Security Application Engineer

2 weeks ago


Belmont, United States RingCentral Full time
Security Application Engineer, DAST Scanning (Belmont CA, Denver CO, Dallas TX)
The RingCentral environment is dynamic, success-driven, team-oriented and committed to providing world class service for its customers. Do you have the ability to thrive in a fast-paced environment? We are looking for candidates with an entrepreneurial spark
We're not a phone company; we're a cloud business-solutions provider.

We've thrown out the old PBX along with its rigid rules and eliminated the complexity and unnecessary expense of managing business communications the old way.

RingCentral fosters career development and provides leadership training, education, workshops, and coaching for all employees.

RingCentral promotes a healthy work-life balance by providing catered lunch and breakfast on a daily basis as well as a kitchen stocked with a variety of complimentary beverages and delicious snacks.

The RingCentral Application Security team is a part of a larger CISO team.

The area of responsibility of the application security team includes enablement and support for RingCentral's Security Development Lifecycle (SDL) program.

This includes development of infosec governance artifacts i.e., policies, standards and procedures for secure software development at RingCentral, leading security architecture reviews and threat modelings, developing security requirements, SAST/DAST/SCA testing and integration of these tools into the build and deploy process, penetration testing, managing bug bounty program.

We are looking for a Security Application Engineer with a strong understanding of web and mobile application vulnerabilities, how they can be detected, exploited and remediated.

Responsibilities:

Consult developers on questions related to reports of security scanners*, which includes:
⦁ explain why an issue should be considered as a vulnerability
⦁ explain circumstances under which an issue might be exploitable
⦁ provide suggestions on how an issue can be remediated
Review and validate issues marked as potential false positives by developers; request additional clarifications where required.

Review and improve security scanners configurations:
⦁ review scanning rules in presets, make sure that important rules are enabled and irrelevant rules are disabled
⦁ make sure security scanners do not miss production code/applications, as well as do not scan testing-only code/applications
⦁ where possible and required, adjust scanning rules to improve their accuracy
⦁ collaborate with legal to make sure that license violation rules for open source software are configured correctly
Maintain access to security scanners.
Report breached security defects SLA.

Support risk exceptions process for the following cases:
⦁ violations of security defects SLA
⦁ deviations from security policies/standards (for example, releasing with a higher vulnerability level than defined as satisfactory)
Triage reports from the bug bounty platform, address them to responsible engineering teams
Triage reports from the external attack surface management platform, address them to responsible engineering teams
Maintain security scanners deployed in production environment, which includes:
⦁ deploy new versions
⦁ patch security vulnerabilities
⦁ make sure security hardening benchmarks are met (such as CIS or STIG)
⦁ make sure other requirements for production deployment are met (logging, monitoring, backups, etc.)
* - security scanners include, but are not limited to static application security testing (SAST), dynamic application security testing (DAST) and software composition analysis (SCA)

Qualifications:

⦁ Technical experience in product architecture, design, implementation
⦁ Expertise with product security design, review, implementation including threat modeling and risk assessment implications
⦁ U.S citizenship required
⦁ Extensive experience with web and mobile application testing- SAST/DAST, penetration testing
⦁ Secure design and implementation capabilities
⦁ Experience with open-source software including lifecycle management, vulnerability management tools
⦁ Excellent communication skills, both verbal and written; ability to condense complicated scenarios into simple, risk-based assessments, appropriately targeted for colleagues and upper management
⦁ Outstanding organizational and time management skills, desire to work within a highly collaborative team

Nice-To-Have:

⦁ Any WebRTC, Video and audio streaming
⦁ Video codecs
⦁ B.S. or equivalent in CS or EE

What we offer:

RingCentral offers all the work/life benefits you could ever want, (and none of the micromanagement.)
⦁ Comprehensive medical, dental, vision, disability, life insurance
⦁ Health Savings Account (HSA), Flexible Spending Account (FSAs) and Commuter Benefits
⦁ 401K match and ESPP
⦁ Flexible PTO
⦁ Wellness programs including1:1 wellness coaching through TaskHuman and meditation guidance through Headspace
⦁ Paid parental leave and new parent gift boxes
⦁ Pet insurance
⦁ Employee Assistance Program (EAP) with counseling sessions available 24/7
⦁ Rocket Lawyer services that provide legal advice, document creation and estate planning
⦁ Employee bonus referral program
RingCentral's work culture is the backbone of our success.

And don't just take our word for it:
we are recognized as a Best Place to Work by Glassdoor, the Top Work Culture by Comparably and hold local BPTW awards in every major location

Bottom line:
We are committed to hiring and retaining great people because we know you power our success.

About RingCentral:

RingCentral, Inc

(NYSE:

RNG) is a leading provider of business cloud communications and contact center solutions based on its powerful Message Video PhoneTM (MVPTM) global platform.

More flexible and cost effective than legacy on-premises PBX and video conferencing systems that it replaces, RingCentral empowers modern mobile and distributed workforces to communicate, collaborate, and connect via any mode, any device, and any location.

RingCentral is headquartered in Belmont, California, and has offices around the world. If you are hired in Colorado, the compensation range for this position is between $120,000 and $150,000. If you are hired in Belmont, the compensation range for this position is between $140,000 and $170,000.
RingCentral is an equal opportunity employer that truly values diversity.

We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

We are committed to providing reasonable accommodations for individuals with disabilities during our application and interview process.

If you require such accommodations, please click on the following link to learn more about how we can assist you.



  • Belmont, United States RingCentral Full time

    Security Engineer, Vulnerability Management: (Belmont CA, Denver CO, Dallas TX)RingCentral is the global leader in cloud-based communications and collaboration software. We are fundamentally changing the nature of human interaction—giving people the freedom to connect powerfully and personally from anywhere, at any time, on any device.As part of the...

