Search jobs > Fort Worth, TX > Remote > Application security

Security Application Engineer: Remote US - (Must be US citizen)

RingCentral, Inc
Fort Worth, TX, United States
$140K-$170K a year
Remote
Full-time

Security Application Engineer, Application Security Team : (Remote US)

The RingCentral environment is dynamic, success-driven, team-oriented and committed to providing world class service for its customers.

Do you have the ability to thrive in a fast-paced environment? We are looking for candidates with an entrepreneurial spark! This position can be based 100% remote from anywhere in the USA.

We're not a phone company; we're a cloud business-solutions provider. We've thrown out the old PBX along with its rigid rules and eliminated the complexity and unnecessary expense of managing business communications the old way.

RingCentral fosters career development and provides leadership training, education, workshops, and coaching for all employees.

RingCentral promotes a healthy work-life balance by providing catered lunch and breakfast on a daily basis as well as a kitchen stocked with a variety of complimentary beverages and delicious snacks.

The RingCentral Application Security team is a part of a larger CISO team. The area of responsibility of the application security team includes enablement and support for RingCentral's Security Development Lifecycle (SDL) program.

This includes development of infosec governance artifacts i.e., policies, standards and procedures for secure software development at RingCentral, leading security architecture reviews and threat modelings, developing security requirements, SAST / DAST / SCA testing and integration of these tools into the build and deploy process, penetration testing, managing bug bounty program.

We are looking for a Security Application Engineer with a strong understanding of web and mobile application vulnerabilities, how they can be detected, exploited and remediated.

Responsibilities :

Consult developers on questions related to reports of security scanners*, which includes :

explain why an issue should be considered as a vulnerability

explain circumstances under which an issue might be exploitable

provide suggestions on how an issue can be remediated

Review and validate issues marked as potential false positives by developers; request additional clarifications where required.

Review and improve security scanners configurations :

review scanning rules in presets, make sure that important rules are enabled and irrelevant rules are disabled

make sure security scanners do not miss production code / applications, as well as do not scan testing-only code / applications

where possible and required, adjust scanning rules to improve their accuracy

collaborate with legal to make sure that license violation rules for open source software are configured correctly

Maintain access to security scanners.

Report breached security defects SLA.

Support risk exceptions process for the following cases :

violations of security defects SLA

deviations from security policies / standards (for example, releasing with a higher vulnerability level than defined as satisfactory)

Triage reports from the bug bounty platform, address them to responsible engineering teams

Triage reports from the external attack surface management platform, address them to responsible engineering teams

security scanners include, but are not limited to static application security testing (SAST), dynamic application security testing (DAST) and software composition analysis (SCA)

Qualifications :

Technical experience in product architecture, design, implementation

Expertise with product security design, review, implementation including threat modeling and risk assessment implications

To comply with U.S. federal government requirements, U.S. citizenship is required for this position

Extensive experience with web and mobile application testing- SAST / DAST, penetration testing

Secure design and implementation capabilities

Experience with open-source software including lifecycle management, vulnerability management tools

Excellent communication skills, both verbal and written; ability to condense complicated scenarios into simple, risk-based assessments, appropriately targeted for colleagues and upper management

Outstanding organizational and time management skills, desire to work within a highly collaborative team

Nice-To-Have :

Any WebRTC, Video and audio streaming

Video codecs

B.S. or equivalent in CS or EE

What we offer :

RingCentral offers all the work / life benefits you could ever want, (and none of the micromanagement.)

Comprehensive medical, dental, vision, disability, life insurance

Health Savings Account (HSA), Flexible Spending Account (FSAs) and Commuter Benefits

401K match and ESPP

Flexible PTO

Wellness programs including1 : 1 wellness coaching through TaskHuman and meditation guidance through Headspace

Paid parental leave and new parent gift boxes

Pet insurance

Employee Assistance Program (EAP) with counseling sessions available 24 / 7

Rocket Lawyer services that provide legal advice, document creation and estate planning

Employee bonus referral program

RingCentral's work culture is the backbone of our success. And don't just take our word for it : we are recognized as a Best Place to Work by Glassdoor, the Top Work Culture by Comparably and hold local BPTW awards in every major location.

