Essential Responsibilities:
Minimum Qualifications:
Your way to impact
You will be responsible for engineering security solutions into developer CI/CD workflows to identify vulnerabilities in PayPal’s code ensuring that they can be remediated before causing damage
You will ensure that vulnerabilities are identified natively and efficiently within existing developer workflows, enabling faster, simpler remediation work
You will apply your engineering skills to ensure that security solutions are of high quality, robustly tested, and performant
This role is best served with prior experience in cyber security engineering with capability to dive deep into various technologies, have a thirst for being on the cutting edge, and have a passion for security
Your day to day
Define and improve application security in the SDLC, ensuring security is prioritized from inception to deployment.
Develop and measure KPIs to report on the program’s progress toward key objectives and goals
Implement and Test Next Gen AppSec products as part of SDLC.
Gain expertise and deep understanding of PayPal’s development cycles, platforms and technology.
Collaborate with Security Architects, Product Manager, Program Manager and other teams to deliver high quality products.
Apply your technical expertise to guide the team in making intelligent and pragmatic design decisions.
Help identify and develop ways to improve our team's efficiency by expanding on our existing tools and processes.
Mentor junior engineers and interns as they develop their skills.
What do you need to bring
At least 8 years of experience in application security or software development
Programming experience in at least one language such as Java, Python, JavaScript, Ruby, Go
A strong familiarity with application security scanners such as SAST, SCA, DAST
Expert knowledge of Git, common CI/CD pipelines, and other standard developer tools
Knowledge of OWASP top 10 and a deep understanding of web application and mobile app vulnerabilities.
Experience with data structures, software design, RESTful APIs, containers, SQL & NoSQL – an advantage
Working knowledge of major cloud platforms such asGoogle Cloud, AWS, Azure – an advantage.
Industry certifications (e.g.,CISSP, CISM, CCSP, or equivalent) – an advantage.
Familiarity withiOS, Android and browser SDK development – an advantage.
Travel Percent:
The total compensation for this practice may include an annual performance bonus (or other incentive compensation, as applicable), equity, and medical, dental, vision, and other benefits. For more information, visit .
The US national annual pay range for this role is $152,500 to $262,350
Our Benefits:
Any general requests for consideration of your skills, please
משרות נוספות שיכולות לעניין אותך