Senior Application Security Engineer

1 month ago


Lehi, United States tapwage Full time

Weave’s Senior Application Security Engineer will--in partnership with all of Weave’s development teams throughout the company--develop, execute, and operate a scalable and effective secure development lifecycle.

The right candidate will have experience building relationships of trust with technical team members, experience deploying, tuning, and reviewing output produced by static code analysis tools, dependency code scanning tools, dynamic code scanning tools, and other application security tools, and performing threat models and application security reviews of the products Weave is developing. They must understand their role in identifying risks, mitigating risks, and protecting the customer experience against threats that might compromise the integrity, availability, and confidentiality of customer data. They must possess a healthy level of urgency towards and passion for employing good security practices in code development.

- This position will be hybrid working part of the week out of our Lehi, UT HQ
- Reports to: Head of Security

What you will Own:

- Collaborating closely with product and development team members during the software development lifecycle to identify security risks.
- Acutely identifying vulnerabilities introduced during product development.
- Deploying, tuning, triaging, and reviewing output produced by static code analysis tools, dependency code scanning tools, dynamic code scanning tools, and other application security tools.
- Shepherding the inclusion and operation of such tools in CI/CD pipelines.
- Holding team members accountable to timelines for mitigating identified application security risks.
- Facilitating thorough application security reviews and threat modeling exercises.
- Engaging with third party penetration testing organizations to facilitate effective security tests against Weave and its products.
- Optimizing the application security review process to meet the fast-pace product development at Weave.
- “Spidering” the organization--turning over rocks to identify untreated application security risks.
- Providing training to Weave’s development team members to build confidence in secure development practices.
- Enhancing the awareness in good security practices throughout the organization.
- Acting as the resident application security subject matter expert for all team members to engage for advice and guidance.
- Working closely with designers and engineers to deliver secure experiences to our customers.
- Defining measurable outcomes and maintaining focus on those outcomes throughout the execution of the security roadmap.

What You Will Need to Accomplish the Job:

- 8+ years experience as a full-time security researcher and/or application security engineer.
- Possess willingness to go “Mr. Robot” on all Weave systems, processes, and organizations to help identify meaningful and exploitable risks.
- Experience assessing the security configuration and hardness of systems, databases, network devices, applications, and processes used within an organization.
- Ability to write code to test vulnerabilities in code produced by and systems operated by Weave.
- Demonstrate strong integrity so as to not compromise the trust of Weave customers.
- Ability to perform security assessments, penetration tests, and other vulnerability scans on Weave systems to identify, assess, prioritize, remediate, and monitor the security of Weave systems.
- Experience working with security operations analysts to help more effectively identify nefarious activity performed by hackers.
- Knowledge of effective threat modeling skills and techniques.
- Knowledge of and experience with setting up, configuring, running, triaging, and tuning static code analysis, dependency code scanning, and dynamic code scanning tools.
- Possess strong understanding of AWS and GCP and core services provided by AWS and GCP.
- Have a strong working knowledge of Linux, Windows, and other common computer technologies.
- Possess understanding of good security practices.
- Demonstrate strong, effective communication skills--both written and verbal.

What Will Make Us Love You

- A deep understanding of application security practices, secure code development, and application security tooling.
- The demonstrative capability to do the responsibilities described above.
- A strong desire to work at Weave because you are interested in our products, what we are working on, and who you will be working with.
- A track record of achievements in your past roles and companies.
- Demonstrated history of securing SaaS products.
- Ability to remove ambiguity and distill what matters and what doesn’t.
- A sense of humor and ability to have fun while working hard

Weave is an equal opportunity employer that is committed to diversity and inclusion. We welcome anyone who is hungry to learn, problem-solve and progress regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, or other applicable legally protected characteristics.

If you have a disability or special need that requires accommodation, please let us know.



  • Lehi, Utah, United States tapwage Full time

    Weave's Senior Application Security Engineer willin partnership with all of Weave's development teams throughout the companydevelop, execute, and operate a scalable and effective secure development lifecycle.The right candidate will have experience building relationships of trust with technical team members, experience deploying, tuning, and reviewing output...


  • Lehi, United States Weave Full time

    Weave’s Senior Application Security Engineer will--in partnership with all of Weave’s development teams throughout the company--develop, execute, and operate a scalable and effective secure development lifecycle.  The right candidate will have experience building relationships of trust with technical team members, experience deploying, tuning, and...


  • Lehi, United States Weave Full time

    Job DescriptionJob DescriptionWeave's Senior Application Security Engineer will--in partnership with all of Weave's development teams throughout the company--develop, execute, and operate a scalable and effective secure development lifecycle. The right candidate will have experience building relationships of trust with technical team members,...


  • Lehi, United States Weave Full time

    Weave's Senior Application Security Engineer willin partnership with all of Weave's development teams throughout the companydevelop, execute, and operate a scalable and effective secure development lifecycle. The right candidate will have experience building relationships of trust with technical team members, experience deploying, tuning, and reviewing...


