Staff Application Security Engineer

1 month ago


Remote, Oregon, United States Starburst Full time

About Starburst

At Starburst, we are working to dismantle the status quo of data silos and vendor lock-in every single day. For decades, database companies have held their customers hostage and we believe that's just plain wrong. Starburst offers a full-featured data lake analytics platform, built on open source Trino. Our platform includes all the capabilities needed to discover, organize, and consume data without the need for time-consuming and costly migration projects. Today more than 300 leading organizations trust us to make better decisions faster.

Though Starburst has raised $414M in venture funding from top investors, we were founded in a rather unusual way as we bootstrapped the business with customers and revenue from the very beginning We are a remote-first company with employees all over the world and are proud to be named a Best Place to Work. Come join our team of All-Stars

About the role

Reporting to the CISO, this role will be the first member of the soon-to-be-formed Starburst Product Security team. Initially hands-on, you will be responsible for building and operating the foundational elements of the Product Security Program to ensure that Starburst applications are designed, developed, and maintained with robust security measures in place. As the business and the maturity of the Product Security Program evolve, you will gradually hire and scale the team to meet the growing demands.

As a Staff Application Security Engineer at Starburst you will:

  • Build automations to identify and prevent risks during software development
  • Build threat models to identify potential vulnerabilities in architecture and design
  • Work with the Product and Engineering organizations to prioritize and remediate vulnerabilities and to design and implement application security controls
  • Advise and train development teams on secure coding best practices
  • Respond to and investigate security incidents and breaches related to application vulnerabilities
  • Manage 3rd party penetration testing
  • Manage application security tooling (SCA, SAST, and DAST, etc.)
  • Manage a Vulnerability Disclosure Program
  • Prepare and present reports on application security status and improvement recommendations to management
  • Occasionally work directly with customers

Some of the things we look for:

  • A strong command of application security fundamentals
  • A strong understanding of enterprise software development processes
  • Ability to communicate and collaborate with Product and Engineering teams
  • Experience building and rolling out new processes
  • Experience in Enterprise B2B SaaS
  • Experience working directly with customers
  • Experience leading and mentoring colleagues and team members

Where could this role be based?

  • US (remote)

Why build your career at Starburst?

We live by our three core company values: Character, Competence, and Ownership and are a team of top performers. We are each in the driver's seat, shaping our organization and working together towards our common mission. We are solving exceptionally complex and meaningful challenges here and as we innovate, we each have the opportunity to build our careers alongside Starbursts's growth.

We take care of our global workforce by making sure employees enjoy competitive salaries and attractive stock grants, remote-friendly work options, flexible paid time off, and more

We are committed to fostering an intentional, inclusive, and diverse culture that drives deep engagement, authentic belonging, and an exceptional All-Star experience. We believe that diversity of thought, perspective, background and experience will enable us to own what we do, drive our success and empower our All-Stars to show up for one another authentically in all moments that matter.

Starburst provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

#BI-Remote #LI-Remote



  • Remote, Oregon, United States Intone Networks Full time

    Staff Security EngineerCandidates also must be willing and able to convert to a full time employee by end of year without sponsorship requirements.Position SummaryThe Staff Security Engineer - Vulnerability Management role is responsible for ensuring the development and delivery of the strategic vision for Vulnerability Management capabilities working with...


  • Remote, Oregon, United States Edgecortix Full time

    IntroductionEdgeCortix is hiring for a staff field application engineer position to join our Tokyo/Kanagawa-based team and drive support of pre-sales and post-sales activities related to our artificial intelligence (AI) processor and AI acceleration software products. While located in Japan, you will be primarily involved in supporting customers locally,...

  • Application Engineer

    3 weeks ago


    Remote, Oregon, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...

  • Staff SecOps Engineer

    1 month ago


    Remote, Oregon, United States Kyruus Health Full time

    At Kyruus Health, our mission is to connect people to the right care, in pursuit of our vision: a better healthcare system- one that's transparent and accessible- where everyone gets the care they need. Our values are at the heart of everything we do: We care deeply – We do the right thing even if it's the harder thing. We are fiercely driven – We...

  • IAM Engineer

    1 month ago


    Remote, Oregon, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Remote, Oregon, United States TEKsystems Full time

    Job OverviewTEKsystems is in search of an Information Security Engineer dedicated to fortifying our network, software, systems, and infrastructure to adhere to the highest security protocols.Contract Duration: 3 Months to Start (potential for extension)Location: 100% RemoteKey Responsibilities:Oversee security policies and technical design throughout project...


