and/or Azure security Kubernetes You have strong knowledge in OWASP Top 10 and secure coding best practices You have strong foundation on secure software development lifecycle best practices You have strong written and verbal communication skills You have experience working with a globally distributed and remote team.</p>\n<p>Bonus points if: You have working knowledge and experience with one or more of the following: Full-stack engineering Site reliability engineering Identity and access management Vulnerability and threat management Security detection and response Governance, risk and compliance</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_777a6e79-5d9","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Okta","sameAs":"https://www.okta.com","logo":"https://logos.yubhub.co/okta.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/okta/jobs/7744352","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Golang","Cloud infrastructure security","Product security","AWS security","Azure security","Kubernetes","OWASP Top 10","Secure coding best practices","Secure software development lifecycle best practices"],"x-skills-preferred":["Full-stack engineering","Site reliability engineering","Identity and access management","Vulnerability and threat management","Security detection and response","Governance, risk and compliance"],"datePosted":"2026-04-18T15:44:00.927Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Bengaluru, India"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Golang, Cloud infrastructure security, Product security, AWS security, Azure security, Kubernetes, OWASP Top 10, Secure coding best practices, Secure software development lifecycle best practices, Full-stack engineering, Site reliability engineering, Identity and access management, Vulnerability and threat management, Security detection and response, Governance, risk and compliance"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_6d2bed6a-1bd"},"title":"Application Security Engineer","description":"<p>We are seeking a skilled and innovative Application Security Engineer to join our technology-driven company. In this role, you will be responsible for ensuring the security and integrity of our cloud-native applications and systems throughout the software development lifecycle, with a particular focus on code security, CI/CD pipelines, and emerging AI technologies.</p>\n<p>Responsibilities: Conduct in-depth code reviews and static analysis to identify and mitigate security vulnerabilities in our applications Design and implement secure coding guidelines and best practices for development teams Collaborate closely with development teams to integrate security practices throughout the CI/CD pipeline Perform threat modeling and risk assessments for applications, developing mitigation strategies for potential risks Manage vulnerability tracking and remediation efforts, providing guidance to development teams Support incident response activities related to application security Stay current on emerging security threats and trends in cloud-native technologies and AI, continuously enhancing our security measures Evaluate and secure software supply chains, including producing and maintaining Software Bills of Materials (SBOMs) Address security concerns specific to AI and machine learning models, with a focus on the OWASP LLM Top 10</p>\n<p>Basic Qualifications: Bachelor&#39;s degree in Computer Science, Cybersecurity, or a related field 3-5 years of experience in application security, with a strong focus on code security practices Deep understanding of secure coding practices, application security frameworks, and common vulnerabilities (e.g., OWASP Top 10) Proficiency in Python or Rust programming languages and experience with secure coding practices in these languages Experience securing CI/CD pipelines and implementing DevSecOps practices Familiarity with software supply chain security and SBOM generation tools Experience with security testing tools (e.g., Burp Suite, OWASP ZAP) and static/dynamic code analysis Understanding of AI/ML security implications, particularly those outlined in the OWASP LLM Top 10 Excellent communication skills, able to explain complex security issues to both technical and non-technical audiences</p>\n<p>Preferred Skills and Experience: Experience with cloud platforms (e.g., GCP, AWS, Azure) and their security features Relevant security certifications (e.g., CSSLP, OSWE) Background in data privacy and compliance regulations relevant to cloud-native applications and AI systems Experience with GitOps and infrastructure-as-code security Familiarity with federated learning and privacy-preserving machine learning techniques Experience in building custom security tooling to enhance and automate security processes Interest in leveraging AI to automate security tasks and improve efficiency Contributions to open-source security projects or tools Experience in securing AI/ML models and data pipelines</p>\n<p>Compensation and Benefits: $200,000 - $340,000 USD Base salary is just one part of our total rewards package at xAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short &amp; long-term disability insurance, life insurance, and various other discounts and perks.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_6d2bed6a-1bd","directApply":true,"hiringOrganization":{"@type":"Organization","name":"xAI","sameAs":"https://www.xai.com/","logo":"https://logos.yubhub.co/xai.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/xai/jobs/4559147007","x-work-arrangement":"onsite","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":"$200,000 - $340,000 USD","x-skills-required":["Python","Rust","Secure coding practices","Application security frameworks","Common vulnerabilities","OWASP Top 10","CI/CD pipelines","DevSecOps practices","Software supply chain security","SBOM generation tools","Security testing tools","Static/dynamic code analysis","AI/ML security implications","OWASP LLM Top 10"],"x-skills-preferred":["Cloud platforms","Security certifications","Data privacy and compliance regulations","GitOps","Infrastructure-as-code security","Federated learning","Privacy-preserving machine learning techniques","Custom security tooling","AI automation","Open-source security projects","AI/ML model security"],"datePosted":"2026-04-18T15:23:13.995Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Palo Alto, CA"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Python, Rust, Secure coding practices, Application security frameworks, Common vulnerabilities, OWASP Top 10, CI/CD pipelines, DevSecOps practices, Software supply chain security, SBOM generation tools, Security testing tools, Static/dynamic code analysis, AI/ML security implications, OWASP LLM Top 10, Cloud platforms, Security certifications, Data privacy and compliance regulations, GitOps, Infrastructure-as-code security, Federated learning, Privacy-preserving machine learning techniques, Custom security tooling, AI automation, Open-source security projects, AI/ML model security","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":200000,"maxValue":340000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_0e0803be-289"},"title":"Engineering Manager","description":"<p>We are looking for an experienced Engineering Manager to lead our Integrations team, responsible for connecting Yuno&#39;s platform to PSPs, acquirers, and payment gateways worldwide. As an Engineering Manager, you will own the technical direction and delivery of a critical piece of our infrastructure, while growing and developing your team in a fast-moving, global environment.</p>\n<p>**Responsibilities:&quot;</p>\n<ul>\n<li>Lead and develop a multidisciplinary engineering team, fostering a culture of technical excellence, ownership, and continuous improvement.</li>\n<li>Mentor engineers at all levels, supporting their growth through coaching, feedback, and clear expectations.</li>\n<li>Own the full lifecycle of integrations with PSPs, acquirers, and gateways, from technical design to deployment and production monitoring.</li>\n<li>Drive hands-on technical contribution through architecture design, code reviews, and complex troubleshooting, setting the technical bar for your team.</li>\n<li>Set and enforce best practices across coding standards, testing, observability, and documentation.</li>\n<li>Ensure the team follows secure software development practices, including OWASP standards, data privacy, and compliance requirements.</li>\n<li>Guide architectural decisions for low-latency, high-availability backend systems and microservices.</li>\n<li>Champion an AI-first engineering culture, setting standards for AI-assisted development, code generation, and automated testing, ensuring your team leverages these tools as a default, not an afterthought.</li>\n</ul>\n<p>**Cross-functional Execution:&quot;</p>\n<ul>\n<li>Collaborate closely with Product, Compliance, and Business teams in an agile environment to deliver against a fast-moving roadmap.