Leading the Application Security team at Clio, focusing on building scalable security solutions. Collaborating across teams and leading security initiatives in a hybrid work environment.
Responsibilities
Hire, mentor, and grow a team of Offensive Application Security engineers
Define the long-term roadmap for the offensive security team
Collaborate with other Clio teams to help develop products or features leveraging secure development practices
Lead security incidents, recovery, and remediation efforts, along with post-incident forensics
Participating in due diligence during acquisitions to assess product and organizational security postures
Triaging and administering our Bug Bounty program
Code framework level solutions to provide blessed path tooling for developers and proactively prevent security flaws
Drive security awareness and knowledge amongst the product organization
Provide detailed guidance and support to teams in vulnerability remediation
Build, write rules, and implement tools for automated application scanning, static analysis and custom tooling
Perform penetration testing and proactive research to detect new attack vectors
Perform reactive incident response and remediation when a security event occurs
Project manage effectively by motivating the team, ensuring they meet and exceed targeted goals and objectives
Elevate and educate our security culture within Clio, contributing to our cultural values
Requirements
Experienced security leader with software development background
Experience working with full-stack developers
Security certifications like OSCP, OSWE, etc.
Prior experience with Ruby, Rails, Python, and/or Django applications
Benefits
Competitive, equitable salary with top-tier health benefits
Dental and vision insurance
Hybrid work environment, with expectation for local Clions to be in office min. twice per week
Flexible time off policy, with an encouraged 20 days off per year
$2000 annual counseling benefit
RRSP matching and RESP contribution
Clioversary recognition program with special acknowledgement at 3, 5, 7, and 10 years
Coordination role for Health and Safety in Underground Mine at Atlantic Nickel in Itagibá/BA. Focus on strategies for safety and health systems in underground operations.
Entry - Level Software Security Engineer at Tektronix focusing on secure product development and automation scripting. Collaborating with engineers to maintain cybersecurity best practices and standards.
Senior Cybersecurity Engineer at GM Financial designing scalable security capabilities to mitigate threats. Collaborating across teams and leveraging automation for enhanced security measures.
Senior Security Implementation Consultant responsible for implementing security controls in HPC environments. Working with teams on PKI, PAM, IAM, and infrastructure security solutions.
Lead Security Architect at Synchrony focusing on Zero Trust networking across various environments. Partnering with teams to design and implement secure connectivity and policies.
Enterprise Account Specialist engaging with key clients to design customized solutions within sales. Conducting market research and driving contract renewals for mid - to - large accounts.
Cybersecurity professional executing the cybersecurity program at Nightwing Intelligence Solutions. Responsible for RMF documentation, vulnerability assessments, and incident response in Sterling, VA.
Senior Network Security Engineer driving Zero Trust security fabric design and optimization at CRC Group. Hands - on role managing Zscaler and Palo Alto implementations across multi - cloud environments.
Lead Cybersecurity Engineer driving security testing automation at AT&T. Collaborating with teams to enhance security across telecom networks and systems.