Company

WillowSee more

addressAddressRemote - Oregon, United States
type Form of workFull-Time
CategoryInformation Technology

Job description

Since our founding in 2017, Willow has grown from a start-up in Australia to serving customers around the globe. Our product offering digitizes the build world for a better world. We make our customers buildings work smarter for them and the environment.

You will be joining a team of performance-driven Willowers, backed by the most advanced technology the built world has ever seen.

The Application Security Lead will work closely with the Head of Cyber Security & Privacy, third party service providers and stakeholders from all parts of the business to improve the security of Willow and of its customers. The role will work closely with the Product and Engineering teams, providing ad hoc technical security advice where needed and focused on ensuring that our products are secure at all levels of the technology stack. This includes identifying opportunities for improvement, building out new security capabilities and responding to incidents where required. The Application Security Lead will be someone who takes ownership of their work, shows initiative through effective problem-solving skills and has the ability to clearly communicate ideas or recommendations to a variety of people with varying technical knowledge.
Role & Responsibilities
    • Work closely with wider Product and Engineering teams to advise on security architecture as well as minimum security requirements in new and existing products or software.
    • Perform code security reviews and application threat modelling.
    • Ensure appropriate security controls and processes such as rapid risk assessments and security testing are embedded into the Engineering development processes in a seamless manner.
    • Drive the continued education of engineers and product team around security requirements.
    • Work closely with IT consultants and managed service providers to scope, manage and remediate regular penetration testing assessments.
    • Continually review and improve the security function by identifying possible improvements, developing skills, identifying new techniques and developing automation to mitigate security risks and incidents efficiently.
    • Apply threat intelligence and other information sources to identify events/risks relevant to the company and integrate this into existing security processes for targeted remediation.
    • Contribute to various security projects and assist the Head of Cyber Security & Privacy in the delivery of the cyber security roadmap in accordance to timeframes and budget.
Skills & Experience
    • Minimum 4-5 years relevant experience in security, preferably in an Application Security or software engineering role
    • Strong technical skills including code proficiency, penetration testing and cloud architecture knowledge
    • Experience in a cloud infrastructure environment - AWS or Azure, preferably with PaaS and Windows Operating Systems
    • Experience in working with software developers to advise on security controls and requirements
    • Relevant security certifications (OSWE, OSCP, GIAC GCSA etc)
    • Excellent communication and interpersonal skills, with the ability to effectively convey complex security concepts to technical and non-technical stakeholders.
    • Strong problem-solving and analytical skills, with the ability to think strategically and make sound decisions.
    • Experience with common information security management frameworks, standards, principles and processes (OWASP, CIS, SANS, ISO, NIST etc)
    • Experience in vulnerability management and threat intelligence capabilities
    • Exposure to highly automated DevOps environments and familiarity with toolsets including Git, Docker, Pulumi, etc
By joining our team of Willowers, we offer true flexible working arrangements, remote and/or hybrid as well as parental leave available for those budding families. 

But it is not all about us - it's about you and the world around us. Willowers can dedicate up to 3 days a year to causes they love or level up through our Willow Academy. Psst...we've got your back with cool discounts on shopping and services too. 

We at Willow never give up, we work smart, we care about our fellow human beings, and we always put our best foot forward. 

At Willow, we're not just looking for the right git for the job - we're excited to embrace a rainbow of talents and perspectives, fostering a vibrant workplace where all individuals are celebrated and discrimination is left at the door.

To find out more, visit the website: willowinc.com

Apply for this job
Refer code: 6921838. Willow - The previous day - 2023-12-12 13:06

Willow

Remote - Oregon, United States
Jobs feed

Operation Research Analyst - Navy

Innovasystems, A Cydecor Company

Washington, DC

$70.3K - $89K a year

Associate Customer Support Analyst

Surescripts

Arlington, VA

$59,900 - $73,300 a year

Budget Analyst

U.s. Department Of State

Washington, DC

$68,405 - $153,354 a year

Quality Auditing Analyst

Accenture

Arlington, VA

Sustainability Analyst

Management Strategies

Washington, DC

$68,000 - $88,000 a year

Senior Data Analyst - Revenue and Regulatory

Hard Rock Digital

Remote

$89.7K - $114K a year

Innovation & Insight Analyst

Vsp Global

Remote

$80,000 - $135,000 a year

Program Analyst- VTO

Lindahl Reed, Inc.

Washington, DC

$80,000 - $100,000 a year

Medicare Marketing Analyst

Infotree Global Solutions

Remote

$35 - $38 an hour

Reconciliation Analyst

Cybotic System

Remote

$50 - $90 an hour

Share jobs with friends

Related jobs

Application Security Lead

Security Software Lead

Innovative Defense Technologies

Mount Laurel, NJ

8 hours ago - seen

IT Security Associate Director - Compliance Lead

Wolters Kluwer

Illinois, United States

8 hours ago - seen

Lead Security Officer-Full-Time(Bettendorf)

Caesars Entertainment

Bettendorf, IA

8 hours ago - seen

Security Reviewer Lead

Software And Services

Cupertino, CA

9 hours ago - seen

Lead Security Monitor

Southwest Key Programs

Brownsville, TX

2 days ago - seen

Ping Directory Lead Information Security Engineer

Wells Fargo

New York, NY

3 days ago - seen

Lead Security Architect

Invisible Technologies

United States

4 days ago - seen

Lead Application Security and Identity Management Analyst (Remote)

Rich Products Corporation

New York, United States

4 days ago - seen

Information Assurance Security Lead

Peraton

Florida, United States

5 days ago - seen

Lead Security Specialist

Kbr, Inc.

Dallas, TX

6 days ago - seen

Network Security Engineer, Lead Associate

Peraton

Virginia Beach, VA

6 days ago - seen

Campus Security Lead

Anduril

Costa Mesa, CA

6 days ago - seen

IT Cloud Security Lead

Bounteous

Stamford, CT

6 days ago - seen

Privacy & Data Security Junior Associate

A Leading National Law Firm

Chicago, IL

7 days ago - seen

Information System Security Officer Lead

Saic Motor

WASHINGTON, DC

7 days ago - seen

Information Security Lead

Gainwell Technologies

Texas, United States

a week ago - seen

Lead Security Engineer - Software Engineering

Jpmorgan Chase & Co.

Plano, TX

a week ago - seen

Information Security Analyst, Lead Associate

Peraton

San Antonio, TX

a week ago - seen