3h ago
Product Security Engineer
Remote (U.S. - EST)
$170,000-$200,000 / year
full-timemid Remotemarketing technology
Tech Stack
Description
You will secure codebases, CI/CD pipelines, and development practices at Movable Ink, balancing security with development speed. Implement and maintain SAST, SCA, and secrets scanning tools, integrate security into CI/CD, and drive remediation with engineering teams.
Requirements
- 2+ years in application security, DevSecOps, or security-focused software engineering
- Hands-on with SAST, SCA, or secrets scanning tools (Semgrep, Dependabot, Snyk)
- Familiarity with CI/CD pipelines and GitHub Actions
- Understanding of OWASP Top 10 vulnerabilities
- Experience reading/reviewing code in Ruby, Python, JavaScript, or Go
Responsibilities
- Implement and maintain SAST using Semgrep across repositories
- Configure SCA tooling (Dependabot) to identify vulnerable dependencies
- Manage secrets detection scanning (Trufflehog) and respond to findings
- Integrate security scanning into CI/CD pipelines (GitHub Actions)
- Triage and prioritize vulnerability findings, driving remediation
0 views 0 saves 0 applications