Senior Application Security Engineer responsible for securing applications throughout the software development lifecycle. Joining a growing security team at e.l.f. Beauty to implement security best practices.
Responsibilities
Perform manual and automated security assessments of web, mobile, and cloud applications
Collaborate with development and engineering teams to embed security into SDLC (DevSecOps)
Conduct secure code reviews, threat modeling exercises, and risk assessments to identify security weaknesses in application design.
Implement and manage application security tools (SAST, DAST, SCA, IAST)
Design and enforce security policies, standards, and procedures for application development
Monitor, triage, and respond to application-layer vulnerabilities and incidents
Work closely with QA and engineering teams to drive security testing and fix validation
Lead the Incident Response effort for application-related security events.
Stay current on the latest security threats, vulnerabilities, and industry's best practices
Conduct developer training and promote a security-first culture within engineering
Cross-train team members on Application Security principles.
Actively participate in the broader corporate security efforts, including infrastructure security, end-user training, and vulnerability management.
Requirements
Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
8+ years in application security, secure software development, and penetration testing.
Strong understanding of web technologies (HTML, JavaScript, Python, REST APIs, etc.).
Experience with security tools for code security, bug bounty programs, and the ability to integrate them into CI/DC pipelines for automated security testing.
Familiarity with OWASP Top 10, SANS Top 25, CWE, CVE, and secure coding practices.
Knowledge of cloud environments (AWS, Azure, GCP) and their security features.
Strong communication and interpersonal skills, with the ability to collaborate effectively with technical and non-technical stakeholders.
Benefits
Bonus eligibility (200% of target over the last four fiscal years)
Equity
Hybrid 3 days in office, 2 days at home work environment
Serve as a technical expert in CFD tools helping customers realize their value. Deliver software demonstrations, training, and support as part of a collaborative team.
Principal Security Engineer at Binti focusing on securing software applications for social services. Conducting assessments, responding to incidents, and improving security architecture in a collaborative environment.
Technical expert in industry‑leading CFD tools such as ANSYS Fluent and CFX. Partnering with account managers and customers to drive pre - sales success and deliver impactful technical support.
Lead Applications Engineer for Power Island Mechanical Systems developing SMR plant technology solutions. Collaborating with internal teams and external partners for technical proposals and designs.
Application Engineer providing technical and commercial solutions to support Data Center sales team. Collaborating closely with customers and internal teams for effective project delivery.
Customer Application Support Engineer providing technical support for Linux BSP and driver integration issues at NXP. Collaborating with customers during product development phases for embedded applications.
Senior Customer Application Engineer at NXP leading technical support for power and motor control applications. Engaging with Indian customers and global teams for mass production deployments.
Application Support Engineer providing technical support for logistics applications with a focus on troubleshooting and performance monitoring. Collaborating with development and business teams for issue resolution in a hybrid work environment.
Cloud Application Development Engineer at Intel responsible for designing and developing cloud - native applications. Involves building scalable APIs, ensuring security, and troubleshooting production issues.
Application Engineering Manager leading a team of engineers to integrate products into customer vehicles. Focusing on technical solutions and collaboration with automotive OEMs and Tier 1 suppliers.