</li>\n<li>Drive the evolution of APIs and integration frameworks that scale across countries and providers.</li>\n</ul>\n<p>**Skills Needed:&quot;</p>\n<ul>\n<li>Proven experience managing and growing engineering teams, including hiring, coaching, and performance management.</li>\n<li>Strong ability to drive technical decision-making and manage competing priorities in a fast-moving environment.</li>\n<li>Excellent communication skills to engage with both technical and non-technical stakeholders.</li>\n<li>Solid hands-on backend engineering experience, with proficiency in Golang or similar languages.</li>\n<li>Strong understanding of microservices and event-driven architectures, APIs, and integration patterns.</li>\n<li>Experience with SQL and relational databases.</li>\n<li>Knowledge of secure software development practices and OWASP principles.</li>\n<li>Champion of AI-first development , experience setting standards for AI-assisted coding, automated testing, and code generation using LLMs and tools like Claude Code or similar.</li>\n<li>Experience delivering in agile environments, adapting processes to what actually works for the team.</li>\n<li>Full professional proficiency in English , written and spoken.</li>\n</ul>\n<p>**Preferred Qualifications:&quot;</p>\n<ul>\n<li>Experience in the payments industry or with PSP integrations.</li>\n<li>Hands-on Experience in Golang.</li>\n<li>Hands-on experience with cloud and DevOps environments (AWS, Docker, Kubernetes).</li>\n</ul>\n<p>**What We Offer at Yuno(Console</p>\n<ul>\n<li>Competitive Compensation.</li>\n<li>Remote Work – You can work from everywhere!</li>\n<li>Home Office Bonus – A one-time allowance to help you create your ideal home office.</li>\n<li>Work Equipment.</li>\n<li>Stock Options.</li>\n<li>Health Plan wherever you are.</li>\n<li>Flexible Days Off.</li>\n<li>Language, Professional, and Personal Growth courses.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_0e0803be-289","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Yuno","sameAs":"https://www.yuno.com/","logo":"https://logos.yubhub.co/yuno.com.png"},"x-apply-url":"https://jobs.lever.co/yuno/fdcc8441-1779-4759-a25e-bd996a1c3acc","x-work-arrangement":"remote","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Golang","Microservices","Event-driven architectures","APIs","Integration patterns","SQL","Relational databases","Secure software development practices","OWASP principles","AI-first development","LLMs","Claude Code"],"x-skills-preferred":["Experience in the payments industry","Hands-on experience with cloud and DevOps environments"],"datePosted":"2026-04-17T13:12:00.398Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Europe"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Golang, Microservices, Event-driven architectures, APIs, Integration patterns, SQL, Relational databases, Secure software development practices, OWASP principles, AI-first development, LLMs, Claude Code, Experience in the payments industry, Hands-on experience with cloud and DevOps environments"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_97c5bd6d-b03"},"title":"Backend Developer - Integrations","description":"<p>We&#39;re looking for a Backend Engineer to join our Integrations Team, responsible for connecting Yuno&#39;s platform to PSPs, acquirers, payment gateways, fraud and 3DS providers worldwide.</p>\n<p>As a Backend Engineer, you will build and maintain the integrations that are core to our product, working across countries, providers, and complex payment rails in a fast-moving, global environment.</p>\n<p>Key responsibilities include:</p>\n<ul>\n<li>Building and evolving high-performance APIs and microservices in Go, designed for reliability, low latency, and scale.</li>\n<li>Taking end-to-end ownership of features and integrations , from discovery and design to production rollout and monitoring.</li>\n<li>Developing and extending integration frameworks that support payment processing, fraud detection, and authentication flows (e.g., 3DS) across multiple regions.</li>\n</ul>\n<p>We&#39;re looking for someone with solid backend engineering experience building high-throughput, production-grade systems in Go, Java, or Kotlin, as well as a strong understanding of microservices and event-driven architectures, APIs, and integration patterns.</p>\n<p>If you have experience in the payments industry or integrating with Payment Service Providers, and are comfortable working with AI-assisted development tools, we&#39;d love to hear from you.</p>\n<p>At Yuno, culture is a key part of how we operate and scale: we&#39;re a fast-paced and global team, operating in a dynamic, fully remote environment across multiple time zones. We offer competitive compensation, remote work, home office bonus, work equipment, stock options, health plan, and flexible days off.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_97c5bd6d-b03","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Yuno","sameAs":"https://www.yuno.com/","logo":"https://logos.yubhub.co/yuno.com.png"},"x-apply-url":"https://jobs.lever.co/yuno/a9a5abcc-112c-47a3-ba23-6a153c764375","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Go","Java","Kotlin","Microservices","Event-driven architectures","APIs","Integration patterns","SQL","Relational databases","Secure software development practices","OWASP principles","Unit testing","Git-based workflows"],"x-skills-preferred":["Cloud and DevOps environments","AWS","Docker","Kubernetes","Payments industry","Payment Service Providers"],"datePosted":"2026-04-17T13:11:47.302Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Shanghai"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Go, Java, Kotlin, Microservices, Event-driven architectures, APIs, Integration patterns, SQL, Relational databases, Secure software development practices, OWASP principles, Unit testing, Git-based workflows, Cloud and DevOps environments, AWS, Docker, Kubernetes, Payments industry, Payment Service Providers"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_8535d606-33d"},"title":"Engineering Manager for Payment Integrations","description":"<p>We are looking for an experienced Engineering Manager to lead our Payment Integrations team. As a key member of our engineering leadership team, you will be responsible for shaping the team and infrastructure that connects our platform to PSPs, acquirers, and payment gateways worldwide.</p>\n<p>Your primary focus will be on leading a multidisciplinary team responsible for the full lifecycle of payment integrations, from architecture and development to deployment and production stability. You will mentor engineers at all levels, drive technical decision-making, and ensure the team delivers high-quality solutions that meet business needs.</p>\n<p>You will also champion an AI-first engineering culture, establishing standards for AI-assisted development, code generation, and automated testing. Additionally, you will collaborate closely with Product, Compliance, and Business stakeholders to deliver against a fast-moving roadmap in an agile environment.</p>\n<p>The ideal candidate will have a solid hands-on backend engineering background, with proficiency in Golang or similar languages. They will also have strong understanding of microservices, event-driven architectures, APIs, and integration patterns, as well as experience with SQL and relational databases.</p>\n<p>Key responsibilities:</p>\n<ul>\n<li><p>Lead and develop a high-performing integrations engineering team, fostering a culture of technical excellence, ownership, and continuous improvement.</p>\n</li>\n<li><p>Mentor engineers at all levels through coaching, regular feedback, and clear expectations , supporting their growth as both engineers and professionals.</p>\n</li>\n<li><p>Own the full technical lifecycle of integrations with PSPs, acquirers, and gateways: from design and development to deployment and production monitoring.</p>\n</li>\n<li><p>Drive hands-on technical contribution through architecture reviews, code reviews, and complex troubleshooting , setting the bar for quality and engineering craft.</p>\n</li>\n<li><p>Define and enforce best practices across coding standards, testing, observability, and documentation.</p>\n</li>\n<li><p>Guide architectural decisions for low-latency, high-availability backend systems and microservices operating at global scale.</p>\n</li>\n<li><p>Champion an AI-first engineering culture, establishing standards for AI-assisted development, code generation, and automated testing , ensuring the team treats these tools as a default, not an afterthought.</p>\n</li>\n<li><p>Collaborate closely with Product, Compliance, and Business stakeholders to deliver against a fast-moving roadmap in an agile environment.</p>\n</li>\n<li><p>Ensure secure software development practices are embedded across the team, including OWASP standards, data privacy, and compliance requirements.</p>\n</li>\n<li><p>Drive the evolution of APIs and integration frameworks that scale across countries and payment providers.