Application Security Engineer

placeLos Angeles calendar_month 

Make Your Mark::

In collaboration with development and architecture teams, the Application Security Engineer will define security controls in BlackLine's software, identify and prioritize vulnerabilities in the application, databases, and related infrastructure components, provide resolution guidance to the development team, perform source code reviews, conduct application security tests, monitor security events and audit trails, and respond to incidents.

This position will also be responsible for educating and mentoring developers on secure coding and application security best practices.

You'll Get To::

  • Identify risks and areas of exposure in applications developed and/or used by BlackLine.
  • Perform security reviews of source code, stored procedures, and server/service configurations.
  • Define and document application security requirements for BlackLine applications.
  • Oversee development of security components throughout all stages of the SDLC.
  • Perform manual and automated security testing of BlackLine applications.
  • Monitor application logs and audit trails.
  • Monitor industry trends and threat landscape and recommend necessary controls or countermeasures.
  • Educate developers on secure coding techniques and security best practices.
  • Participate in development of security policies, standards, and processes.
  • Participate in incident handling and perform application-related forensics activities.
  • Perform other duties as assigned.

What You'll Bring::

  • Bachelor's degree in Computer Science or related field.
  • 2+ years of hands-on application security experience.
  • Hands-on development experience and thorough understanding of object-oriented programming.
  • Advanced knowledge of web application technologies, MVC, Ajax, XML, SOA, SSL, web-related protocols and services.
  • Intermediate knowledge of MS SQL.
  • Basic knowledge of other commonly-used RDBMS.
  • Ability to identify security vulnerabilities from source code reviews and testing.
  • Knowledge of encryption technologies, secure communications, and secure credentials management.
  • Advanced experience with at least one scripting language (e.g.: Perl, Python).
  • Intermediate proficiency with C/C++ or Java.
  • Advanced knowledge of common application vulnerabilities, (e.g.: XSS, CSRF, SQL injection, cookie/header/encoding manipulation, input/output validation, session replay).
  • Intimate familiarity with web application testing tools (eg: Burp, Parox, Fiddler, Havij, netcat).
  • Ability to define application security requirements and build secure web application solutions.
  • Advanced written and verbal communication skills including ability to present technical subjects to non-technical audiences.
  • Strong work ethic, attention to detail, and organizational skills.
  • Ability to multi-task and manage priorities in a fast-paced environment.
  • Ability to collaborate in a team and work independently.
  • Conceptual understanding of software development principles and SDLC models.
  • Intermediate proficiency with the Microsoft Office suite.
  • Windows and Linux operating systems knowledge at advanced user level.

We’re Even More Excited If You Have::

  • Thorough understanding of Java, C#, ASP.NET.
  • Experience with lower-level languages (Assembly), debug and reverse-engineering tools (IDA, etc.).
  • Ability to write proof-of-concept exploits.
  • Agile experience.

Thrive at BlackLine Because You Are Joining::

  • A technology-based company with a sense of adventure and a vision for the future. Every door at BlackLine is open. Just bring your brains, your problem-solving skills, and be part of a winning team at the world's most trusted name in Finance Automation!
  • A culture that is kind, open, and accepting. It's a place where people can embrace what makes them unique, and the mix of cultural backgrounds and varying interests cultivates diverse thought and perspectives.
  • A culture where BlackLiner's continued growth and learning is empowered. BlackLine offers a wide variety of professional development seminars and inclusive affinity groups to celebrate and support our diversity.

BlackLine is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity or expression, race, ethnicity, age, religious creed, national origin, physical or mental disability, ancestry, color, marital status, sexual orientation, military or veteran status, status as a victim of domestic violence, sexual assault or stalking, medical condition, genetic information, or any other protected class or category recognized by applicable equal employment opportunity or other similar laws.

BlackLine recognizes that the ways we work and the workplace itself has shifted. We innovate in a workplace that optimizes a combination of virtual and in-person interactions to maximize collaboration and nurture our culture. Candidates who live within a reasonable commute to one of our offices will work in the office at least 2 days a week.

Salary Range:: USD $120,000.00 - USD $160,000.00

apartmentPlanetArtplaceCalabasas, 26 mi from Los Angeles
members in two company-owned offices in China, as well as in Europe. Job Overview PlanetArt is looking for a Senior Application Security Engineer to support the company’s Information Security department. The successful candidate will be an integral part...
placeSan Marino, 13 mi from Los Angeles
Management will participate in establishing and maintaining a corporate wide Cyber Security management program to ensure that information assets are adequately protected. We are seeking a highly skilled Application Security Engineer with strong background...
apartmentBayMark Health ServicesplaceLos Angeles
Part Time Dispensing Nurse - LPN/LVN BAART Program is looking for a detail oriented and empathetic Licensed Practical Nurse / Licensed Vocational Nurse to dispense prescribed medications as part of a treatment team in partnership with Physicians and...