Jobs
>
Denver

    Security Application Engineer - Denver, United States - RingCentral

    Default job background
    Description

    Security Application Engineer, DAST Scanning (Belmont CA, Denver CO, Dallas TX)

    The RingCentral environment is dynamic, success-driven, team-oriented and committed to providing world class service for its customers. Do you have the ability to thrive in a fast-paced environment? We are looking for candidates with an entrepreneurial spark

    We're not a phone company; we're a cloud business-solutions provider. We've thrown out the old PBX along with its rigid rules and eliminated the complexity and unnecessary expense of managing business communications the old way.
    RingCentral fosters career development and provides leadership training, education, workshops, and coaching for all employees.

    RingCentral promotes a healthy work-life balance by providing catered lunch and breakfast on a daily basis as well as a kitchen stocked with a variety of complimentary beverages and delicious snacks.

    The RingCentral Application Security team is a part of a larger CISO team. The area of responsibility of the application security team includes enablement and support for RingCentral's Security Development Lifecycle (SDL) program. This includes development of infosec governance artifacts i.e., policies, standards and procedures for secure software development at RingCentral, leading security architecture reviews and threat modelings, developing security requirements, SAST/DAST/SCA testing and integration of these tools into the build and deploy process, penetration testing, managing bug bounty program.

    We are looking for a Security Application Engineer with a strong understanding of web and mobile application vulnerabilities, how they can be detected, exploited and remediated.

    Responsibilities:
    Consult developers on questions related to reports of security scanners*, which includes:
    explain why an issue should be considered as a vulnerability
    explain circumstances under which an issue might be exploitable
    provide suggestions on how an issue can be remediated
    Review and validate issues marked as potential false positives by developers; request additional clarifications where required.
    Review and improve security scanners configurations:
    review scanning rules in presets, make sure that important rules are enabled and irrelevant rules are disabled
    make sure security scanners do not miss production code/applications, as well as do not scan testing-only code/applications
    where possible and required, adjust scanning rules to improve their accuracy
    collaborate with legal to make sure that license violation rules for open source software are configured correctly
    Maintain access to security scanners.
    Report breached security defects SLA.
    Support risk exceptions process for the following cases:
    violations of security defects SLA
    deviations from security policies/standards (for example, releasing with a higher vulnerability level than defined as satisfactory)
    Triage reports from the bug bounty platform, address them to responsible engineering teams
    Triage reports from the external attack surface management platform, address them to responsible engineering teams
    Maintain security scanners deployed in production environment, which includes:
    deploy new versions
    patch security vulnerabilities
    make sure security hardening benchmarks are met (such as CIS or STIG)
    make sure other requirements for production deployment are met (logging, monitoring, backups, etc.)
    * - security scanners include, but are not limited to static application security testing (SAST), dynamic application security testing (DAST) and software composition analysis (SCA)

    Qualifications:
    Technical experience in product architecture, design, implementation
    Expertise with product security design, review, implementation including threat modeling and risk assessment implications
    U.S citizenship required
    Extensive experience with web and mobile application testing- SAST/DAST, penetration testing
    Secure design and implementation capabilities
    Experience with open-source software including lifecycle management, vulnerability management tools
    Excellent communication skills, both verbal and written; ability to condense complicated scenarios into simple, risk-based assessments, appropriately targeted for colleagues and upper management
    Outstanding organizational and time management skills, desire to work within a highly collaborative team

    Nice-To-Have:
    Any WebRTC, Video and audio streaming
    Video codecs
    B.S. or equivalent in CS or EE

    What we offer:
    RingCentral offers all the work/life benefits you could ever want, (and none of the micromanagement.)
    Comprehensive medical, dental, vision, disability, life insurance
    Health Savings Account (HSA), Flexible Spending Account (FSAs) and Commuter Benefits
    401K match and ESPP
    Flexible PTO
    Wellness programs including1:1 wellness coaching through TaskHuman and meditation guidance through Headspace
    Paid parental leave and new parent gift boxes
    Pet insurance
    Employee Assistance Program (EAP) with counseling sessions available 24/7
    Rocket Lawyer services that provide legal advice, document creation and estate planning
    Employee bonus referral program

    RingCentral's work culture is the backbone of our success. And don't just take our word for it: we are recognized as a Best Place to Work by Glassdoor, the Top Work Culture by Comparably and hold local BPTW awards in every major location. Bottom line: We are committed to hiring and retaining great people because we know you power our success.

    About RingCentral:
    RingCentral, Inc. (NYSE: RNG) is a leading provider of business cloud communications and contact center solutions based on its powerful Message Video Phone (MVP) global platform. More flexible and cost effective than legacy on-premises PBX and video conferencing systems that it replaces, RingCentral empowers modern mobile and distributed workforces to communicate, collaborate, and connect via any mode, any device, and any location.

    RingCentral is headquartered in Belmont, California, and has offices around the world. If you are hired in Colorado, the compensation range for this position is between $120,000 and $150,000. If you are hired in Belmont, the compensation range for this position is between $140,000 and $170,000.

    RingCentral is an equal opportunity employer that truly values diversity. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We are committed to providing reasonable accommodations for individuals with disabilities during our application and interview process. If you require such accommodations, please click on the following link to learn more about how we can assist you.


  • Eclipse Innovations

    Application Engineer

    3 weeks ago


    Eclipse Innovations Littleton, United States

    The Dental Direkt GmbH is one of the leading manufacturers of zirconia blanks for the dental industry and also covers the entire digital process chain with its portfolio. We distribute medical products through a network of dealers in over 70 countries worldwide. We have a team of ...

  • Productivity Quality, Inc.

