Sr. Security Engineer

hace 2 días


WorkFromHome, Colombia Aha! A tiempo completo

Aha is the world's #1 product development software. We help more than 1 million product builders go from discovery to delivery and bring their strategy to life. Our suite of tools includes Aha Roadmaps, Aha Discovery, Aha Ideas, Aha Whiteboards, Aha Knowledge, Aha Teamwork, and Aha Develop. Product teams rely on our expertise, guided templates, and training programs via Aha Academy to be their best. We are proud to be a very different type of high-growth SaaS company. The business is self-funded, profitable, and 100% remote. We are recognized as one of the best fully remote companies to work for, champion the Bootstrap Movement, and have given over $1M to people in need through Aha Cares. Learn more at Our team We help each other grow: We each bring unique skills to the table and want our teammates to feel valued from the start. Our onboarding program exposes new hires to the codebase and lets them contribute right away. We move quickly: We ship code multiple times a day. We believe in getting valuable features in front of customers and iteratively improving as we learn what works and what does not. We value product over process: We want the team to have the time and focus needed to solve complex challenges. We minimize overhead by setting clear goals and avoiding heavyweight processes and excessive meetings. We share knowledge freely: We share our learnings with one another and with the developer community. Our engineering blog demonstrates how we tackle interesting challenges at Aha We enjoy: We like what we do. And we want you to love your team and your job too. Learn more about The Responsive Method, our company values, and the generous benefits we offer. Our technology Our web application is a single-instance, multitenant Ruby on Rails monolith supported by Postgres (database), Redis (background jobs), Kafka (event processing), and Memcached (Rails caching). We also run a Node.js webserver to support collaborative editing and real-time updates. Our application is hosted on Amazon Web Services and architected with ECS for reproducibility and scalability. We use a growing amount of React on the front end to build rich client-side experiences, including our fully collaborative text editor and slide presentation editor. We balance the strengths of both technologies: Rails for its conventions and simplicity and React for more powerful interactive functionality. Teammates embrace the new technologies that help us deliver a lovable product suite, but we also remain cognizant of the maintenance overhead a new library or platform brings. We solve the problems in front of us — rather than prematurely optimizing to address issues that might never materialize. We do most of our planning and collaboration in Aha Roadmaps and built Aha Develop so software engineers and their teams can take advantage of those same rich features. We use Slack and Zoom for video calls. (Email? Rarely.) Your Experience The primary focus of this role is web application security, so you should be deeply knowledgeable about vulnerabilities and mitigations. You are familiar with securing data in multitenant architectures and have helped engineers build secure applications. Skills We believe that being a kind person who elevates the rest of the team is just as valuable as writing great code. You are humble, eager to learn, and always willing to help others. You want teammates who enjoy solving problems, regardless of the technologies and techniques involved. You have worked at meaningful scale before and want to do so again. You also have the following experience and skills: Four+ years of experience working in application security Active collaborator with engineering and product teams Experience with security reviews or threat modeling for a full-stack web application Experience with security tools such as CodeQL or Burp Suite Experience with Ruby on Rails is a plus Your work at Aha The security team works across our suite of products and provides guidance for the larger engineering team across the full stack. We are passionate about data security and helping each other. As a Senior Security Engineer, your work will include: Identifying application security threats and mitigations early Improving and maintaining security code scanning tools Contributing to application security scanning or testing Developing and sharing secure patterns internally for ongoing education If the Sr. Security Engineer role sounds appealing, we would love to hear from you. (A real human reviews every application.) Grow with us Everyone deserves to reach their fullest potential. We know that when we do work that matters with people we care about in a high-growth environment, we feel engaged and alive. It is why we joined Aha and how we achieve our very best. Benefits We offer all the benefits you would expect and more, including profit sharing. The specific benefits listed below are reflective of what we offer U.S.-based hires. We also do our best to extend identical benefits to international teammates. The base salary range for this role in the U.S. is between $110,000 and $190,000 Cash-based compensation also includes profit sharing, and we contribute a percentage of your total pay each month toward your retirement Medical, dental, and vision plans (for many teammates, we cover 100% of the premiums) Up to 200 hours of paid time off a year to spend however you want 30 to 90 days of paid parental leave and five to 10 days of paid care and bereavement leave Up to $1,000 annually for third-party education, along with paid time off to immerse yourself in learning Volunteer opportunities throughout the year Base salary and total compensation are dependent upon many factors, including skills, experience, and relevant past roles. #J-18808-Ljbffr



