Senior Security Engineer

Overview
Job Description

AutoFi is the leading provider of digital commerce technology that powers the sales and finance experiences for the most innovative brands and dealers in automotive. The AutoFi platform enables a more transactional buying experience with $4B in funded loans processed through AutoFi annually. AutoFi’s dynamic selling platform empowers dealers to sell vehicles more efficiently and profitably, both online and in the showroom. We are funded for years of future growth and backed by investors including Crosslink Capital, Santander Holdings USA, SVB Financial Group, Ford, BMW iVentures, and Mouro Capital.
Our team is diverse – spread out across the U.S. and Canada, we have backgrounds in finance and technology as well as deep experience in all areas of the auto space. We’re empathetic, gritty, curious, and humble owners of this business and are supported by some of the biggest names in the auto and financial industries as commercial partners. We’ve never been more excited about the opportunity in front of us to help transition the auto industry from offline to online.

In addition to competitive compensation plans, we offer the following benefits & perks:

  • $160,000 – $190,000 salary
  • Unlimited PTO
  • Comprehensive health, vision & dental plans for you and your family
  • Latest technology & software tools including company-paid MacBook computer
  • Remote office
  • Opportunity to quickly grow your career

Responsibilities:

  • Design and implement security practices and standards for security-related activities in the software engineering process (e.g. threat modeling and secure coding practices)
  • Implement tooling to support DevSecOps processes including SAST, DAST, IAST, and SCA
  • Assess infrastructure, web, and application environments to help identify & prioritize risks
  • Lead RED team activities, including both in-house and 3rd-party penetration tests
  • Drive first-level triage and resolution of Bug Bounty submissions

Required Qualifications:

  • Experience with static & dynamic analysis, security code reviews, and application security frameworks (e.g. OWASP)Strong understanding of SAST, DAST, IAST, and SCA tooling
  • Experience with web & cloud security controls/frameworks
  • Minimum of 6 years of experience designing secure products and engineering security functions
  • Familiarity with network and web application protocols (HTTP/S, SAML 2.0, OAuth, Rest APIs)
  • Industry experience building data-driven applications with Javascript, Node.js, and NoQSL
  • Minimum BS/BA in Cybersecurity, Information Security, Computer Science, or relevant degree, with the ability to demonstrate sophisticated logical thought processes
  • CISSP or similar certifications (SANS, CEH, AWS Security)
  • Comfortable in a fast-paced start-up environment.

Preferred Qualifications:

  • Experience with common threat modeling frameworks (STRIDE, DREAD, etc).
  • Experience with cloud-based Web Application Firewall solutions
  • Experience running or participating in bug bounty programs
  • Familiarity with ethical hacking and penetration testing tools & methodologies
  • Experience with AWS security best practices and native controls & services
  • Prior Automotive or Fin Tech experience
AutoFi is an equal opportunity employer. Individuals seeking employment are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, sexual orientation, gender identity or other protected status under all applicable laws, regulations, and ordinances.

Receive jobs from , on your whatsapp

Stay up to date with job opportunities, directly on your WhatsApp!
Receive instant notifications about the latest job openings in your region

Anúncio

Related Jobs

Related Jobs to Senior Security Engineer

Freelance English Transcriptionist (AMER/EMEA)
273 days ago

We are seeking a skilled and experienced Freelance Transcriptionist to join our team. As a Freelance Transcrip...

Technical Writer - Security
278 days ago

We are looking for a Technical Writer to join our tech client’s commercial enterprise services team and wr...

Manager, Communications - People Team
296 days ago

We are seeking a dynamic and experienced Communication Manager to join our team and lead all internal team mem...

Senior or Staff Frontend Engineer - React
295 days ago

We’re looking for an experienced full-time (or part-time) Frontend Software Engineer to join our engin...

Clinical Care Navigator
296 days ago

Lyra is transforming mental health care through technology with a human touch to help people feel emotional...

HR Business Partner
286 days ago

Headway’s mission is a big one – to build a new mental health care system everyone can access. We’v...

Healthcare Customer Service Representative
283 days ago

We’re obsessed with growth. From enabling companies to flourish, to helping careers bloom. SupportNinja wa...

Business Analyst
262 days ago

Piper Companies is seeking a Business Analyst to join a global investment company out of Wayne, PA. This...

Account Executive
280 days ago

Adentro was created to solve one of the most important problems in the modern economy—the majority of consu...

Customer Experience and Insights Manager, Enterprise
284 days ago

Upwork ($UPWK) is the world’s work marketplace. We serve everyone from one-person startups to large, Fortune...

Software Engineer, Platform
297 days ago

Branch is on a mission to help working Americans grow financially. We do this by helping companies accelerate ...

Senior Product Manager
279 days ago

Are you passionate about building products from scratch? Are you ready to manage a product that influences h...

Back-end Developer (Node.js)
270 days ago

The IT сompany Andersen invites a Back-end Developer (Node.js) to work on a large-scale project for our USA ...

Senior CRM Manager
267 days ago

Discord is about giving people the power to create space to find belonging in their lives. We want to make it ...

Account Executive
279 days ago

We believe time is our most precious resource and our mission is to help leaders shift their time from things ...

Account Executive, Enterprise
291 days ago

We are looking for an Account Executive, Enterprise to join our dynamic team of creatives, engineers, market...

Customer Support Frontline Specialist
265 days ago

We are Semrush, a global IT company developing our own product – a platform for digital marketers. New sta...

Principal SEO
222 days ago

We are looking for a Principal SEO to guide the strategy for the company’s organic growth. This role involve...

Consumer Support Specialist
Consumer Support Specialist
236 days ago

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are a...

Account Executive, Mid Market
205 days ago

We are looking for a seasoned Mid-Market Account Executive to continue driving LeadIQ’s suite of capabilitie...

Enterprise Account Executive
296 days ago

From the very beginning, SugarCRM had a unique vision: to offer a different kind of Customer Relationship Man...

Software Developer
Software Developer
240 days ago

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are a...

Principal Site Reliability Engineer
296 days ago

Hi, we’re DuckDuckGo, the Internet privacy company for everyone who wants to take back their privacy now. Fo...

Software Engineer
296 days ago

Argyle is a fast-growing, remote-first Series B startup solving a systemic data problem. Underneath the consum...