Product Security Engineer, Application Security (Remote)

Crowdstrke
United States
Workplace: RemoteFull timeUSD 120,000 - 180,000 annuallyFunction: CybersecuritySkills: ["Collaboration","Problem-solving","Research"]

Join the Product Security team to protect CrowdStrike and its customers by securing applications against active and emerging threats. You’ll create and maintain threat models, review source code for defects and risk, attack applications throughout the Secure Development LifeCycle, and partner with developers to implement proven fixes. Build security tools and automation, support bug bounty response, and contribute to cross-cutting initiatives that harden internal systems and processes.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Crowdstrke
Crowdstrke
1 month ago

Product Security Engineer, Application Security (Remote)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 24 days agoStatus: Live

Job Summary

Join the Product Security team to protect CrowdStrike and its customers by securing applications against active and emerging threats. You’ll create and maintain threat models, review source code for defects and risk, attack applications throughout the Secure Development LifeCycle, and partner with developers to implement proven fixes. Build security tools and automation, support bug bounty response, and contribute to cross-cutting initiatives that harden internal systems and processes.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Serve as a security expert and advisor on application engineering teams, influencing product design and capabilities.
  • •Create and maintain threat models to drive security decisions and reduce threat surface area.
  • •Review application source code to identify security defects and risks.
  • •Test and attack applications throughout the Secure Development LifeCycle and support secure defect remediation.
  • •Build integrated tools and automation; assist with bug bounty response and hunt for similar issues.

Pay and Benefits

Salary: USD 120,000 - 180,000 annually
Equity and Bonus:Equity
Perks:Health Insurance401kPaid LeavePaid Parental

Key Requirements

  • •Moderate understanding of how software products are created and shipped in Agile/DevOps environments.
  • •Moderate experience with threat modeling, especially using STRIDE.
  • •Code review experience for applications built with Go (Golang), Python, or Java.
  • •Knowledge of secure configuration for cloud-native and containerized apps in one or more clouds (GCP, Azure, AWS).
  • •Experience using and/or maintaining AppSec tools (SAST, DAST, CSPM, DSPM, ASPM) and application penetration testing beyond OWASP Top 10.
Experience:CybersecurityApplication securityCloud securitySecure developmentBug bounty
Skills:CollaborationProblem-solvingResearch
Tech Stack:GoGolangPythonJavaSTRIDEAgileDevOpsGCPAzureAWSSASTDASTCSPMDSPMASPMOWASP Top 10Secure Development LifeCycleDockerKubernetesK8s

Company Brief

Crowdstrke
Provides cloud-native endpoint protection, threat intelligence, and security operations solutions that prevent breaches and stop sophisticated cyberattacks across endpoints, cloud workloads, identity, and APIs for enterprises worldwide.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Sunnyvale, United States
Founded: 2011
Glassdoor
Glassdoor: 4.4
WebsiteLinkedIn