Bottom line : We are committed to hiring and retaining great people because we know you power our success.

About RingCentral :

RingCentral, Inc. (NYSE : RNG) is a leading provider of business cloud communications and contact center solutions based on its powerful Message Video Phone (MVP) global platform.

More flexible and cost effective than legacy on-premises PBX and video conferencing systems that it replaces, RingCentral empowers modern mobile and distributed workforces to communicate, collaborate, and connect via any mode, any device, and any location.

RingCentral is headquartered in Belmont, California, and has offices around the world. If you are hired in Colorado, the compensation range for this position is between $120,000 and $150,000.

If you are hired in Belmont, the compensation range for this position is between $140,000 and $170,000.

RingCentral is an equal opportunity employer that truly values diversity. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

We are committed to providing reasonable accommodations for individuals with disabilities during our application and interview process.

If you require such accommodations, please click on the following link to learn more about how we can assist you.

LI-IG1

16 days ago
Related jobs
RingCentral
Fort Worth, Texas
Remote

It’s designed to fit the business needs of our customers, orchestrated to be accurate and precise, and built on the same open platform principles we apply to our core software solutions. This role can be based 100% remote, or as a hybrid employee based at our Belmont CA, Denver CO, or Dallas TX offi...

Promoted
Splunk Inc
TX, United States
Remote

This role is eligible for a competitive benefits package which includes medical, dental, vision, a 401(k) plan and match, paid time off and much more! Learn more about our comprehensive benefits and wellbeing offering at https://splunkbenefits. You can choose to work from a Splunk location or you ca...

RingCentral
Fort Worth, Texas
Remote

This role can be 100% remote, or a hybrid role based at one of our offices in Denver CO, Dallas TX, or Belmont CA. Coordinate with departments at multiple levels as required to ensure business objectives within FedRAMP Continuous Monitoring are achieved. Collaborate with team members to help manage ...

Promoted
Vaco
Fort Worth, Texas
Remote

The ads will be usable for the client's ad network and are viewed by our users/advertisers. Time management skills: must be able to perform tasks quickly and accurately. Knowledge of YouTube, Google Adwords/Ad products is a plus. The individual may also be eligible for discretionary bonuses. ...

RingCentral
Fort Worth, Texas
Remote

This role can be 100% remote in the USA, or a hybrid employee based at one of our main offices in Belmont CA, Denver CO or Dallas TX. Cloud Automation Engineer, Operations:. RingCentral’s Infrastructure Operations team is responsible for monitoring, maintaining and upgrading the backend infrastructu...

Splunk Inc
Texas, United States
Remote

You can choose to work from a Splunk location or you can be in any US time zone and work with the rest of the team around the globe. We trust our colleagues to be responsible with their time and commitment, and believe that balance helps cultivate an outstanding environment. As the Software Engineer...

Zillion Technologies, Inc.
Fort Worth, Texas
Remote

US citizens / GC Holders / GC EAD's ONLY. Effective knowledge of federal and state leave and disability laws related to benefits, HIPPA, FMLA, ADA and substance abuse. Location : Remote and onsite twice a week ( Vienna, VA). Advanced skill presenting findings, conclusions, alternatives and informati...

Connections IT Services LLC
Fort Worth, Texas

The Web Application Security team collaborates with application owners, architects, and developers in order to integrate security tools such as web application firewalls and bot mitigation to protect our client’s websites and mobile apps. This individual is also responsible for collaborating with ap...

GM Financial
Arlington, Texas

Reporting directly to the CEO, our Cybersecurity team enjoys unprecedented support to deliver the highest level of security capabilities using cutting edge technologies and automating mundane tasks, allowing our teams to focus on interesting and rewarding security work. Security technologies may inc...

USA7 DXC Technology Services LLC
ANY CITY,TX,USA
Remote

Understands customer business by actively researching customer to determine business issues. Cultivates key trusted-advisor relationships with senior level IT executives demonstrating an understanding of key business challenges within customer markets and how Company technology-enabled business solu...