Full Stack Security Engineer (Application & Product)
Runpod
United States · Posted Jul 15
Job description
Responsibilities: Lead threat modeling, architecture reviews, and vulnerability remediation across web applications and APIs. Implement automated security guardrails within CI/CD pipelines and manage application-layer defense controls.
Requirements: Requires 5+ years of experience in application or product security with strong programming skills in Python, Go, or TypeScript. Must have deep knowledge of OWASP Top 10, API security, and experience with offensive security testing tools.
Key skills: Application Security, Product Security, DevSecOps, Threat Modeling, Code Review, Python, Go, JavaScript, TypeScript, OWASP Top 10, API Security, SAST/DAST/SCA, WAF, Kubernetes, Docker, Burp Suite
Keywords: AI Infrastructure, GPU Cloud, Application Security, Product Security, DevSecOps, Python, Go, JavaScript, TypeScript, OWASP Top 10, REST, GraphQL, OAuth, OIDC, JWT, Burp Suite, ZAP, SAST, DAST, SCA, WAF, SOC 2, ISO 27001, GDPR, Kubernetes, Docker, OSWE, GWAPT, CISSP, Bug Bounty