    Applications Engineer

    2 weeks ago


    Productivity Quality, Inc. Denver, United States

    Productivity Quality, Inc. is seeking an Applications Engineer for our Denver, Colorado location. Productivity Quality, Inc. (PQI) has been a leading distributor of metrology systems in the Upper Midwest for over 30 years. We are a full-service metrology solution provider offerin ...

  • Productivity Quality, Inc.

    Applications Engineer

    2 weeks ago


    Productivity Quality, Inc. Denver, United States

    Productivity Quality, Inc. is seeking an Applications Engineer for our Denver, Colorado location. Productivity Quality, Inc. (PQI) has been a leading distributor of metrology systems in the Upper Midwest for over 30 years. We are a full-service metrology solution provider offerin ...

  • Tryg Group LLC

    Application Engineer

    2 weeks ago


    Tryg Group LLC Denver, United States

    Job Description · Job Description · Tryg Group Inc , Lakewood, CO. We have designed our service offerings to fit the needs of building owners, property management companies, operating engineers, and engineering firms in the Denver Metro and surrounding areas. Providing service ...

  • INFICON

    Applications Engineer

    2 weeks ago


    INFICON Denver, United States

    Company Description · INFICON is a leading provider of innovative instrumentation, critical sensor technologies, and Smart Manufacturing/Industry 4.0 software solutions that enhance productivity and quality of tools, processes, and complete factories. These analysis, measurement ...


  • Mikron Holding AG Denver, United States

    Mikron Automation is your worldwide partner for advanced automation solutions. At Mikron we are committed to delivering the best assembly systems and all needed services throughout your product's entire life cycle. With our extensive engineering know-how, complex process expertis ...


  • Pretred Denver, United States

    Pretred is a globally recognized, industry leading, sustainability products manufacturing company looking for a Materials Application Engineer to join our team onsite in Aurora, CO. We value our team members like family and truly believe in a sustainable future. · Role Highlight ...


  • Tri-State Generation and Transmission Association, Inc. Denver, United States

    Job Description · The Application Integration Engineer plays a pivotal role in designing, implementing, and maintaining seamless integration solutions for software applications within the organization's IT ecosystem, emphasizing Oracle Cloud and other cloud technologies such as ...


  • Tri-State Generation and Transmission Association, Inc. Denver, United States

    Job Description · The Application Integration Engineer plays a pivotal role in designing, implementing, and maintaining seamless integration solutions for software applications within the organization's IT ecosystem, emphasizing Oracle Cloud and other cloud technologies such as ...


  • Xometry Denver, United States

    Xometry (NASDAQ: XMTR) powers the industries of today and tomorrow by connecting the people with big ideas to the manufacturers who can bring them to life. Xometry's digital marketplace gives manufacturers the critical resources they need to grow their business while also making ...


  • Arrow ECS Denver, United States

    Position: · Application Engineer II · Job Description: · Arrow is seeking an Applications Engineer who will assist in the development of EDI based solutions on WebMethods platform in Centennial, CO. In this role, the Applications Engineer will play a critical component in tech ...


  • Tri-State Generation and Transmission Association, Inc. Denver, United States

    Job Description · The Application Integration Engineer plays a pivotal role in designing, implementing, and maintaining seamless integration solutions for software applications within the organization's IT ecosystem, emphasizing Oracle Cloud and other cloud technologies such as ...


  • Aeroseal Denver, United States Full time

    Title: RNC Application Engineer · Are you interested in new, innovative technology? Do you thrive in a fast paced, goal-oriented environment? And are self-motivated and looking for a position where you can have an immediate impact in growing a new line of business? · If yes, then ...


  • City of Littleton Denver, United States Full time

    The City of Littleton has an exciting opportunity for an Enterprise Applications Engineer to join our dynamic and forward-thinking IT team. · The Enterprise Applications Engineer is responsible for the leadership, development, and oversight of program architecture across the orga ...

  • DXP Enterprises

    Applications Engineer

    2 weeks ago


    DXP Enterprises Commerce City, United States

    Do you want to grow with us? At DXP we are passionate about what we do and driven to be the best solution for our industrial customers. Since 1908 DXP has been dedicated to the highest quality of customer service through our expertise of the products we distribute and the technic ...


  • High-Tech Professionals Denver, United States

    Sales Engineer/Field Applications Engineer · Job ID: · 1692 · Location: · Denver Area · Type: · Permanent · Status: · Closed · Key Skills: · Field applications, sales, industrial electronic products, computer architecture, circuits, operating systems, technical support · De ...

  • DXP Enterprises

    Applications Engineer

    3 weeks ago


    DXP Enterprises Commerce City, United States

    Job Description · Job DescriptionDo you want to grow with us? At DXP we are passionate about what we do and driven to be the best solution for our industrial customers. Since 1908 DXP has been dedicated to the highest quality of customer service through our expertise of the produ ...


  • IT Associates Denver, United States

    3-6+ Month Contract Position · Location - 100% Remote · Our client is looking to add a Manage Engine SME/Administrator that will administer and manage all aspects of Manage Engine Application Manager. · Manage day to day support of all aspects of Manage Engine. Configure alerts f ...


  • IT Associates Denver, United States

    3-6+ Month Contract Position · Location - 100% Remote · Our client is looking to add a Manage Engine SME/Engineer that will administer and manage all aspects of Manage Engine Application Manager. · Manage day to day support of all aspects of Manage Engine. Configure alerts for se ...


  • Metropolitan State College of Denver Denver, United States

    Department · Application Services Reporting to the Associate Director of Application Services, the Applications and Solutions Engineering Manager, will lead and direct the daily work activities of a team of Application Solutions Engineers. You will be responsible for all adminis ...