Senior Product Security Engineer, Application Security (Remote)

Crowdstrke
United States
Workplace: RemoteFull timeUSD 160,000 - 250,000 annuallyFunction: CybersecurityExperience: 10+ yearsSkills: ["Collaboration","Communication","Problem-solving","Automation mindset","Mentoring"]

Secure CrowdStrike and customer applications by serving as a Senior Application Security Engineer for the Product Security team. You’ll review source code, create and maintain threat models (including STRIDE), test API endpoint security, and drive secure development across the SDLC. Collaborate with product engineers to fix defects, harden cloud-native and containerized systems, build security automation, and support bug bounty response and issue hunting across the platform.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Crowdstrke
Crowdstrke
1 month ago

Senior Product Security Engineer, Application Security (Remote)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 24 days agoStatus: Live

Job Summary

Secure CrowdStrike and customer applications by serving as a Senior Application Security Engineer for the Product Security team. You’ll review source code, create and maintain threat models (including STRIDE), test API endpoint security, and drive secure development across the SDLC. Collaborate with product engineers to fix defects, harden cloud-native and containerized systems, build security automation, and support bug bounty response and issue hunting across the platform.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Serve as a security expert/advisor to engineering teams, influencing product design and capabilities.
  • •Create and mature threat models to drive security architecture reviews and reduce threat surface area.
  • •Review application source code to identify security defects, risks, and design weaknesses.
  • •Support and execute secure development activities across the Secure Development LifeCycle, including API endpoint security testing.
  • •Build automation and integrated tools for application security tasks and bug bounty response efforts.

Pay and Benefits

Salary: USD 160,000 - 250,000 annually
Equity and Bonus:Equity
Perks:Health Insurance401kPaid LeavePaid ParentalEquityLearning Budget

Key Requirements

  • •10+ years of cybersecurity experience, identifying security defects and working with engineering teams to deliver solutions.
  • •Deep understanding of how software products are created and shipped in Agile/DevOps environments.
  • •Experience with threat modeling frameworks, especially STRIDE.
  • •Proven manual secure code review for applications built with Go (Golang), Python, or JavaScript.
  • •Hands-on experience reviewing and testing API endpoint security and secure configuration for cloud-native/containerized apps in GCP, Azure, and AWS.
Experience:10+ yearsCybersecurityApplication securityCloud-nativeContainerized appsAgile/DevOpsBug bounty
Skills:CollaborationCommunicationProblem-solvingAutomation mindsetMentoring
Tech Stack:GoGolangPythonJavaScriptTypeScriptReactNode.jsElectronChromeFirefoxSTRIDEAPISASTDASTCSPMDSPMASPMGCPAzureAWS

Company Brief

Crowdstrke
Provides cloud-native endpoint protection, threat intelligence, and security operations solutions that prevent breaches and stop sophisticated cyberattacks across endpoints, cloud workloads, identity, and APIs for enterprises worldwide.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Sunnyvale, United States
Founded: 2011
Glassdoor
Glassdoor: 4.4
WebsiteLinkedIn