This job is closed

We regret to inform you that the job you were interested in has been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

Glean Technologiesposted 2 months ago
$185,000 - $280,000/Yr
Full-time • Mid Level
Palo Alto, CA
Publishing Industries
Resume Match Score

About the position

Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images, ensuring all open-source software (OSS) dependencies are scanned and patched, and integrating cutting-edge security tools into our CI/CD pipeline. The ideal candidate will drive the adoption of solutions like Google's Assured Open Source Software (OSS) and explore alternative approaches to enhance software security. This role will lead the vulnerability management charter at Glean, identifying, evaluating, and implementing new security technologies and processes to proactively protect our infrastructure.

Responsibilities

  • Own and lead the vulnerability management lifecycle, ensuring our entire tech stack is free from known CVEs.
  • Implement and manage secure base OS images, ensuring all underlying systems remain hardened against security threats.
  • Continuously scan, monitor, and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management.
  • Research and evaluate trusted open-source security solutions like Google's Assured Open Source Software and recommend their adoption where applicable.
  • Work closely with engineering teams to integrate state-of-the-art SAST, DAST, and dependency scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early.
  • Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities.
  • Develop automated security validation tests to enforce vulnerability-free deployments across the stack.
  • Lead the adoption and, if necessary, develop custom security solutions to manage and mitigate security risks at scale.
  • Provide security guidance, training, and mentorship to engineering teams to foster a security-first culture at Glean.

Requirements

  • BA/BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience).
  • 5+ years of experience in application security and vulnerability management.
  • Deep understanding of software security vulnerabilities, including CVEs, OWASP Top 10, and supply chain risks.
  • Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, GitHub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP).
  • Strong familiarity with package managers (npm, pip, Maven, Go modules) and securing open-source dependencies.
  • Coding experience in languages such as Go, Python, Java, or C++ to develop security test cases and tooling.
  • Hands-on experience with cloud-native security best practices across AWS, GCP, or Azure.
  • Knowledge of container security, Kubernetes security, and securing microservices architectures.
  • Ability to lead cross-functional initiatives and drive security adoption within engineering teams.

Nice-to-haves

  • A strong proactive approach to security, identifying risks before they become problems.
  • Excellent problem-solving skills and the ability to balance security with performance and usability.
  • Experience working in fast-paced, highly collaborative environments where security is a shared responsibility.
  • Passion for open-source security and keeping up with the latest trends in software vulnerability management.

Benefits

  • Competitive compensation
  • Medical, Vision and Dental coverage
  • Flexible work environment and time-off policy
  • 401k
  • Company events
  • A home office improvement stipend when you first join
  • Annual education stipend
  • Wellness stipend
  • Healthy lunches and dinners provided daily

Job Keywords

Hard Skills
  • Burp Suite
  • Github
  • Go
  • Java
  • Kubernetes
  • 3tFd6CJ9y J6bwGXKx
  • 4MYacfH 9DLo7c
  • 6lJaTz
  • AQXTr Pj8CLyW1h6G
  • b6kOtwyPSg mOkQE1oHr
  • d7sPnVwhDTJZXB 2eWEfQVC 5LGIDVmO
  • d9OgHAN Jm4aSvw
  • DZSn3e
  • E5LDkr9K63 bxV6UzwSuoE
  • er4TX5AIW N8UGFwmCn
  • FceuEdfQgMx4 Qk7sc8MCU
  • hB95ipu6q k8Dh5E2YBybL
  • IQxaF ySZDLd
  • ixJPDTbk3 jYeTO4dvR
  • J9RFKX1Nn k7PFvRco
  • mri02xhlf6g 268R9HjKnfG
  • N14qpsLPr 64pakAZJKQH
  • pcfkRP5wQy
  • qVt5x7dDuj 5kw7 3WUpIAgq8T
  • RbGUBuc8N dgse zYGK4AaTnMEF1b Apr6G8XWR
  • uiPA7 6vMfk
  • Vsk0etx 23gIvb
  • ybAqdPcC 1ygmjRb0
  • yIdsr74Mg NrG5Ahe6saMP
  • Zig68wBxdQODmf I0cHROpJAD7
  • ZKbRw05F2
  • zmNeQI3
Build your resume with AI

A Smarter and Faster Way to Build Your Resume

Go to AI Resume Builder
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service