Senior Application Security Engineer

3 weeks ago


London, Greater London, United Kingdom ProtonMail Full time

About ProtonMail

ProtonMail is a leading provider of secure communication solutions, dedicated to protecting users' online privacy and security. Our mission is to create a better internet, where privacy is the default.

Our Security Team

The Security team at ProtonMail is responsible for protecting our users and our infrastructure from various cyber-security threats. We ensure the confidentiality, availability, and integrity of our assets, which are essential to fulfilling our mission. Our team has been providing services to other business units, including security monitoring, risk management, internal advisory, product security, vulnerability management, and identity & access management.

Key Responsibilities

  • Lead our efforts to ensure that ProtonMail's applications are secure
  • Perform penetration tests on ProtonMail products, both those released to the public and not
  • Support bug bounty triage by reproducing submissions and assessing their potential impact
  • Work with engineering teams to remediate identified bugs
  • Identify and implement improvements in product security and secure coding
  • Work with the wider Security and developer units to create security guidelines
  • Demonstrate the value of an 'assume breach' mentality
  • Perform threat modeling and security reviews: review the design of services from a security perspective to identify vulnerabilities and weaknesses in the architecture and design

Requirements

  • Proven experience in organizing and executing penetration tests/red team operations
  • A proactive and creative application security engineer
  • A proactive and creative mindset to come up with efficient and effective ways to continuously improve the security of our products
  • Expertise in threat modeling
  • Experience with at least two of the following: iOS, Android, Windows, macOS, Linux
  • Strong skills in coding and code review for at least two of the following: Go, Rust, Python

Nice to Have

  • Experience or knowledge about open source tools for application security testing
  • Experience in automation
  • A toolbox for application security testing
  • Experience or knowledge of infrastructure penetration tests

Why Work at ProtonMail

  • Be part of a movement - ProtonMail is not just a product or service but a community-driven movement united by a shared vision of online freedom. Our services are open source, audited, and supported by community contributions. We give back to our community by maintaining core encryption libraries and by supporting other organizations furthering the same goals as us.
  • Work with smart and dedicated people - Our team is diverse, collaborative, and tight-knit with people coming from all walks of life, including many of the world's top academic institutions and organizations.
  • Join a strong brand - Our encrypted email service - ProtonMail - has grown to be a staple of online security and privacy. ProtonMail has been featured in multiple popular television and film productions.
  • Grow with us - We're one of Europe's fastest-growing startups, doubling in size every year. Our growth gives you limitless career and educational opportunities as well as the opportunity to work side-by-side with many world-leading experts in their fields.
  • Have your voice heard - We value your opinion and encourage you to speak up and share your ideas and thoughts. At ProtonMail, no problem is someone else's problem. We collectively strive to do the right thing and be the undisputed best in the world at everything we do.
  • Benefits - these vary by location and type of contract but expect support on your vacation, parental leave, refreshment if working from the office, learning and development opportunities, equity for shared success, flexible working hours and remote work, company events and team building activities.


  • London, Greater London, United Kingdom ProtonMail Full time

    About the RoleWe are seeking a highly skilled Senior Application Security Engineer to join our team at ProtonMail. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our applications and services.Key ResponsibilitiesPerform penetration tests on our products to identify...


  • London, Greater London, United Kingdom ProtonMail Full time

    About the RoleWe are seeking a highly skilled Senior Application Security Engineer to join our team at ProtonMail. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our applications and services.Key ResponsibilitiesPerform penetration tests on our products to identify...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job Title: Senior Network Security EngineerWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security. The ideal candidate will have a deep understanding of CISCO ISE and experience with Python.Key Responsibilities:Design and implement secure network architecturesDevelop and maintain security policies and...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job Title: Senior Network Security EngineerWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security. The ideal candidate will have a deep understanding of CISCO ISE and experience with Python.Key Responsibilities:Design and implement secure network architecturesDevelop and maintain security policies and...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job OpportunityWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security.The ideal candidate will have extensive experience with CISCO ISE and a strong background in Python programming.As a senior leader in our organization, you will be responsible for designing and implementing robust network security...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job OpportunityWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security.The ideal candidate will have extensive experience with CISCO ISE and a strong background in Python programming.As a senior leader in our organization, you will be responsible for designing and implementing robust network security...