</p>\n</li>\n<li><p>Bring ideas to solve problems: any idea is better than none.</p>\n</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_8535d606-33d","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Yuno","sameAs":"https://www.yuno.com/","logo":"https://logos.yubhub.co/yuno.com.png"},"x-apply-url":"https://jobs.lever.co/yuno/2e6bcc2e-86fd-40a2-906c-c63cddf1ce14","x-work-arrangement":"remote","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Fluent English","Proven experience managing and growing engineering teams","Solid hands-on backend engineering background","Strong understanding of microservices, event-driven architectures, APIs, and integration patterns","Experience with SQL and relational databases","Knowledge of secure software development practices and OWASP principles"],"x-skills-preferred":["Experience in the payments industry or with PSP/acquirer integrations","Hands-on experience with Golang","Hands-on experience with cloud and DevOps environments","Ability and confidence to operate autonomously and lead through ambiguity"],"datePosted":"2026-04-17T13:11:41.129Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Amsterdam"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Fluent English, Proven experience managing and growing engineering teams, Solid hands-on backend engineering background, Strong understanding of microservices, event-driven architectures, APIs, and integration patterns, Experience with SQL and relational databases, Knowledge of secure software development practices and OWASP principles, Experience in the payments industry or with PSP/acquirer integrations, Hands-on experience with Golang, Hands-on experience with cloud and DevOps environments, Ability and confidence to operate autonomously and lead through ambiguity"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_dfeb6593-42f"},"title":"Backend Developer (Java) - Core Payments","description":"<p>We are seeking a skilled Backend Developer to join our Core Payments team. As a Backend Developer, you will be responsible for participating in an agile software development process, working across technical and business teams, and owning the full lifecycle of projects from idea to implementation. You will build top technology along an experienced team, including APIs and microservices with cutting-edge technologies. The ideal candidate will have a strong proficiency in Java, adaptability to a constantly changing roadmap, and demonstrated knowledge of unit testing, Git, and SQL. Experience in the payment industry and knowledge of frontend languages are preferred.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Participate in an agile software development process</li>\n<li>Work across both technical and business teams</li>\n<li>Total ownership of the full lifecycle, from idea to implementation, ensuring correct operation in production</li>\n<li>Build top technology along an experienced team</li>\n<li>Build APIs and microservices with cutting-edge technologies</li>\n</ul>\n<p>The skills you need:</p>\n<ul>\n<li>Mandatory Proficiency using Java</li>\n<li>Adaptability to a constantly changing roadmap</li>\n<li>Demonstrated knowledge using unit testing</li>\n<li>Autonomy in tasks executions</li>\n<li>Demonstrated knowledge using Git</li>\n<li>Ability to communicate complicated technical problems to both technical and business audiences</li>\n<li>Knowledge using SQL</li>\n<li>Postgres</li>\n<li>Willingness to learn new technologies and frameworks</li>\n<li>Security on OWASP</li>\n<li>Detail-oriented with a strategic mindset and the ability to think critically and creatively to solve complex problems and drive business growth</li>\n<li>Fluency English</li>\n</ul>\n<p>What we offer at Yuno:</p>\n<ul>\n<li>Competitive Compensation</li>\n<li>Work equipment</li>\n<li>Health Plan wherever you are</li>\n<li>Flexible Days off</li>\n<li>Language, Professional and Personal growth courses</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_dfeb6593-42f","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Yuno","sameAs":"https://www.yuno.com/","logo":"https://logos.yubhub.co/yuno.com.png"},"x-apply-url":"https://jobs.lever.co/yuno/df9e4790-3626-478b-85c1-6fe861fa4a57","x-work-arrangement":"onsite","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Java","unit testing","Git","SQL","Postgres","OWASP"],"x-skills-preferred":["Frontend languages","payment industry","integrating Payment Service Providers"],"datePosted":"2026-04-17T13:10:57.901Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Hyderabad"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Finance","skills":"Java, unit testing, Git, SQL, Postgres, OWASP, Frontend languages, payment industry, integrating Payment Service Providers"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_5c7e46c8-c5c"},"title":"Application Security Intern","description":"<p>We&#39;re looking for a curious and motivated Application Security Intern to help us build secure products and development practices at VGS. As an Application Security Intern, you will partner with security and engineering teams to evaluate application risk, improve secure software development workflows, and help developers ship software safely in an environment that handles highly sensitive payment and identity data.</p>\n<p>Your responsibilities will include:</p>\n<ul>\n<li>Supporting application security reviews for services, APIs, and new product features across the VGS platform.</li>\n<li>Helping identify, validate, and track security findings from static analysis, dependency scanning, container scanning, and other security testing tools.</li>\n<li>Participating in threat modeling and secure design discussions with engineering teams during feature development.</li>\n<li>Evaluating the security of AI-enabled development workflows, including internal AI systems integrated into the SDLC.</li>\n<li>Assisting with manual testing and validation of web application and API security issues.</li>\n<li>Helping improve secure SDLC processes by contributing to developer guidance, secure coding resources, and repeatable review checklists.</li>\n<li>Working with engineers to understand remediation options and clearly document security risks and recommendations.</li>\n<li>Contributing to improving security tooling and guardrails in CI/CD and development workflows.</li>\n</ul>\n<p>We&#39;re looking for someone with a strong interest in secure software design, cloud-native architectures, and automation. You should have a foundational understanding of application security concepts, such as the OWASP Top 10, API security, authentication and authorization, secure coding, and common software vulnerabilities.</p>\n<p>At VGS, we have a remote-first philosophy, and we&#39;re looking for someone who is comfortable working independently and collaboratively as part of a team.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_5c7e46c8-c5c","directApply":true,"hiringOrganization":{"@type":"Organization","name":"VGS","sameAs":"https://www.vgs.com","logo":"https://logos.yubhub.co/vgs.com.png"},"x-apply-url":"https://jobs.lever.co/verygoodsecurity/32fe92a6-13d5-4132-b77c-a7a5ed74f38b","x-work-arrangement":"remote","x-experience-level":"entry","x-job-type":"internship","x-salary-range":null,"x-skills-required":["application security","secure software development","cloud-native architectures","automation","OWASP Top 10","API security","authentication and authorization","secure coding","common software vulnerabilities"],"x-skills-preferred":["LMMs","threat modeling","Burp Suite","SAST/DAST tools","CI/CD pipelines","Docker/Kubernetes","cloud environments"],"datePosted":"2026-04-17T13:08:01.601Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"jobLocationType":"TELECOMMUTE","employmentType":"INTERN","occupationalCategory":"Engineering","industry":"Technology","skills":"application security, secure software development, cloud-native architectures, automation, OWASP Top 10, API security, authentication and authorization, secure coding, common software vulnerabilities, LMMs, threat modeling, Burp Suite, SAST/DAST tools, CI/CD pipelines, Docker/Kubernetes, cloud environments"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_395c1cc1-6a4"},"title":"Security Engineer","description":"<p>We are seeking a Security Engineer to join our growing security team. This role will have a huge impact on maintaining and improving Greenlight&#39;s security posture by developing and implementing automated workflows or AI toolings.</p>\n<p>The successful candidate will design, build, and maintain high-scale automation workflows and AI-assisted capabilities that proactively mature Greenlight&#39;s security posture. They will also architect and implement security guardrails for internal AI usage, ensuring LLM integrations and automated agents operate within company risk tolerances.</p>\n<p>Key responsibilities include:</p>\n<ul>\n<li>Developing custom integrations across the security and business systems stack (SaaS, FinTech tools, and internal APIs) to eliminate manual silos.