  • WorkFromHome, Colombia TeleTech Holdings, Inc. A tiempo completo

    Job Description - Application Security Engineer (047TF) Application Security Engineer Application Security Engineer Be the spark that brightens days and ignite your career with TTEC’s award-winning employment experience. As an Application Security Engineer working remotely in Colombia, you’ll be a part of creating and delivering amazing customer...


  • WorkFromHome, Colombia Aha! A tiempo completo

    A leading SaaS company in Colombia is looking for a Senior Security Engineer to focus on web application security, ensuring secure data in multitenant architectures. The ideal candidate has over four years of application security experience, familiarity with security reviews, and can contribute to security measures. This role offers a competitive salary,...


  • WorkFromHome, Colombia J.S. Held LLC A tiempo completo

    A global consulting firm is seeking a Senior Data Security Engineer to lead the design and governance of enterprise data security programs. This pivotal role involves ensuring compliance and advancing data protection across platforms such as Microsoft 365 and Azure. With a focus on cloud data security and DLP technologies, the ideal candidate should have...


  • WorkFromHome, Colombia TeleTech Holdings, Inc. A tiempo completo

    A global technology services firm is hiring an Application Security Engineer to enhance security practices in application development. This remote role requires expertise in application security, risk assessment, and vulnerability management, along with a Bachelor's degree in a related field and at least three years of experience. The engineer will conduct...


  • WorkFromHome, Colombia Aha! A tiempo completo

    A leading product development software company is seeking a Senior Security Engineer to enhance web application security. This role involves identifying security threats, improving security tools, and contributing to application testing. Ideal candidates have over four years of experience in application security, familiar with threat modeling, and capable of...


  • WorkFromHome, Colombia GFT Technologies A tiempo completo

    A technology firm is seeking a Cyber Security Engineer to enhance their IT security framework while working in a hybrid office atmosphere. Responsibilities include developing architecture standards and conducting thorough security assessments across systems and networks. Candidates should have a robust background in IT architecture and security solutions and...


  • WorkFromHome, Colombia Scotiabank A tiempo completo

    A leading financial institution in Colombia is seeking an Engineer for its Security Platform Engineering team. This role involves handling security platform-related projects, producing technical documentation, and enhancing communication with stakeholders. Candidates should have significant experience in IT and project management, alongside a degree in...


  • WorkFromHome, Colombia J.S. Held LLC A tiempo completo

    J.S. Held, a global consulting firm providing specialized technical, scientific, financial, and advisory services, is seeking a Senior Data Security Engineer to lead the design, implementation, and governance of enterprise data security programs across platforms such as Microsoft 365, Box, Azure, and emerging AI platforms. This role is critical to protecting...


  • WorkFromHome, Colombia Michael Page Colombia A tiempo completo

    We are looking for a bilingual and experienced Data and Platform Security Engineer to join our cybersecurity team. This remote position (based in Colombia) requires deep expertise in securing data platforms, applications, and cloud environments. The successful candidate will help shape and implement strategies for platform security, access control, and data...

  • Sr. Full Stack Engineer

    hace 1 semana


    WorkFromHome, Colombia Homera Health A tiempo completo

    Sr. Full Stack Engineer at Homera Health About Homera Health Homera Health comes from the team building the technology, marketing, and growth engine powering some of today’s most successful telehealth brands. As we expand into new verticals, including an upcoming men’s health platform, we’re hiring world‑class talent across product design,...