BlackLine
BlackLine automates and controls financial close processes for midsize and large organizations.
Hybrid

Application Security Engineer

Sorry, this job was removed at 11:40 a.m. (PST) on Tuesday, April 28, 2020
Find out who's hiring in Greater LA Area.
See all Cybersecurity + IT jobs in Greater LA Area
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

In collaboration with development and architecture teams, the Application Security Engineer will define security controls in BlackLine's software, identify and prioritize vulnerabilities in the application, databases, and related infrastructure components, provide resolution guidance to the development team, perform source code reviews, conduct application security tests, monitor security events and audit trails, and respond to incidents. This position will also be responsible for educating and mentoring developers on secure coding and application security best practices.
Responsibilities:

  • Identify risks and areas of exposure in applications developed and/or used by BlackLine.
  • Perform security reviews of source code, stored procedures, and server/service configurations.
  • Define and document application security requirements for BlackLine applications.
  • Oversee development of security components throughout all stages of the SDLC.
  • Perform manual and automated security testing of BlackLine applications.
  • Monitor application logs and audit trails.
  • Monitor industry trends and threat landscape and recommend necessary controls or countermeasures.
  • Educate developers on secure coding techniques and security best practices.
  • Participate in development of security policies, standards, and processes.
  • Participate in incident handling and perform application-related forensics activities.
  • Perform other duties as assigned.

Qualifications:

  • 2+ years of hands-on application security experience.
  • Hands-on development experience and thorough understanding of object-oriented programming, preferably Java, C#, ASP.NET.
  • Advanced knowledge of web application technologies, MVC, Ajax, XML, SOA, SSL, web-related protocols and services.
  • Intermediate knowledge of MS SQL. Basic knowledge of other commonly-used RDBMS.
  • Ability to identify security vulnerabilities from source code reviews and testing.
  • Knowledge of encryption technologies, secure communications, and secure credentials management.
  • Advanced experience with at least one scripting language (e.g.: Perl, Python).
  • Intermediate proficiency with C/C++ or Java. Experience with lower-level languages (Assembly), debug and reverse-engineering tools (IDA, etc.) is a plus.
  • Advanced knowledge of common application vulnerabilities, (e.g.: XSS, CSRF, SQL injection, cookie/header/encoding manipulation, input/output validation, session replay).
  • Intimate familiarity with web application testing tools (eg: Burp, Parox, Fiddler, Havij, netcat). Ability to write proof-of-concept exploits is a big plus.
  • Ability to define application security requirements and build secure web application solutions.
  • Advanced written and verbal communication skills including ability to present technical subjects to non-technical audiences.
  • Strong work ethic, attention to detail, and organizational skills.
  • Ability to multi-task and manage priorities in a fast-paced environment.
  • Ability to collaborate in a team and work independently.
  • Conceptual understanding of software development principles and SDLC models, Agile experience is a plus.
  • Intermediate proficiency with the Microsoft Office suite.
  • Windows and Linux operating systems knowledge at advanced user level.
See More
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

What are BlackLine Perks + Benefits

BlackLine Benefits Overview

BlackLine believes in providing the best possible service to its clients, and that starts with offering amazing perks to its employees. These perks include 100% coverage for healthcare, vision, and dental, 401(k) matching, ESPP, food, drinks, games, and so much more!

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Flexible work schedule
Remote work program
Diversity
Documented equal pay policy
Dedicated diversity and inclusion staff
Highly diverse management team
Mandated unconscious bias training
Diversity employee resource groups
Hiring practices that promote diversity
Health Insurance + Wellness
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
At BlackLine, we feel that paying 100% of our employees’ health benefits is 100% the right thing to do. Medical, dental, and vision are taken care of by the company.
Life insurance
Pet insurance
Wellness programs
Team workouts
BlackLine has been offering company wide virtual fitness classes such as, Aerobics and Yoga!
Mental health benefits
Financial & Retirement
401(K)
401(K) matching
BlackLine provides employees with a 401(k) matching plan.
Company equity
Employee stock purchase plan
BlackLine offers and Employee Stock Purchase Plan with the ability to buy stock at a discounted price.
Performance bonus
Charitable contribution matching
Child Care & Parental Leave
Childcare benefits
Generous parental leave
Family medical leave
Vacation + Time Off
Unlimited vacation policy
Generous PTO
Paid holidays
Paid sick days
Flexible time off
Floating holidays
Office Perks
Commuter benefits
Company-sponsored outings
BlackLine hosts company outings several times per year.
Free snacks and drinks
Some meals provided
Company-sponsored happy hours
Onsite office parking
We offer employees free on-site garage parking.
Fitness stipend
Home-office stipend for remote employees
Professional Development
Job training & conferences
Tuition reimbursement
Lunch and learns
Promote from within
Continuing education available during work hours
Online course subscriptions available
Customized development tracks

Additional Perks + Benefits

We’re better together and know that amazing individuals make amazing teams. We also know that we bond through socializing and shared experiences. That’s how teams gel and support each other.

So, we like to play games together: table tennis, poker, and video games. We encourage company sports leagues and fitness groups. We relax with happy hours and team get-togethers, and we never let a holiday season go by without a celebration.

More Jobs at BlackLine

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about BlackLineFind similar jobs like this