</li>\n<li>Building and configuring automated tooling for real-time monitoring of data security, privacy, and vulnerability management.</li>\n<li>Partnering with IT, Engineering, and Business Owners to identify operational bottlenecks and deploy AI-powered solutions that enhance both security and efficiency.</li>\n<li>Collaborating with DevOps to bake automated security controls into the CI/CD pipeline and cloud environments.</li>\n<li>Creating high-quality designs, workflow diagrams, and playbooks to ensure automated systems are maintainable and transparent.</li>\n</ul>\n<p>Requirements include:</p>\n<ul>\n<li>4+ years of professional experience in Cybersecurity, DevOps, or Software Engineering.</li>\n<li>Strong proficiency in Python (preferred) or Go for building custom security tools and API-heavy integrations.</li>\n<li>Solid understanding of cloud security principles (AWS/GCP), containerization (Docker/K8s), and securing distributed systems.</li>\n<li>Deep familiarity with the OWASP Top 10 (including LLM-specific risks) and CI/CD security best practices.</li>\n<li>Hands-on experience with CI/CD platforms (GitHub Actions, GitLab CI) and no-code/low-code automation platforms (e.g., Tines, Torq, or Tray.io).</li>\n<li>Proven experience using AI-assisted tools (Copilot, Cursor, etc.) to accelerate development and a curiosity for deploying AI-driven security solutions.</li>\n</ul>\n<p>Nice to have:</p>\n<ul>\n<li>Experience with Infrastructure-as-code (IaC)</li>\n<li>Direct experience implementing security controls within both AWS and GCP.</li>\n<li>Security certifications such as CISSP, Security+, or specialized GIAC certifications.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_395c1cc1-6a4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Greenlight","sameAs":"https://www.greenlight.com/","logo":"https://logos.yubhub.co/greenlight.com.png"},"x-apply-url":"https://jobs.lever.co/greenlight/2a76b288-50ec-4b8c-82b8-bf9543fcf054","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Python","Go","Cloud security principles","Containerization","Securing distributed systems","OWASP Top 10","CI/CD security best practices","CI/CD platforms","No-code/low-code automation platforms","AI-assisted tools"],"x-skills-preferred":[],"datePosted":"2026-04-17T12:36:46.694Z","jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Finance","skills":"Python, Go, Cloud security principles, Containerization, Securing distributed systems, OWASP Top 10, CI/CD security best practices, CI/CD platforms, No-code/low-code automation platforms, AI-assisted tools"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_ace25108-b9c"},"title":"Staff Product Security Engineer","description":"<p>We are seeking an experienced and motivated Staff Product Security Engineer to join our growing Security team. As a Staff Product Security Engineer, you will be responsible for the end-to-end security of our consumer products, digital platform, and emerging hardware device line.</p>\n<p>Your day-to-day will involve leading security architecture/design review and threat modeling sessions with product and engineering teams, translating threats into actionable, risk-rated engineering remediations prioritized by severity, conducting hands-on penetration testing and security assessments across our full product stack, and driving PSIRT operations by triaging incoming vulnerability reports, leading technical investigations, coordinating remediation with engineering, scoring severity (CVSS), managing coordinated disclosure with external researchers, and on-call incidents.</p>\n<p>You will also shape the posture of our AI-assisted development environment, defining and enforcing enterprise policies for Claude and Cursor, and partner across the organization, sitting in design review with architects, advising product managers and engineering teams on security and compliance implications of new features, briefing executives on emerging AI threats, mentoring junior security engineers, and collaborating with the AI team on securing ML pipelines.</p>\n<p>As a champion of security culture, you will run developer training on secure coding with AI assistants, evangelize security by design for products, and ensure every engineer understands that product security is an enabler and not a gate.</p>\n<p>You will bring 10+ years of product security experience spanning application security, cloud security, and secure SDLC, expert-level threat modeling using STRIDE, PASTA, or equivalent across web, mobile, cloud, embedded, and AI systems, hands-on penetration testing skills across applications, API, cloud infrastructure, and hardware/firmware, and deep hands-down AI security expertise and expert-level understanding of OWASP Top 10 for LLM, API, Web, Mobile, and practical experience with MITRE.</p>\n<p>You will have strong hands-on experience in security tools SAST, DAST, SCA, and securing AI development tools specifically Claude and Cursor, and understand MCP security risks and know how to architect enterprise guardrails that enable safe AI-assisted development.</p>\n<p>You will also have strong programming ability and capability to review code, build security tools, automate workflows, and be credible with the engineering teams you partner with.</p>\n<p>Preferred experience includes hardware and embedded security experience with knowledge of secure boot, firmware integrity, hardware root of trust, and IoT threat modeling experience, and experience in the Financial industry, knowledge of PCI DSS, COPPA, or demonstrated ability to learn regulated domains quickly.</p>\n<p>Work perks at Greenlight include medical, dental, vision, and HSA match, paid life insurance, AD&amp;D, and disability benefits, traditional 401k with company match, unlimited PTO, paid company holidays and pop-up bonus holidays, professional development stipends, mental health resources, 1:1 financial planners, fertility healthcare, 100% paid parental and caregiving leave, plus cleaning service and meals during your leave, flexible WFH, both remote and in-office opportunities, fully stocked kitchen, catered lunches, and occasional in-office happy hours, and employee resource groups.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_ace25108-b9c","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Greenlight","sameAs":"https://www.greenlight.com/","logo":"https://logos.yubhub.co/greenlight.com.png"},"x-apply-url":"https://jobs.lever.co/greenlight/18b7ac30-dbf6-4078-bf50-06772c47fdc7","x-work-arrangement":"remote","x-experience-level":"staff","x-job-type":"full-time","x-salary-range":"$165,000-200,000","x-skills-required":["product security","application security","cloud security","secure SDLC","threat modeling","penetration testing","security assessments","PSIRT operations","AI security","OWASP Top 10","MITRE","SAST","DAST","SCA","Claude","Cursor","MCP security","firmware integrity","hardware root of trust","IoT threat modeling"],"x-skills-preferred":["hardware and embedded security","PCI DSS","COPPA"],"datePosted":"2026-04-17T12:35:45.706Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Atlanta"}},"jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Finance","skills":"product security, application security, cloud security, secure SDLC, threat modeling, penetration testing, security assessments, PSIRT operations, AI security, OWASP Top 10, MITRE, SAST, DAST, SCA, Claude, Cursor, MCP security, firmware integrity, hardware root of trust, IoT threat modeling, hardware and embedded security, PCI DSS, COPPA","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":165000,"maxValue":200000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_92a78695-a57"},"title":"Software Engineer, DevEx","description":"<p>We are seeking an experienced Software Engineer, Developer Experience to own and foster a collaborative, automated, and efficient software development lifecycle. In this role, you will collaborate closely with product engineering teams to ensure consistent code health, accelerate development velocity through well-maintained CI pipelines, faster builds, and secure release processes.</p>\n<p>Your mission is to empower our software engineering team with seamless workflows while securing our production environments.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Build, monitor, and enhance CI/CD pipelines to streamline development workflows and accelerate deployments.</li>\n<li>Design, operate and maintain scalable, reliable and secure multi-cloud infrastructures</li>\n<li>Identify areas for improvement and create innovative solutions that enable high developer velocity</li>\n</ul>\n<p>Team Collaboration &amp; Advocacy:</p>\n<ul>\n<li>Standardize DevOps practices to ensure consistency across all engineering teams.</li>\n<li>Establish measurable KPIs for security performance, reliability, and compliance adherence.</li>\n<li>Partner with development and operations teams to embed security into daily workflows.