Legal Operations & Contracts Manager
SignifydFull Time
Mid-level (3 to 4 years), Senior (5 to 8 years)
The ideal candidate will have a moderate understanding of software product creation in Agile/DevOps environments, moderate experience with threat modeling (e.g., STRIDE), and code review experience for applications developed in Go, Python, or Java. Proficiency in secure configuration of cloud-native and containerized applications across GCP, Azure, or AWS is required, along with experience using AppSec tools (SAST, DAST, CSPM, DSPM, ASPM) and understanding common software weaknesses beyond the OWASP Top 10. Experience in application penetration testing and collaborating effectively with technical teams is also necessary, as is the ability to drive ambiguous research projects.
The Engineer III - Product Security will act as a security expert and advisor to engineering teams, influencing product design and capabilities. Responsibilities include creating and maintaining threat models, reviewing application source code for security defects, performing application attacks throughout the Secure Development LifeCycle, and collaborating with developers to implement secure solutions. The role also involves building integrated tools and automation for application security tasks, assisting with the bug bounty program, hunting for similar security issues, and improving overall application security.
Cloud-native endpoint security solutions provider
CrowdStrike specializes in cybersecurity, focusing on protecting businesses from cyber threats through cloud-native endpoint security solutions. Their main product, the Falcon platform, includes services like Falcon Pro, which replaces traditional antivirus with next-generation antivirus that integrates threat intelligence, Falcon Insight for endpoint detection and response, and Falcon Device Control to manage connected devices. Unlike many competitors, CrowdStrike's services are subscription-based, allowing clients to choose different levels of protection based on their needs. The company serves a diverse clientele, including many Fortune 100 companies, and is recognized as a leader in the cybersecurity field, known for its effectiveness in threat detection and response.