  • Lehi, United States Podium Full time

    At Podium, our mission is to help local businesses win. Our lead conversion platform, powered by AI and integrations, helps local businesses convert leads faster, communicate easier, and make more sales. Every day, thousands of local businesses utilize our review management, communication, marketing, and payments products.  Our work and focus on helping...


  • Lehi, United States Delinea Full time

    About Us: Delinea is a leading provider of privileged access management (PAM) solutions for the modern, hybrid enterprise. We make privileged access more accessible by eliminating complexity and defining the boundaries of access to reduce risk, ensure compliance, and simplify security. Delinea empowers thousands of customers worldwide, including over half...


  • Lehi, Utah, United States Lendio Full time

    What you will own: Provides architectural guidance on best practices regarding security in software development, shared services, user interface design frameworks, server side development, integrations, tools, and technologies Drives and guides the specification and realization of a security architecture, with decisions driven by balancing security risks...


  • Lehi, United States Lendio Full time

    What you will own: Provides architectural guidance on best practices regarding security in software development, shared services, user interface design frameworks, server side development, integrations, tools, and technologies Drives and guides the specification and realization of a security architecture, with decisions driven by balancing security risks...


  • Lehi, United States Weave Full time

    Weave is growing the Frontend Operations team and seeking a collaborative and adaptable Senior Frontend Platform Engineer. In this position you will take charge of frontend development by optimizing processes, enhancing security, and fostering innovation. You will collaborate closely with developers to drive productivity and shape the future of frontend...


  • Lehi, Utah, United States Weave Full time

    Weave is growing the Frontend Operations team and seeking a collaborative and adaptable Senior Frontend Platform Engineer. In this position you will take charge of frontend development by optimizing processes, enhancing security, and fostering innovation. You will collaborate closely with developers to drive productivity and shape the future of frontend...


  • Lehi, United States Weave Full time

    Weave is growing the Frontend Operations team and seeking a collaborative and adaptable Senior Frontend Platform Engineer. In this position you will take charge of frontend development by optimizing processes, enhancing security, and fostering innovation. You will collaborate closely with developers to drive productivity and shape the future of frontend...


  • Lehi, Utah, United States Entrata Full time

    Since its inception in 2003, driven by visionary college students transforming online rent payment, Entrata has evolved into a global leader serving property owners, managers, and residents. Honored with prestigious awards like the Utah Business Fast 50, Silicon Slopes Hall of Fame - Software Company - 2022, Women Tech Council Shatter List, our comprehensive...


  • Lehi, United States Entrata Full time

    Since its inception in 2003, driven by visionary college students transforming online rent payment, Entrata has evolved into a global leader serving property owners, managers, and residents. Honored with prestigious awards like the Utah Business Fast 50, Silicon Slopes Hall of Fame - Software Company - 2022, Women Tech Council Shatter List, our comprehensive...

  • Senior Cloud Engineer

    1 month ago


    Lehi, United States NetDocuments Full time

    Description NetDocuments is the world's #1 trusted cloud-based content management and productivity platform that helps legal professionals do their best work. We strive to win together through passionate hard work, exploring new things and recognizing every interaction matters. NetDocuments provides rewarding career growth in an inclusive, diverse...


  • Lehi, United States Young Living Essential Oils, LC Full time

    Become a part of the Young Living family! Young Living is a universally known, household name that is revered and respected for the countless benefits it brings to humanity. Propelled by the world's purest essential oils and oil-infused products, along with our passionate commitment to empowering individuals to whole-life wellness, we champion the modern...


  • Lehi, United States SafeStreetsUSA Full time

    Description Position Requirements EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law. Location UT - Lehi Category...


  • Lehi, Utah, United States Pure Storage Full time

    Join our Team as a Senior Escalation Engineer at Pure StorageAre you ready to be part of building the future? At Pure Storage, we are leaders in redefining the storage experience and empowering innovators by simplifying how people consume and interact with data. With a customer-first culture and commitment to innovation, we are looking for individuals who...


  • Lehi, United States Delinea Full time

    About Us: Delinea is a leading provider of privileged access management (PAM) solutions for the modern, hybrid enterprise. We make privileged access more accessible by eliminating complexity and defining the boundaries of access to reduce risk, ensure compliance, and simplify security. Delinea empowers thousands of customers worldwide, including over half...


  • Lehi, United States Cypress HCM Full time

    We have an exciting opportunity for a Senior Software Engineer with the top leading multimedia and creative software company in the world. DevOps engineer to build innovative applications around ServiceNow ITOM Discovery and CMDB services. Responsibilities:Provide complete and accurate enterprise-wide, cross-cloud CMDB data to strengthen our critical...


  • Lehi, United States Cypress HCM Full time

    We have an exciting opportunity for a Senior Software Engineer with the top leading multimedia and creative software company in the world. DevOps engineer to build innovative applications around ServiceNow ITOM Discovery and CMDB services. Responsibilities:Provide complete and accurate enterprise-wide, cross-cloud CMDB data to strengthen our critical...