  • Firmware Engineer

    1 week ago


    Belmont, United States Avegant Full time

    About Avegant: Avegant is a well-funded, venture-backed technology company developing the next-generation of light field displays.  We are pioneering innovative hardware and software solutions that will forever change how we learn, play, work and interact with each other. We’ve won multiple awards, our team is best in class, and we’re just getting...


  • Belmont, United States Brahma Consulting Group Full time

    Associate Embedded Software EngineerWe are seeking a talented Software Engineer with an aptitude towards developing robust, high volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area. You should have at least 1 year of working...


  • Belmont, United States Brahma Consulting Group Full time

    Associate Embedded Software EngineerWe are seeking a talented Software Engineer with an aptitude towards developing robust, high volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area. You should have at least 1 year of working...


  • Belmont, United States Brahma Consulting Group Full time

    Associate Embedded Software EngineerWe are seeking a talented Software Engineer with an aptitude towards developing robust, high volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area. You should have at least 1 year of working...


  • Belmont, United States ZaiNar, Inc. Full time

    Associate Embedded Software Engineer We are seeking a talented Software Engineer with an aptitude for developing robust, high-volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area, well-funded startup. You should have at least 1...


  • Belmont, United States ZaiNar, Inc. Full time

    Associate Embedded Software Engineer We are seeking a talented Software Engineer with an aptitude for developing robust, high-volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area, well-funded startup. You should have at least 1 year...


  • Belmont, United States ZaiNar Full time

    Associate Embedded Software Engineer We are seeking a talented Software Engineer with an aptitude for developing robust, high-volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area, well-funded startup. You should have at least 1...


  • Belmont, United States ZaiNar Full time

    Associate Embedded Software Engineer We are seeking a talented Software Engineer with an aptitude for developing robust, high-volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area, well-funded startup. You should have at least 1...


  • Belmont, United States ZaiNar Full time

    Associate Embedded Software Engineer We are seeking a talented Software Engineer with an aptitude for developing robust, high-volume embedded software solutions. You will be writing applications on IoT devices that provide 3D indoor positioning using RF and communicate to cloud applications for a Bay Area, well-funded startup. You should have at least 1...


  • Belmont, United States ZaiNar Full time

    ABOUT USAt ZaiNar, we're leveraging patented innovations using software-defined radios and advanced signal processing to build revolutionary new products in Positioning, Navigation, and Timing. Our imaginative team has developed the world's most precise network time synchronization and distribution capabilities – wirelessly syncing to sub-nanosecond...


  • Belmont, United States Avegant Full time

    About Avegant: Avegant is a well-funded, venture-backed technology company developing the next-generation of light field displays. We are pioneering innovative hardware and software solutions that will forever change how we learn, play, work and interact with each other. We’ve won multiple awards, our team is best in class, and we’re just getting...


  • Belmont, United States Avegant Full time

    About Avegant: Avegant is a well-funded, venture-backed technology company developing the next-generation of light field displays.  We are pioneering innovative hardware and software solutions that will forever change how we learn, play, work and interact with each other. We’ve won multiple awards, our team is best in class, and we’re just getting...


  • Belmont, United States Sonic Automotive, Inc. Full time

    Job Description The Automotive Detailer / Auto Detailer clean and refurbish new and used automobiles. Duties and Responsibilities * Wash vehicle exterior, using cleaning solution, water, cloths, and brushes. * Apply wax to auto body, and wipe or buff surface to protect surface and preserve shine, using cloth or buffing machine * Vacuum interior or...


  • Belmont, United States Sonic Automotive Full time

    Job DescriptionJob DescriptionCompany DescriptionAt Autobahn Motors a Sonic Automotive family dealership, you'll find the opportunities, resources, and support you need to grow and develop professionally. Our 100+ dealerships are concerned with more than moving inventory; they're committed to your success and invested in your future. So read on,...


  • Belmont, United States Town of Belmont Full time

    Department of Public WorksGrade 19 – non-union – exempt – full-time – 40 hoursComplete benefit package$136,800 annual salary with signing bonusIn addition to performing the responsibilities associated with this role, will assist the Director of Public Works in planning, organizing, directing and administering all responsibilities of the DPW. In the...

  • Safety Coordinator

    15 hours ago


    Belmont, United States Syncot Plastics, LLC Full time

    Job Summary The Safety Coordinator will manage the organization’s safety and security programs and report to the Plant Manager.ResponsibilitiesWorks daily with plant employees, supervisors, and management to promote safe work practices and a safety awareness culture.Collaborates with management to develop, prepare, and implement safety and security...

  • Safety Coordinator

    1 day ago


    Belmont, United States Syncot Plastics, LLC Full time

    Job Summary The Safety Coordinator will manage the organization’s safety and security programs and report to the Plant Manager.ResponsibilitiesWorks daily with plant employees, supervisors, and management to promote safe work practices and a safety awareness culture.Collaborates with management to develop, prepare, and implement safety and security...


  • Belmont, United States Alans Group Full time

    Job DescriptionJob DescriptionTitle: Manager, Technology Location: Belmont Park (Elmont · NY)Duration: Client full-timePosition SummaryWe are hiring a Manager of Technology.  The Manager of Technology reports directly to the Director of Technology.  The Manager of Technology is responsible for overseeing the IT infrastructure and cybersecurity within the...

  • Platform Architect

    1 week ago


    Belmont, United States Avegant Full time

    About Avegant: Avegant is a well-funded, venture-backed technology company developing the next-generation of light field displays.  We are pioneering innovative hardware and software solutions that will forever change how we learn, play, work and interact with each other. We’ve won multiple awards, our team is best in class, and we’re just getting...