</li>\n<li>Lead training initiatives to upskill teams on secure coding, threat modeling, and incident response.</li>\n<li>Champion a security-first mindset, driving cultural adoption of DevSecOps principles across the organization.</li>\n</ul>\n<p>About you:</p>\n<ul>\n<li>5+ years of successful experience in a similar role (DevOps, Developer Experience, Platform Engineer, Internal tooling engineer, SRE...)</li>\n<li>Strong proficiency in scripting languages (Go, Python...) and software development best practices.</li>\n<li>Developer experience engineering: developer workflow optimization, tooling and automation for productivity, real-time developer support and escalation paths</li>\n<li>Site Reliability Engineering: CI/CD, containerization, orchestration, infra-as-code, monitoring, logging, alerting, observability...</li>\n<li>Exposure to multi-cloud infrastructures (AWS / GCP / Azure or On-Prem)</li>\n<li>Security Tools &amp; Approaches: OWASP, SAST, DAST, SCA, vulnerability scanners</li>\n</ul>\n<p>Proven problem-solving and communication skills — ability to contextualizing, gauging risks and getting buy-in for high stakes and impactful solutions.</p>\n<p>Ownership, high agency and desire to improve things for others.</p>\n<p>Autonomy, self-drive and ability to work well in a fast-paced startup environment.</p>\n<p>Low ego and team spirit mindset.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_92a78695-a57","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Mistral AI","sameAs":"https://mistral.ai"},"x-apply-url":"https://jobs.lever.co/mistral/c9e16eb0-0cb9-423d-8495-a96d10782622","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["scripting languages (Go, Python...)","software development best practices","developer experience engineering","site reliability engineering","multi-cloud infrastructures (AWS / GCP / Azure or On-Prem)","security tools & approaches (OWASP, SAST, DAST, SCA, vulnerability scanners)"],"x-skills-preferred":[],"datePosted":"2026-03-10T11:31:30.226Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Paris"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"scripting languages (Go, Python...), software development best practices, developer experience engineering, site reliability engineering, multi-cloud infrastructures (AWS / GCP / Azure or On-Prem), security tools & approaches (OWASP, SAST, DAST, SCA, vulnerability scanners)"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_d6302dc5-860"},"title":"Security Engineer","description":"<p><strong>Job Description</strong></p>\n<p>Fuse Energy is a forward-thinking renewable energy startup on a mission to deliver a terawatt of renewable energy - fast. We&#39;re combining first-principles thinking with cutting-edge technology to build a radically better energy system.</p>\n<p>We&#39;re creating a fully integrated energy company: from developing solar, wind and hydrogen projects to real-time power trading and distributed energy installations. By selling directly to consumers, we cut out the middleman, lower costs and pass on savings to customers.</p>\n<p>But we&#39;re not stopping there. We&#39;re also building the Energy Network: a decentralised platform of smart devices that rewards users in Energy Dollars for electrifying their homes, shifting usage to off-peak hours, and helping balance the grid. This network strengthens grid stability - a critical foundation for scaling AI data centers and other energy-intensive industries.</p>\n<p><strong>Responsibilities</strong></p>\n<p><strong>Security Engineering &amp; Implementation</strong></p>\n<ul>\n<li>Assist in implementing and maintaining security controls across cloud infrastructure, web applications, and internal systems.</li>\n<li>Support secure configuration of services, including access controls, secrets management, and API security.</li>\n<li>Help review and improve the security of components related to identity, authentication, and transaction workflows.</li>\n</ul>\n<p><strong>Threat Modelling &amp; Risk Awareness</strong></p>\n<ul>\n<li>Participate in threat modelling exercises and security reviews for new features and system changes.</li>\n<li>Help identify common security risks and misconfigurations, and work with engineers to remediate them.</li>\n<li>Stay informed about common attack vectors and vulnerabilities relevant to modern cloud and web environments.</li>\n</ul>\n<p><strong>Security Operations &amp; Incident Support</strong></p>\n<ul>\n<li>Assist with monitoring, detection, and investigation of security alerts and events.</li>\n<li>Support incident response activities, including analysis, documentation, and follow-up remediation tasks.</li>\n<li>Help maintain and improve runbooks, alerts, and basic detection mechanisms.</li>\n</ul>\n<p><strong>Secure Development &amp; Best Practices</strong></p>\n<ul>\n<li>Contribute to secure development practices, including code reviews with a security lens.</li>\n<li>Help document and promote security guidelines for engineers, such as secure coding and secrets handling.</li>\n<li>Support ongoing efforts related to compliance readiness (e.g., evidence gathering, control checks).</li>\n</ul>\n<p><strong>Collaboration &amp; Learning</strong></p>\n<ul>\n<li>Work closely with engineering and product teams to integrate security into day-to-day development.</li>\n<li>Learn from senior security engineers and actively develop your skills in cloud security, application security, and infrastructure security.</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.</li>\n<li>2–3 years of experience in a Security Engineer, Software Engineer, Infrastructure Engineer, or similar role with security exposure.</li>\n<li>Foundational understanding of security concepts such as authentication, authorisation, encryption, and secure communication.</li>\n<li>Familiarity with common web and cloud security risks (e.g., OWASP Top 10, IAM misconfigurations).</li>\n<li>Basic experience with AWS and an interest in cloud security best practices.</li>\n<li>Working knowledge of operating systems, networking fundamentals, and software development workflows.</li>\n<li>Strong problem-solving skills and a willingness to learn and grow in a fast-moving environment.</li>\n</ul>\n<p><strong>Benefits</strong></p>\n<ul>\n<li>Competitive salary and an equity sign-on bonus</li>\n<li>Biannual bonus scheme</li>\n<li>Fully expensed tech to match your needs</li>\n<li>Paid annual leave</li>\n<li>Breakfast and dinner allowance for office based employees</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_d6302dc5-860","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Fuse Energy","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/pGZMLfYQcD1sroC7XJLzH2/hybrid-security-engineer-in-london-at-fuse-energy","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["AWS","cloud security","application security","infrastructure security","security concepts","authentication","authorisation","encryption","secure communication","OWASP Top 10","IAM misconfigurations"],"x-skills-preferred":["operating systems","networking fundamentals","software development workflows"],"datePosted":"2026-03-09T16:59:38.977Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, England"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"AWS, cloud security, application security, infrastructure security, security concepts, authentication, authorisation, encryption, secure communication, OWASP Top 10, IAM misconfigurations, operating systems, networking fundamentals, software development workflows"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_f7ac368b-fd2"},"title":"Security Engineer","description":"<p><strong>Job Description</strong></p>\n<p>Fuse Energy is a forward-thinking renewable energy startup on a mission to deliver a terawatt of renewable energy - fast. We&#39;re combining first-principles thinking with cutting-edge technology to build a radically better energy system.</p>\n<p>We&#39;re creating a fully integrated energy company: from developing solar, wind and hydrogen projects to real-time power trading and distributed energy installations. By selling directly to consumers, we cut out the middleman, lower costs and pass on savings to customers.</p>\n<p>But we&#39;re not stopping there. We&#39;re also building the Energy Network: a decentralised platform of smart devices that rewards users in Energy Dollars for electrifying their homes, shifting usage to off-peak hours, and helping balance the grid. This network strengthens grid stability - a critical foundation for scaling AI data centers and other energy-intensive industries.</p>\n<p><strong>Responsibilities</strong></p>\n<p><strong>Security Engineering &amp; Implementation</strong></p>\n<ul>\n<li>Assist in implementing and maintaining security controls across cloud infrastructure, web applications, and internal systems.</li>\n<li>Support secure configuration of services, including access controls, secrets management, and API security.