Lead Application Security Engineer @EPAM Systems
Software Development
Salary unspecified
Remote Location
Employment Type full-time
Posted YDay

[Hiring] Lead Application Security Engineer @EPAM Systems

YDay - EPAM Systems is hiring a remote Lead Application Security Engineer. πŸ’Έ Salary: unspecified πŸ“Location: Argentina

Role Description

We are looking for a Lead Application Security Engineer to lead application vulnerability remediation across teams, starting with HackerOne findings and API and GraphQL issues. You will own the end-to-end workflow from intake and validation to remediation tracking and closure across Cybersecurity, Engineering, Product, and vendors.

  • Own the daily operational execution of the HackerOne program
  • Run vulnerability intake, triage, validation, assignment, tracking, and closure end to end
  • Lead weekly operating reviews with HackerOne and internal stakeholders
  • Track remediation commitments and reinforce accountability for delivery
  • Manage coordinated disclosure and related communications
  • Reproduce and validate reported vulnerabilities, evaluating exploitability and business impact
  • Use Postman, browser tooling, and security testing tools to verify findings
  • Support vulnerability prioritization based on customer and business risk
  • Coordinate remediation work across multiple engineering organizations
  • Identify service ownership and route findings correctly while maintaining Jira and ServiceNow tracking
  • Escalate critical items and drive resolution for overdue work
  • Deliver executive-ready reporting and dashboards on backlog trends, SLA compliance, remediation progress, and risk reduction
  • Present status and outcomes to cybersecurity and engineering leadership
  • Leverage GenAI and workflow automation to enhance triage, remediation tracking, reporting, and service ownership identification

Qualifications

  • Proven background with 5+ years of experience in Software Engineering or Application Security
  • Solid understanding of REST APIs, GraphQL, and Authentication & Authorization mechanisms
  • Working knowledge of OAuth, JWT, OWASP Top 10, and API Security Top 10
  • Hands-on experience reproducing security findings
  • Proficiency with Postman
  • Practical experience using Jira and ServiceNow for tracking and workflow
  • Strong stakeholder management skills across technical and non-technical teams
  • English proficiency at B2 (Upper-Intermediate) level or higher

Requirements

  • Nice to have:
  • Experience with HackerOne or other Bug Bounty programs
  • Background in AppSec and penetration testing
  • Full-stack software development experience
  • Familiarity with Burp Suite
  • Experience building or using GenAI automation
Before You Apply
️
remote Be aware of the location restriction for this remote position: Argentina
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Lead Application Security Engineer @EPAM Systems
Software Development
Salary unspecified
Remote Location
Employment Type full-time
Posted YDay
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 130,000+ Remote Jobs
️
remote Be aware of the location restriction for this remote position: Argentina
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 130,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 130,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 130,490+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later