5 years of experience in information security, with at least 2 years in application security engineering.
Experience working with software development teams to integrate security into complex application ecosystems.
Familiarity with security-by-design principles and understanding of application security frameworks and standards.
Knowledge of OWASP and relevant standards like the Top 10, ASVS, and MASVS.
Proficiency in at least one programming language and relevant security tools.
Strong communication skills for collaboration with development teams and other stakeholders.
Ability to work in a fast-paced environment, managing multiple tasks and priorities.
Desirables
Certifications in security architecture or application security (e.g., CSSLP, GWEB, OSCP)
Familiarity with the insurance industry or similarly regulated sectors
Experience with cloud-based security solutions and with cloud service providers
Hands-on experience with threat modeling, risk assessment, vulnerability management
What the job involves
Implementing application security measures across various projects, focusing on identifying and mitigating risks within our development lifecycle.
Report directly to the Director of Information Security & Privacy and play an essential role in maintaining the overall security posture of the company.
Participate in incident response procedures in our application environment, hybrid of containers managing production microservices, and a public cloud-driven services layer based on popular open-source components.
Quanata is on a mission to help ensure a better world through context-based insurance solutions, backed by State Farm. We aim to power the insurance industry of tomorrow, inspiring innovative products and experiences through data science and technology.
Company benefits
Medical, dental, vision, life insurance
Supplemental income plans for dependents.
Headspace app subscription.
Monthly wellness allowance.
401(k) Plan with company match.
One-time payment of $2K for in-home office equipment.
MacBook Pros fully provisioned.
Four weeks of PTO in the first year.
Twelve weeks of fully paid parental leave.
Up to $5000/year for professional learning and career development.
Udemy subscriptions.
Access to coaching through BetterUp.
Remote work from anywhere in the U.S.
Core meeting hours from 9AM - 3PM Pacific time for collaboration.