Application Security Tooling Engineer

Box
·
Posted: 
August 25, 2023
·
Onsite
Job Commitment
Full-time
Job Commitment
Mid Level
Job Function
Dev & Engineering
Salary
N/A
Job Commitment
Full-time
Experience Level
Mid Level
Workplace Type
Onsite
Job Function

This job is closed

We regret to inform you that the job you were interested in has now been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

About the position

Box is seeking an engineer who specializes in onboarding and optimizing security scanning tools. The ideal candidate will have experience with dynamic, static, and open source application security testing, as well as API and container security scanning. They will be responsible for enhancing and automating the testing process, reducing false positives, and developing strategies for vulnerability verification. This role requires a strong understanding of secure engineering practices and the ability to communicate effectively with both technical and non-technical stakeholders.

Responsibilities

- Own and propose data-driven enhancement strategies for dynamic (DAST), static (SAST), open source application security testing (SCA), API security scanning, and container security scanning - Troubleshoot and continuously improve security scanning tools - Provide thought leadership in security tool automation, optimization, application vulnerability management, and strategies for automated risk reduction - Create architecture design for tool integrations and implement tooling within CI/CD pipeline - Develop strategies to automate software security vulnerability verification throughout the development process - Build security scanning tools to automate the discovery of vulnerabilities not available in existing tooling - Analyze designs and implementation of security controls in Automated DevOps environments and pipelines - Understand secure engineering best practices and articulate problem statements and propose solutions - Have a growth mindset and focus on continuous functional improvements - Curiosity in looking at problem statements and providing clear solutions.

Requirements

- Experience in onboarding and optimizing SAST, DAST, and SCA tools - Familiarity with automated scanning methodologies and ability to build scanning tools - Ability to onboard, optimize, and automate testing solutions for security vulnerabilities - Proficiency in optimizing output from security scanning tools to reduce false positives - Knowledge of data-driven enhancement strategies for dynamic, static, open source application security testing, API security scanning, and container security scanning - Thought leadership in security tool automation, optimization, and application vulnerability management - Experience in creating architecture design for tool integrations and implementing tooling within CI/CD pipeline - Ability to automate software security vulnerability verification throughout the development process - Proficiency in building security scanning tools to automate discovery of vulnerabilities - Understanding of security controls in Automated DevOps environments and pipelines - Strong understanding of secure engineering best practices - Ability to articulate problem statements and propose solutions to both technical and non-technical audiences - Passion for secure software development and building high-quality applications and services - Growth mindset and focus on continuous functional improvements - Curiosity and ability to analyze problem statements clearly

Benefits

- Opportunity to work with a market leader in Cloud Content Management - Chance to contribute to the digital transformation of enterprise organizations - Single platform for secure content management, collaboration, and workflow - Trusted by 69% of the Fortune 500 companies - Ownership and proposal of data-driven enhancement strategies - Thought leadership in security tool automation and application vulnerability management - Architecture design and implementation within CI/CD pipeline - Automation of software security vulnerability verification - Opportunity to build security scanning tools - Analysis of security controls in Automated DevOps environments and pipelines - Opportunity to work with a passionate and growth-minded team - Exposure to cyber security through conferences, webinars, and personal projects - Strong understanding of past, current, and emerging security exploits - Equal opportunity employer that values diversity and does not discriminate

Job Application Resources

No items found.

More Openings at Box

Box
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Box
Web Design
Web Design
Web Design
Web Design
Other
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Senior
·
101-250
Employees
This is some text inside of a div block.
Box
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
HR
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Box
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
HR
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Box
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.
Box
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
HR
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.

Similar Jobs

Reltio
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Senior
·
101-250
Employees
This is some text inside of a div block.
Reddit
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Manager
·
101-250
Employees
This is some text inside of a div block.
Recorded Future
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Manager
·
101-250
Employees
This is some text inside of a div block.
Reddit
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Manager
·
101-250
Employees
This is some text inside of a div block.
Recursion
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Director
·
101-250
Employees
This is some text inside of a div block.
Pure Storage
Web Design
Web Design
Web Design
Web Design
Onsite
·
Full-time
·
Dev & Engineering
$
320,000
-
$
360,000
/Year
·
Mid Level
·
101-250
Employees
This is some text inside of a div block.

Box

Box is an online file sharing and cloud content management service offering unlimited storage, custom branding, and administrative controls.
Location
Redwood City, CA
Company Size
1,001-5,000
Workplace Type
Industries
Cloud Computing
Enterprise Software
File Sharing
Web Hosting
Hardware
Internet Services
Software
Open Roles
11
Less details
Create a Tailored Resume for this Role in Minutes
Start Building for Free

Box

Box is an online file sharing and cloud content management service offering unlimited storage, custom branding, and administrative controls.
Company Overview

Box is an online file sharing and cloud content management service offering unlimited storage, custom branding, and administrative controls.

Benefits
  • Equal opportunity employer
  • Values diversity
  • Committed to not discriminating on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability, and any other protected ground of discrimination under applicable human rights legislation
  • Personnel Privacy Notice and Supplemental Personnel and Candidate Privacy Notice provided for information protection
Less details

Want Jobs in Your Inbox?

Sign up for the Teal newsletter and get career guidance and new jobs weekly!
Thank you! Your submission has been received!
Oops! Please provide a correct email address