</li>\n<li>Help review and improve the security of components related to identity, authentication, and transaction workflows.</li>\n</ul>\n<p><strong>Threat Modelling &amp; Risk Awareness</strong></p>\n<ul>\n<li>Participate in threat modelling exercises and security reviews for new features and system changes.</li>\n<li>Help identify common security risks and misconfigurations, and work with engineers to remediate them.</li>\n<li>Stay informed about common attack vectors and vulnerabilities relevant to modern cloud and web environments.</li>\n</ul>\n<p><strong>Security Operations &amp; Incident Support</strong></p>\n<ul>\n<li>Assist with monitoring, detection, and investigation of security alerts and events.</li>\n<li>Support incident response activities, including analysis, documentation, and follow-up remediation tasks.</li>\n<li>Help maintain and improve runbooks, alerts, and basic detection mechanisms.</li>\n</ul>\n<p><strong>Secure Development &amp; Best Practices</strong></p>\n<ul>\n<li>Contribute to secure development practices, including code reviews with a security lens.</li>\n<li>Help document and promote security guidelines for engineers, such as secure coding and secrets handling.</li>\n<li>Support ongoing efforts related to compliance readiness (e.g., evidence gathering, control checks).</li>\n</ul>\n<p><strong>Collaboration &amp; Learning</strong></p>\n<ul>\n<li>Work closely with engineering and product teams to integrate security into day-to-day development.</li>\n<li>Learn from senior security engineers and actively develop your skills in cloud security, application security, and infrastructure security.</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent practical experience.</li>\n<li>2–3 years of experience in a Security Engineer, Software Engineer, Infrastructure Engineer, or similar role with security exposure.</li>\n<li>Foundational understanding of security concepts such as authentication, authorisation, encryption, and secure communication.</li>\n<li>Familiarity with common web and cloud security risks (e.g., OWASP Top 10, IAM misconfigurations).</li>\n<li>Basic experience with AWS and an interest in cloud security best practices.</li>\n<li>Working knowledge of operating systems, networking fundamentals, and software development workflows.</li>\n<li>Strong problem-solving skills and a willingness to learn and grow in a fast-moving environment.</li>\n</ul>\n<p><strong>Benefits</strong></p>\n<ul>\n<li>Competitive salary and an equity sign-on bonus</li>\n<li>Biannual bonus scheme</li>\n<li>Fully expensed tech to match your needs</li>\n<li>Paid annual leave</li>\n<li>Breakfast and dinner allowance for office based employees</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_f7ac368b-fd2","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Fuse Energy","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/eziLwb6ZKLhWWhioSWTY9L/hybrid-security-engineer-in-dubai-at-fuse-energy","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["AWS","cloud security","application security","infrastructure security","security concepts","authentication","authorisation","encryption","secure communication","OWASP Top 10","IAM misconfigurations"],"x-skills-preferred":["operating systems","networking fundamentals","software development workflows"],"datePosted":"2026-03-09T16:56:38.305Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Dubai"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"AWS, cloud security, application security, infrastructure security, security concepts, authentication, authorisation, encryption, secure communication, OWASP Top 10, IAM misconfigurations, operating systems, networking fundamentals, software development workflows"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_6b3b4a98-297"},"title":"Enterprise Product Engineer","description":"<p><strong>About the role</strong></p>\n<p>As an Enterprise Product Engineer at Cursor, you&#39;ll architect, implement, and deploy projects end-to-end to build enterprise-grade features that help large organisations adopt and scale with Cursor.</p>\n<p><strong>You may be a fit if</strong></p>\n<p>You have an entrepreneurial spirit and love creating outsized business impact. You want to be at the frontier of AI transformation with the best companies in the world. You&#39;re passionate about building great products that blend excellent engineering with a taste for models and design. You have a propensity for creative ideas and have a knack for making powerful tools without compromising their ease-of-use.</p>\n<p><strong>Responsibilities</strong></p>\n<ul>\n<li>Architect, implement, and deploy projects end-to-end to build enterprise-grade features that help large organisations adopt and scale with Cursor.</li>\n<li>Collaborate with cross-functional teams to define and deliver product roadmaps that meet business objectives.</li>\n<li>Analyse customer needs and develop solutions that meet their requirements.</li>\n<li>Work closely with the design team to create user-centred products that are both functional and aesthetically pleasing.</li>\n<li>Develop and maintain high-quality code that is scalable, maintainable, and efficient.</li>\n<li>Participate in code reviews to ensure that the codebase is of the highest quality.</li>\n<li>Stay up-to-date with the latest technologies and trends in the industry.</li>\n</ul>\n<p><strong>Benefits</strong></p>\n<ul>\n<li>Competitive salary and benefits package.</li>\n<li>Opportunity to work with a recognised leader in the AI industry.</li>\n<li>Collaborative and dynamic work environment.</li>\n<li>Flexible working hours and remote work options.</li>\n<li>Access to the latest technologies and tools.</li>\n<li>Opportunities for professional growth and development.</li>\n</ul>\n<p><strong>What we&#39;re looking for</strong></p>\n<ul>\n<li>3+ years of experience in software development, preferably in a product engineering role.</li>\n<li>Strong understanding of software development principles, patterns, and best practices.</li>\n<li>Experience with Agile development methodologies and version control systems.</li>\n<li>Strong problem-solving skills and attention to detail.</li>\n<li>Excellent communication and collaboration skills.</li>\n<li>Experience with cloud-based technologies and containerisation.</li>\n<li>Familiarity with machine learning and AI concepts.</li>\n<li>Experience with design thinking and user-centred design.</li>\n<li>Strong understanding of security principles and best practices.</li>\n<li>Experience with DevOps practices and tools.</li>\n<li>Familiarity with testing frameworks and methodologies.</li>\n<li>Experience with continuous integration and continuous deployment.</li>\n<li>Strong understanding of scalability and performance optimisation.</li>\n<li>Experience with monitoring and logging tools.</li>\n<li>Familiarity with containerisation and orchestration.</li>\n<li>Experience with cloud-based storage and databases.</li>\n<li>Familiarity with security frameworks and best practices.</li>\n<li>Experience with compliance and regulatory requirements.</li>\n<li>Familiarity with industry standards and best practices.</li>\n</ul>\n<p><strong>Preferred skills</strong></p>\n<ul>\n<li>Experience with Python, Java, or C++.</li>\n<li>Familiarity with cloud-based platforms such as AWS or Azure.</li>\n<li>Experience with containerisation and orchestration tools such as Docker and Kubernetes.</li>\n<li>Familiarity with machine learning and AI frameworks such as TensorFlow or PyTorch.</li>\n<li>Experience with design thinking and user-centred design tools such as Sketch or Figma.</li>\n<li>Familiarity with testing frameworks and methodologies such as JUnit or PyUnit.</li>\n<li>Experience with continuous integration and continuous deployment tools such as Jenkins or GitLab CI/CD.</li>\n<li>Familiarity with monitoring and logging tools such as Prometheus or Grafana.</li>\n<li>Experience with security frameworks and best practices such as OWASP or NIST.</li>\n<li>Familiarity with compliance and regulatory requirements such as GDPR or HIPAA.</li>\n<li>Experience with industry standards and best practices such as ISO 27001 or PCI-DSS.</li>\n</ul>\n<p><strong>Salary range</strong></p>\n<p>£80,000 - £120,000 per annum.</p>\n<p><strong>Category</strong></p>\n<p>Engineering.</p>\n<p><strong>Industry</strong></p>\n<p>Technology.</p>\n<p><strong>Experience level</strong></p>\n<p>Mid.</p>\n<p><strong>Employment type</strong></p>\n<p>Full-time.</p>\n<p><strong>Workplace type</strong></p>\n<p>Remote.</p>\n<p><strong>Required skills</strong></p>\n<ul>\n<li>Software development principles, patterns, and best practices.</li>\n<li>Agile development methodologies and version control systems.</li>\n<li>Problem-solving skills and attention to detail.</li>\n<li>Communication and collaboration skills.</li>\n<li>Cloud-based technologies and containerisation.</li>\n<li>Machine learning and AI concepts.</li>\n<li>Design thinking and user-centred design.</li>\n<li>Security principles and best practices.</li>\n<li>DevOps practices and tools.