  • Remote, Oregon, United States Huntress Full time

    Reports to: Senior Engineering ManagerLocation: Remote USCompensation Range: $170,000 to $195,000 base plus bonus and equity What We Do: Founded in 2015 as a fully remote company by former NSA cyber operators, Huntress was built on a simple premise: to force hackers to earn every inch of their access. Today's cyber-attacks aren't limited to large...


  • Remote, Oregon, United States Origami Risk Full time

    The Senior Security Engineer is a key contributor to leading security initiatives supporting the Origami Risk SaaS platform through designing security tool implementations, security process improvements, and increasing security operational capacity through automation and orchestration. You will work closely with internal development, operations, and product...


  • Remote, Oregon, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking an Mid-Market Sales Engineer (Central) to join our growing Sales Engineering team. As a Mid-Market Sales Engineer, you will be our customer's technical contact, and craft strategic business cases to win customers over & help them conquer their most intractable email security challenges. In conjunction with...


  • Remote, Oregon, United States Podium Full time

    At Podium, our mission is to help local businesses win. Our lead conversion platform, powered by AI and integrations, helps local businesses convert leads faster, communicate easier, and make more sales. Every day, thousands of local businesses utilize our review management, communication, marketing, and payments products. Our work and focus on helping local...

  • Application Engineer

    1 month ago


    Remote, Oregon, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Remote, Oregon, United States Cloud7Works Full time

    Job OverviewCompany BackgroundCloud7Works stands at the forefront of IT solutions, dedicated to serving government agencies. By harnessing cutting-edge technologies and industry best practices, we provide secure, compliant, and innovative solutions that bolster the essential missions of our governmental partners.Experience Required: 8+ yearsSecurity...


  • Remote, Oregon, United States Cloud Security Services Full time

    We are seeking an experienced Active Directory (AD) and Entra ID engineer to supplement an existing team. The candidate must have a strong background in designing, building, and maintaining complex, large scale and global identity directory services environments.This is a 5-month remote opportunity.Responsibilities:Conduct high-level project design and...


  • Remote, Oregon, United States Maven AGI Full time

    DescriptionCompany Overview:MavenAGI is on a mission to reimagine enterprise customer experience, starting with support. We believe that today's support experience is broken: slow and painful for customers, and expensive and human capital intensive for companies. We are building Maven to deliver better, cheaper support, for both end users and agents. With...


  • Remote, Oregon, United States Trail of Bits Full time

    Who We AreFounded in 2012 by 3 expert hackers with no investment capital, Trail of Bits is the premier place for security experts to boldly advance security and address technology's newest and most challenging risks. It has helped secure some of the world's most targeted organizations and devices. Our combination of novel research with practical solutions...


  • Remote, Oregon, United States Level Access Full time

    Working with the Director of Information Security, the Senior Security Engineer role at Level Access will be responsible for helping Level Access scale its goal of being the most secure company in digital accessibility. Primary responsibilities include: leading the multi-framework compliance program; designing and implementing an appropriately-sized...


  • Remote, Oregon, United States Glydways Full time

    Who we are:At Glydways, we believe that mobility is a basic human right. Low-cost and ubiquitous access to affordable housing, employment, education, commerce and care lead to economic and social prosperity. As such our goal is to provide:Public transit with the highest capacity, the best user experience, the lowest cost, and the lowest carbon footprint.Our...


  • Remote, Oregon, United States neptune Full time

    We are seeking an experienced Staff Frontend Software Engineer to join our fully remote team. As a key player in our Engineering team, you will contribute to architectural design and have an impact on how we develop our product. This role demands solid software engineering and web programming foundations and the ability to drive significant business value...


  • Remote, Oregon, United States Outreach Full time

    The RoleProtecting customer data and access to it, is at the core of building and retaining customer trust. How do you continue to secure customer data while providing more flexibility to customers to model their diverse access control and data-collaboration needs. As Outreach scales to meet the needs of our growing customer base, we simultaneously need to...


  • Remote, Oregon, United States Tackle Full time

    As a Staff Software Engineer at Tackle, you will be a part of a well-funded, fully remote, growth-stage company helping shape the way that software is bought and sold in the Cloud Marketplaces (AWS, GCP, Azure). We are built on the foundation that a 100% remote team can be the healthiest, happiest and most productive; from the beginning we have been...