3h ago

Product Security Engineer

Remote (U.S. - EST)

$170,000-$200,000 / year

full-timemid Remotemarketing technology

Tech Stack

Description

You will secure codebases, CI/CD pipelines, and development practices at Movable Ink, balancing security with development speed. Implement and maintain SAST, SCA, and secrets scanning tools, integrate security into CI/CD, and drive remediation with engineering teams.

Requirements

  • 2+ years in application security, DevSecOps, or security-focused software engineering
  • Hands-on with SAST, SCA, or secrets scanning tools (Semgrep, Dependabot, Snyk)
  • Familiarity with CI/CD pipelines and GitHub Actions
  • Understanding of OWASP Top 10 vulnerabilities
  • Experience reading/reviewing code in Ruby, Python, JavaScript, or Go

Responsibilities

  • Implement and maintain SAST using Semgrep across repositories
  • Configure SCA tooling (Dependabot) to identify vulnerable dependencies
  • Manage secrets detection scanning (Trufflehog) and respond to findings
  • Integrate security scanning into CI/CD pipelines (GitHub Actions)
  • Triage and prioritize vulnerability findings, driving remediation
0 views 0 saves 0 applications