Application Security Engineer working with NordVPN's cybersecurity team. Conducting assessments and reviews to secure applications and systems against vulnerabilities.
Responsibilities
Conduct security reviews of application designs, source code, and third-party libraries;
Perform regular application vulnerability assessments using both automated tools and manual testing techniques (e.g., SAST, DAST, SCA, penetration testing);
Collaborate with development teams to design secure architectures and implement security controls;
Help maintain security tools, scripts, and processes to support secure development;
Stay current with industry trends, zero-day vulnerabilities, and best practices in application security;
Develop scripts and security automation tools to enhance application security testing processes;
Design and deliver training for security engineering awareness & adoption;
Actively look for internal security gaps within the product or organization overall;
Ensure mobile/desktop applications are sufficiently tested and support internal and external audits;
Requirements
Proven experience in mobile/desktop application security assessment planning, testing, methodologies, and vulnerability reporting;
Strong understanding of secure coding practices;
Ability to perform manual security code audit;
Proficiency in at least one low-level programming language (e.g. C, C++, Rust, Go).
Solid understanding of networking protocols such as TCP, UDP and the HTTP protocol;
Familiarity with debuggers (e.g. GDB, LLDB, WinDbg).
Familiarity with reverse engineering tools (e.g. Ghidra, IDA).
Solid understanding of memory corruption issues, buffer overflows and related vulnerability classes.
Familiarity with common authentication and authorization protocols (OAuth, SAML, JWT, etc.).
Ability to work with networking tools such as Wireshark and tcpdump.
Ability to quickly assimilate new technologies and tools;
Sense of ownership with strong problem-solving and investigation skills;
Ability to build and maintain relationships, influence key stakeholders across the business;
Bonus points for community contributions like public CVEs, bug bounty recognition, open-source tools, blogs, etc.
Principal Security Engineer at Binti focusing on securing software applications for social services. Conducting assessments, responding to incidents, and improving security architecture in a collaborative environment.
Technical expert in industry‑leading CFD tools such as ANSYS Fluent and CFX. Partnering with account managers and customers to drive pre - sales success and deliver impactful technical support.
Lead Applications Engineer for Power Island Mechanical Systems developing SMR plant technology solutions. Collaborating with internal teams and external partners for technical proposals and designs.
Application Engineer providing technical and commercial solutions to support Data Center sales team. Collaborating closely with customers and internal teams for effective project delivery.
Customer Application Support Engineer providing technical support for Linux BSP and driver integration issues at NXP. Collaborating with customers during product development phases for embedded applications.
Senior Customer Application Engineer at NXP leading technical support for power and motor control applications. Engaging with Indian customers and global teams for mass production deployments.
Application Support Engineer providing technical support for logistics applications with a focus on troubleshooting and performance monitoring. Collaborating with development and business teams for issue resolution in a hybrid work environment.
Cloud Application Development Engineer at Intel responsible for designing and developing cloud - native applications. Involves building scalable APIs, ensuring security, and troubleshooting production issues.
Application Engineering Manager leading a team of engineers to integrate products into customer vehicles. Focusing on technical solutions and collaboration with automotive OEMs and Tier 1 suppliers.