  • London, Greater London, United Kingdom MongoDB Full time

    About MongoDBMongoDB is a leading developer data platform that empowers innovators to create, transform, and disrupt industries by unleashing the power of software and data. Our mission is to enable organizations of all sizes to easily build, scale, and run modern applications by helping them modernize legacy workloads, embrace innovation, and unleash AI.We...


  • London, Greater London, United Kingdom Lawton Senior Living Full time

    About Lawton Senior LivingLawton Senior Living is a leading provider of innovative and technology-driven solutions for the senior living industry. Our mission is to empower seniors to live their best lives by providing a comprehensive range of services and amenities that cater to their physical, emotional, and social needs.Job SummaryWe are seeking an...


  • London, Greater London, United Kingdom Lawton Senior Living Full time

    About Lawton Senior LivingLawton Senior Living is a leading provider of innovative and technology-driven solutions for the senior living industry. Our mission is to empower seniors to live their best lives by providing a comprehensive range of services and amenities that cater to their physical, emotional, and social needs.Job SummaryWe are seeking an...


  • London, Greater London, United Kingdom Policy Expert Full time

    Transforming Insurance with Innovative TechnologyAt Policy Expert, we're revolutionizing the insurance industry with cutting-edge technology. Our mission is to make insurance clear, fair, and great value for customers. With our proprietary tech and breakthrough thinking, we've achieved a 1.1-rated home insurance provider for 9 years.About Our Engineering...


  • London, Greater London, United Kingdom Policy Expert Full time

    Transforming Insurance with Innovative TechnologyAt Policy Expert, we're revolutionizing the insurance industry with cutting-edge technology. Our mission is to make insurance clear, fair, and great value for customers. With our proprietary tech and breakthrough thinking, we've achieved a 1.1-rated home insurance provider for 9 years.About Our Engineering...


  • London, Greater London, United Kingdom ProtonMail Full time

    About ProtonMailProtonMail is a leading provider of secure communication solutions, dedicated to protecting users' online privacy and security. Our mission is to create a safer and more private internet for everyone.The Security TeamThe Security team at ProtonMail is responsible for protecting our users' data and ensuring the confidentiality, integrity, and...


  • London, Greater London, United Kingdom ProtonMail Full time

    About ProtonMailProtonMail is a leading provider of secure communication solutions, dedicated to protecting users' online privacy and security. Our mission is to create a safer and more private internet for everyone.The Security TeamThe Security team at ProtonMail is responsible for protecting our users' data and ensuring the confidentiality, integrity, and...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job OpportunityWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security in London. As a global tech organisation, we have invested heavily in our platforms and tech stack, and we need a senior leader with a deep understanding of CISCO ISE to drive our security initiatives forward.The ideal candidate will...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job OpportunityWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security in London. As a global tech organisation, we have invested heavily in our platforms and tech stack, and we need a senior leader with a deep understanding of CISCO ISE to drive our security initiatives forward.The ideal candidate will...


  • London, Greater London, United Kingdom Cofide Security Full time

    About Cofide SecurityCofide Security is a pioneering startup specializing in workload identity and access management solutions for hybrid and multi-cloud environments. Our mission is to revolutionize cloud security by leveraging open standards, including OAuth and SPIFFE.Our VisionWe aim to create a secure and scalable identity management ecosystem for...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Job OpportunityWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security.The ideal candidate will have extensive experience with CISCO ISE and a strong background in Python programming.As a senior leader in our organization, you will be responsible for designing and implementing robust network security...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    About the RoleWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security. As a key member of our security team, you will be responsible for designing and implementing robust network security solutions to protect our clients' assets.The ideal candidate will have extensive experience with CISCO ISE and a strong...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    About the RoleWe are seeking a highly skilled Senior Network Security Engineer to join our team at Iceberg Cyber Security. As a key member of our security team, you will be responsible for designing and implementing robust network security solutions to protect our clients' assets.The ideal candidate will have extensive experience with CISCO ISE and a strong...


  • London, Greater London, United Kingdom FIS Full time

    Senior Application Security ConsultantFIS is on the lookout for a seasoned Senior Application Security Consultant to become a vital part of our cybersecurity team. In this position, you will be tasked with safeguarding API security across all applications developed by FIS. Your expertise will be crucial in formulating security protocols and standards,...