Ventura Foods-posted 4 months ago
$111,458 - $174,710/Yr
Full-time • Senior
Brea, CA
1,001-5,000 employees

Ventura Food's Cyber Security team is looking for a Senior Application Security Engineer who will be responsible for ensuring consistent Secure Software Development Lifecycle practices by working closely with product engineering teams to improve the security of Ventura Foods applications.

  • Develop and implement a Threat Modeling program that drives a Secure by Design SDLC process while working to train and educate stakeholders.
  • Identify, document, rate, and communicate vulnerabilities in terms of Confidentiality, Integrity and Availability.
  • Undertake static and dynamic application security assessments for Ventura Foods Entities.
  • Assess applications for vulnerabilities using manual and automated methods, threat modeling, code reviews, SAST/DAST/Open-Source tool scans, penetration testing.
  • Develop, curate, and improve application security detections (static and dynamic) to identify vulnerabilities at scale.
  • Facilitate conversations between developers and security teams to further the security of Ventura Foods software.
  • Mentor and train developers on secure code best practices.
  • 8 years of work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD).
  • 3+ years of relevant application security experience.
  • Deep understanding of OWASP Top 10 and CWE 25; with experience in implementing remediation strategies.
  • Deep knowledge and experience in using SAST, DAST and Open-Source Vulnerability Scanning tools.
  • Hands-On experience with any programming language (React, C#, JavaScript, Java, Go, Python, etc).
  • Well versed in web application design, penetration testing, application risk assessment and risk categorization.
  • Well versed with driving and implementing DevSecOps practices to successfully integrate security into a developer's world.
  • Ability to effectively present and communicate security threats and risks to ANY audience and impress upon them the mitigation techniques and strategies.
  • Solid problem solving and analytical skills; able to quickly digest any issue/problem encountered and recommend an appropriate solution.
  • Experience with Burpsuite, OWASP Zap, SNYK.io, Metasploit, InsightVM, StackHawk.
  • Medical, Prescription, Dental, & Vision – coverage beginning on your 1st day for eligible employees.
  • Profit Sharing and 401(k) matching (after eligible criteria is met).
  • Paid Vacation, Sick Time, and Holidays.
  • Employee Appreciation Events and Employee Assistance Programs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service