</li>\n<li>Testing frameworks and methodologies.</li>\n<li>Continuous integration and continuous deployment.</li>\n<li>Scalability and performance optimisation.</li>\n<li>Monitoring and logging tools.</li>\n<li>Containerisation and orchestration.</li>\n<li>Cloud-based storage and databases.</li>\n<li>Security frameworks and best practices.</li>\n<li>Compliance and regulatory requirements.</li>\n<li>Industry standards and best practices.</li>\n</ul>\n<p><strong>Preferred skills</strong></p>\n<ul>\n<li>Python, Java, or C++.</li>\n<li>Cloud-based platforms such as AWS or Azure.</li>\n<li>Containerisation and orchestration tools such as Docker and Kubernetes.</li>\n<li>Machine learning and AI frameworks such as TensorFlow or PyTorch.</li>\n<li>Design thinking and user-centred design tools such as Sketch or Figma.</li>\n<li>Testing frameworks and methodologies such as JUnit or PyUnit.</li>\n<li>Continuous integration and continuous deployment tools such as Jenkins or GitLab CI/CD.</li>\n<li>Monitoring and logging tools such as Prometheus or Grafana.</li>\n<li>Security frameworks and best practices such as OWASP or NIST.</li>\n<li>Compliance and regulatory requirements such as GDPR or HIPAA.</li>\n<li>Industry standards and best practices such as ISO 27001 or PCI-DSS.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_6b3b4a98-297","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Cursor","sameAs":"https://cursor.com","logo":"https://logos.yubhub.co/cursor.com.png"},"x-apply-url":"https://cursor.com/careers/software-engineer-enterprise","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":"£80,000 - £120,000 per annum","x-skills-required":["Software development principles, patterns, and best practices","Agile development methodologies and version control systems","Problem-solving skills and attention to detail","Communication and collaboration skills","Cloud-based technologies and containerisation","Machine learning and AI concepts","Design thinking and user-centred design","Security principles and best practices","DevOps practices and tools","Testing frameworks and methodologies","Continuous integration and continuous deployment","Scalability and performance optimisation","Monitoring and logging tools","Containerisation and orchestration","Cloud-based storage and databases","Security frameworks and best practices","Compliance and regulatory requirements","Industry standards and best practices"],"x-skills-preferred":["Python, Java, or C++","Cloud-based platforms such as AWS or Azure","Containerisation and orchestration tools such as Docker and Kubernetes","Machine learning and AI frameworks such as TensorFlow or PyTorch","Design thinking and user-centred design tools such as Sketch or Figma","Testing frameworks and methodologies such as JUnit or PyUnit","Continuous integration and continuous deployment tools such as Jenkins or GitLab CI/CD","Monitoring and logging tools such as Prometheus or Grafana","Security frameworks and best practices such as OWASP or NIST","Compliance and regulatory requirements such as GDPR or HIPAA","Industry standards and best practices such as ISO 27001 or PCI-DSS"],"datePosted":"2026-03-08T00:20:06.582Z","jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Software development principles, patterns, and best practices, Agile development methodologies and version control systems, Problem-solving skills and attention to detail, Communication and collaboration skills, Cloud-based technologies and containerisation, Machine learning and AI concepts, Design thinking and user-centred design, Security principles and best practices, DevOps practices and tools, Testing frameworks and methodologies, Continuous integration and continuous deployment, Scalability and performance optimisation, Monitoring and logging tools, Containerisation and orchestration, Cloud-based storage and databases, Security frameworks and best practices, Compliance and regulatory requirements, Industry standards and best practices, Python, Java, or C++, Cloud-based platforms such as AWS or Azure, Containerisation and orchestration tools such as Docker and Kubernetes, Machine learning and AI frameworks such as TensorFlow or PyTorch, Design thinking and user-centred design tools such as Sketch or Figma, Testing frameworks and methodologies such as JUnit or PyUnit, Continuous integration and continuous deployment tools such as Jenkins or GitLab CI/CD, Monitoring and logging tools such as Prometheus or Grafana, Security frameworks and best practices such as OWASP or NIST, Compliance and regulatory requirements such as GDPR or HIPAA, Industry standards and best practices such as ISO 27001 or PCI-DSS","baseSalary":{"@type":"MonetaryAmount","currency":"GBP","value":{"@type":"QuantitativeValue","minValue":80000,"maxValue":120000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_544e96bb-5c3"},"title":"Security Engineer, Application Security","description":"<p><strong>Security Engineer, Application Security</strong></p>\n<p><strong>Location</strong></p>\n<p>New York City</p>\n<p><strong>Employment Type</strong></p>\n<p>Full time</p>\n<p><strong>Location Type</strong></p>\n<p>Hybrid</p>\n<p><strong>Department</strong></p>\n<p>Security</p>\n<p><strong>Compensation</strong></p>\n<ul>\n<li>$260K – $385K • Offers Equity</li>\n</ul>\n<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>\n<ul>\n<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>\n</ul>\n<ul>\n<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>\n</ul>\n<ul>\n<li>401(k) retirement plan with employer match</li>\n</ul>\n<ul>\n<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>\n</ul>\n<ul>\n<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>\n</ul>\n<ul>\n<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>\n</ul>\n<ul>\n<li>Mental health and wellness support</li>\n</ul>\n<ul>\n<li>Employer-paid basic life and disability coverage</li>\n</ul>\n<ul>\n<li>Annual learning and development stipend to fuel your professional growth</li>\n</ul>\n<ul>\n<li>Daily meals in our offices, and meal delivery credits as eligible</li>\n</ul>\n<ul>\n<li>Relocation support for eligible employees</li>\n</ul>\n<ul>\n<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>\n</ul>\n<p>More details about our benefits are available to candidates during the hiring process.</p>\n<p><strong>About the Team</strong></p>\n<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>\n<p><strong>About the Role</strong></p>\n<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>\n<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>\n<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>\n<p><strong>In this role, you will:</strong></p>\n<ul>\n<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>\n</ul>\n<ul>\n<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>\n</ul>\n<ul>\n<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>\n</ul>\n<ul>\n<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>\n</ul>\n<ul>\n<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>\n</ul>\n<ul>\n<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>\n</ul>\n<ul>\n<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>\n</ul>\n<p><strong>You might thrive in this role if you:</strong></p>\n<ul>\n<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>\n</ul>\n<ul>\n<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>\n</ul>\n<ul>\n<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>\n</ul>\n<ul>\n<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>\n</ul>\n<ul>\n<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>\n</ul>\n<p><strong>About OpenAI</strong></p>\n<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve this, we are building a team of talented engineers, researchers, and designers who share our vision and values.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_544e96bb-5c3","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openai.