Global Relay
Technology
ApplicationandProductSecurityPrincipal
Neural analysis suggests this role is
optimal for Principal candidates.
“Application and Product Security Principal at Global Relay. Skills: Application security, Product security, DevSecOps, Vulnerability management. Lead DevSecOps areas. Integrate security practices”
Industry & Context.
Methodical approach; Creative approach
What They're Looking For.
Must Have
8+ years application security experience, Expert knowledge software security, Experience with OWASP, Experience with Mitre, Experience with NIST SP800-115, Experience with SAST, Experience with DAST, Experience with SCA, Experience with Python, Experience with Java, Experience with Bash, Experience with PowerShell, Experience with Puppet, Experience with Ansible, Experience with Git repositories, Experience with Jenkins, Experience with Docker/Podman, Experience with CI/CD technologies, Experience with OpenShift/Kubernetes, Experience with API security
What You'll Do.
Integrate security practices
Partner with engineering teams
Partner with platform teams
Partner with product teams
Embed automated controls
Embed secure design principles
Embed continuous assurance
Lead security sessions
Analyze security reports
Mitigate identified vulnerabilities
Develop automated security framework
Deploy automated security framework
Leverage scripting languages
Leverage open-source solutions
Embed security practices
Embed DevSecOps practices
Integrate security tools
Prevent vulnerabilities
Shift-left security testing
Provide technical expertise
Support DevSecOps tasks
Review vulnerability data
Identify security risks
Address false positives
Investigate security issues
Determine steps for reproduction
Determine scope of vulnerabilities
Provide encouragement to team members
Identify training needs
Build security culture
Improve security efficacy
Oversee team member work
Create security documentation
Create developer training material
Improve test case documentation
Improve test case grouping
Act as subject matter expert
Lead selection of scanning tools
Lead deployment of scanning tools
Lead management of scanning tools
Develop competency in OWASP Top 10
Derive new test methodologies
Identify lacking security test coverage
Improve security test coverage
Provide suggestions for improvements
See improvements through to completion
How You'll Work.
Team & Collaboration
Partner with engineering; Partner with platform; Partner with product; Work with developers
Communication Scope
Verbal communication; Written communication
Process & Methodology
Agile delivery methodology
Full Job Description
Who we are: For over 25 years, Global Relay has set the standard in enterprise information archiving with industry-leading cloud archiving, surveillance, eDiscovery, and analytics solutions. We securely capture and preserve the communications data of the world’s most highly regulated firms, giving them greater visibility and control over their information and ensuring compliance with stringent regulations. Though we offer competitive compensation and benefits and all the other perks one would expect from an established company, we are not your typical technology company. Global Relay is a career-building company. A place for big ideas. New challenges. Groundbreaking innovation. It’s a place where you can genuinely make an impact – and be recognized for it. We believe great businesses thrive on diversity, inclusion, and the contributions of all employees. To that end, we recruit candidates from different backgrounds and foster a work environment that encourages employees to collaborate and learn from each other, completely free of barriers. Your role: The Application & Product Security Principal is responsible for leading the DevSecOps areas of application security, application vulnerability scanning and other daily security and compliance efforts. This role is positioned between software engineering, security and operations, driving the integration of robust security practices into every stage of the software development lifecycle. As a senior member of the Application & Product team you will input into strategy, standards and partner closely with engineering, platform and product teams to ensure security is built-in and aligned with business objectives. You will champion a proactive, risk-based approach to security, embedding automated controls, secure design principles and continuous assurance into the development pipelines. You will lead security sessions for development engineering teams with focus on risks, security report analysis, mitigations of identified vu
Applying for this Application and Product Security Principal role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Global Relay?
Real rants from real employees. Read before you apply.