FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Application Security and Product Security, with a strong focus on threat modeling, secure coding practices, and CI/CD pipeline security. Proficient in Ruby, PHP, and AWS/Lambda, with a proven ability to collaborate effectively with Engineering teams to implement security solutions.
Highest-signal resume keywords
Ruby ProgrammingPHP ProgrammingAWS/Lambda AutomationApplication SecurityCI/CD Pipeline Security
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Threat ModelingSecure-By-Design PrinciplesCode Fix ImplementationSecurity Tool IntegrationSASTSCASecret ScanningVulnerability AssessmentProduction Code DeliveryAutomation Development
Soft Skills
CollaborationCommunication
Tools & Technologies
AWSCI/CD ToolsSecurity Tools
Certifications & Qualifications
Information Security Certifications
Industry Keywords
Application SecurityProduct SecurityCloud SecurityEngineering
Tech Stack
Tools & technologiesAWSPHPRubyGo
About the role
Key responsibilities & impact- Assess technical vulnerabilities and propose solutions to enhance platform security, working across the Ruby, Go, and PHP stacks and developing security fixes in AWS/Lambda.
- Rapidly assess requests in the development queue, reducing the AppSec bottleneck and unblocking Engineering deliveries.
- Proactively propose and implement code fixes, going beyond simply reporting findings.
- Lead threat modeling activities and apply secure-by-design principles to product initiatives.
- Create guardrails, tooling, and automations that make the secure path the default for Engineering teams.
- Integrate and calibrate security tools in the CI/CD pipeline, including SAST, SCA, and secret scanning, while keeping noise and false positives low.
Requirements
What you’ll need- Experience in software or security engineering, writing and delivering production code—ideally in Ruby and PHP—including automations in AWS/Lambda.
- Experience with Application Security/Product Security, including threat modeling, secure-by-design practices, and the creation of guardrails and tooling.
- Solid knowledge of CI/CD pipeline security, with calibrated SAST, SCA, and secret scanning tools.
- Knowledge of AWS cloud security as applied to products.
- Information security certifications are a plus.
- Strong ability to collaborate with Engineering teams, proposing and implementing fixes directly in the code.
- Ability to communicate in English, both written and spoken.
Benefits
Comp & perks- 100% remote work.
- A trust-based culture focused on results, with plenty of challenges and learning opportunities.
- Autonomy and ownership in a highly collaborative and empathetic environment.
- A feedback culture and regular 1:1s with supportive leadership and no micromanagement.
- Meal and food allowance.
- Childcare assistance.
- Home office allowance.
- Healthcare allowance.
- Education and cultural allowance.
- Gympass.
- Birthday day off.
- Discounts on therapy.
- Discounts on English courses.
- Other partner benefits.