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openai/ec5a5d98-6314-44d9-9466-8d4d7ee866f6","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$260K – $385K • Offers Equity","x-skills-required":["information security","cybersecurity","secure coding practices","threat modeling","risk assessments","incident response","application security","software development","secure coding guidelines","security protocols","encryption methods","programming languages","security tools","Burp Suite","OWASP ZAP"],"x-skills-preferred":["Python","Java","C++","security frameworks","security best practices"],"datePosted":"2026-03-06T18:31:40.678Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"New York City"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":260000,"maxValue":385000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_90d20db9-de4"},"title":"Security Engineer, Application Security","description":"<p><strong>Job Posting</strong></p>\n<p><strong>Security Engineer, Application Security</strong></p>\n<p><strong>Location</strong></p>\n<p>San Francisco</p>\n<p><strong>Employment Type</strong></p>\n<p>Full time</p>\n<p><strong>Location Type</strong></p>\n<p>Hybrid</p>\n<p><strong>Department</strong></p>\n<p>Security</p>\n<p><strong>Compensation</strong></p>\n<ul>\n<li>$260K – $385K • Offers Equity</li>\n</ul>\n<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>\n<ul>\n<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>\n</ul>\n<ul>\n<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>\n</ul>\n<ul>\n<li>401(k) retirement plan with employer match</li>\n</ul>\n<ul>\n<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>\n</ul>\n<ul>\n<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>\n</ul>\n<ul>\n<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>\n</ul>\n<ul>\n<li>Mental health and wellness support</li>\n</ul>\n<ul>\n<li>Employer-paid basic life and disability coverage</li>\n</ul>\n<ul>\n<li>Annual learning and development stipend to fuel your professional growth</li>\n</ul>\n<ul>\n<li>Daily meals in our offices, and meal delivery credits as eligible</li>\n</ul>\n<ul>\n<li>Relocation support for eligible employees</li>\n</ul>\n<ul>\n<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>\n</ul>\n<p>More details about our benefits are available to candidates during the hiring process.</p>\n<p>This role is at-will and OpenAI reserves the right to modify base pay and other compensation components at any time based on individual performance, team or company results, or market conditions.</p>\n<p><strong>About the Team</strong></p>\n<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>\n<p><strong>About the Role</strong></p>\n<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>\n<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>\n<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>\n<p><strong>In this role, you will:</strong></p>\n<ul>\n<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>\n</ul>\n<ul>\n<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>\n</ul>\n<ul>\n<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>\n</ul>\n<ul>\n<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>\n</ul>\n<ul>\n<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>\n</ul>\n<ul>\n<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>\n</ul>\n<ul>\n<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>\n</ul>\n<p><strong>You might thrive in this role if you:</strong></p>\n<ul>\n<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>\n</ul>\n<ul>\n<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>\n</ul>\n<ul>\n<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>\n</ul>\n<ul>\n<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>\n</ul>\n<ul>\n<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>\n</ul>\n<p><strong>About OpenAI</strong></p>\n<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve this, we are committed to advancing the state-of-the-art in AI research and development.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_90d20db9-de4","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openai.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openai/0322d6d8-6588-4209-a304-83e768063a25","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$260K – $385K • Offers Equity","x-skills-required":["information security","cybersecurity","secure coding practices","threat modeling","risk assessments","incident response","application security","software development","secure coding guidelines","security protocols","encryption methods","programming languages","security tools","Burp Suite","OWASP ZAP"],"x-skills-preferred":["Python","Java","C++","security frameworks","security best practices"],"datePosted":"2026-03-06T18:30:51.618Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":260000,"maxValue":385000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_659bf794-7b5"},"title":"Security Engineer, Application Security","description":"<p><strong>Security Engineer, Application Security</strong></p>\n<p><strong>Location</strong></p>\n<p>Seattle</p>\n<p><strong>Employment Type</strong></p>\n<p>Full time</p>\n<p><strong>Department</strong></p>\n<p>Security</p>\n<p><strong>Compensation</strong></p>\n<ul>\n<li>$260K – $385K • Offers Equity</li>\n</ul>\n<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance related bonus for eligible employees and benefits.</p>\n<ul>\n<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>\n</ul>\n<ul>\n<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>\n</ul>\n<ul>\n<li>401(k) retirement plan with employer match</li>\n</ul>\n<ul>\n<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>\n</ul>\n<ul>\n<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>\n</ul>\n<ul>\n<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick and safe time (1 hour per 30 hours worked)</li>\n</ul>\n<ul>\n<li>Mental health and wellness support</li>\n</ul>\n<ul>\n<li>Employer-paid basic life and disability coverage</li>\n</ul>\n<ul>\n<li>Annual learning and development stipend to fuel your professional growth</li>\n</ul>\n<ul>\n<li>Daily meals in our offices, and meal delivery credits as eligible</li>\n</ul>\n<ul>\n<li>Relocation support for eligible employees</li>\n</ul>\n<ul>\n<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>\n</ul>\n<p>More details about our benefits are available to candidates during the hiring process.</p>\n<p><strong>About the Team</strong></p>\n<p>Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.</p>\n<p><strong>About the Role</strong></p>\n<p>As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.</p>\n<p>We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge. You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.</p>\n<p>The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.</p>\n<p><strong>In this role, you will:</strong></p>\n<ul>\n<li><strong>Perform Security Assessments</strong>: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.</li>\n</ul>\n<ul>\n<li><strong>Develop and Implement Security Tools</strong>: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.</li>\n</ul>\n<ul>\n<li><strong>Collaborate with Development Teams</strong>: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.</li>\n</ul>\n<ul>\n<li><strong>Threat Modeling and Risk Assessment</strong>: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.</li>\n</ul>\n<ul>\n<li><strong>Vulnerability Management</strong>: Track, analyze, and manage vulnerabilities in applications, providing guidance and support for remediation efforts.</li>\n</ul>\n<ul>\n<li><strong>Incident Response Support</strong>: Assist in investigating, analyzing, and responding to security incidents related to applications, ensuring timely resolution and documentation of incidents.</li>\n</ul>\n<ul>\n<li><strong>Stay Current on Security Trends</strong>: Continuously stay updated on the latest security threats, vulnerabilities, and technologies to enhance security measures in applications.</li>\n</ul>\n<p><strong>You might thrive in this role if you:</strong></p>\n<ul>\n<li>Extensive experience in information security, cybersecurity, or a related field, with a significant portion of that experience in leadership or management roles.</li>\n</ul>\n<ul>\n<li>Deep understanding of security technologies, tools, and best practices, including experience with secure coding practices, threat modeling, risk assessments, and incident response.</li>\n</ul>\n<ul>\n<li>Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.</li>\n</ul>\n<ul>\n<li>Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.</li>\n</ul>\n<ul>\n<li>Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences</li>\n</ul>\n<p><strong>About OpenAI</strong></p>\n<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_659bf794-7b5","directApply":true,"hiringOrganization":{"@type":"Organization","name":"OpenAI","sameAs":"https://jobs.ashbyhq.com","logo":"https://logos.yubhub.co/openai.com.png"},"x-apply-url":"https://jobs.ashbyhq.com/openai/1e110226-448a-4c0b-b0e4-d0f5df579fbf","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$260K – $385K • Offers Equity","x-skills-required":["information security","cybersecurity","secure coding practices","threat modeling","risk assessments","incident response","application security","software development","secure coding guidelines","security protocols","encryption methods","programming languages","security tools","Burp Suite","OWASP ZAP"],"x-skills-preferred":["Python","Java","C++","security frameworks","security best practices"],"datePosted":"2026-03-06T18:29:22.823Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Seattle"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"information security, cybersecurity, secure coding practices, threat modeling, risk assessments, incident response, application security, software development, secure coding guidelines, security protocols, encryption methods, programming languages, security tools, Burp Suite, OWASP ZAP, Python, Java, C++, security frameworks, security best practices","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":260000,"maxValue":385000,"unitText":"YEAR"}}}]}